ec1bd10427229956923ba78fa9c0c636950b8087
- Author
- TheEdgeOfRage <git@theedgeofrage.com>
- Committer
- TheEdgeOfRage <git@theedgeofrage.com>
- Date
Message
Diff
This diff is truncated to protect this page.
1diff --git a/dot_config/opencode/AGENTS.md b/dot_config/opencode/AGENTS.md
2index 9624ab25e1e7acebc026914c2e17a16862598e69..c0eacf2c45ac8a7bb25425d4980514f38115de65 100644
3--- a/dot_config/opencode/AGENTS.md
4+++ b/dot_config/opencode/AGENTS.md
5@@ -4,28 +4,28 @@ I'm a software engineer and hacker with preference for Linux, Go, UNIX philosoph
6
7 Plan for context limits and session boundaries. If task has >2 substantial steps, the later will not be done in this session
8
9-# Self-Improvement Loop
10+## Self-Improvement Loop
11
12 - After ANY correction from the user: append to `~/.config/opencode/lessons.md` under the Raw section with `[YYYY-MM-DD]` timestamp, the pattern, and a preventive rule
13 - Write rules for yourself that prevent the same mistake
14 - Compaction and generalization happen autonomously via the `reflect` skill at session start
15 - The user can also trigger `/reflect` for a collaborative session review
16
17-# Verification Before Done
18+## Verification Before Done
19
20 - Never mark a task complete without proving it works
21 - Distinguish "verified" from "inferred". If you haven't executed it, say what remains unverified.
22 - Compiler output and execution are proof. --help, LSP diagnostics, and dry-runs are inference.
23 - Run tests, check logs, demonstrate correctness
24
25-# Demand Simplicity
26+## Demand Simplicity
27
28 The burden of proof is on complexity, not simplicity. Unearned complexity —
29 "we might need X" — is debt. "We're hitting X" is justification. When in doubt, do less.
30
31 - Start with the simplest correct version. Correctness is non-negotiable; add complexity only when a concrete signal demands it.
32
33-# Code Style
34+## Code Style
35
36 Favor simple, robust solutions over feature-rich ones. When in doubt, do less
37
38@@ -37,26 +37,30 @@ Favor simple, robust solutions over feature-rich ones. When in doubt, do less
39 - Keep branch names very short and simple. Don't append my name or ticket numbers to the branch name
40 - Use `git switch` (not `git checkout`) when changing or creating branches
41
42-# Security
43+## Security
44
45 - Zero Trust. Least privilege. Never leak secrets.
46-- Do not under any circumstance read any secret files into context
47+- Do not under any circumstance read any secret files into context. Assume what is reasonably a secret (.env, auth token files, etc.)
48 - Model risks. Threat model APIs/integrations.
49
50-# State Mutation
51+## State Mutation
52
53-Never mutate state without explicit user request. This includes Git (checkouts, rebases, restores), databases, OS config, K8s, and any external system.
54+Never mutate state irreversibly without explicit approval. This includes Git (checkout -- files, rebase, restore), OS config, touching any sensitive files
55
56diff --git a/dot_config/opencode/opencode.json b/dot_config/opencode/opencode.json
57index 571371b11047782d4fc5831427eeba972128b88a..85de27dd1847f7a6b33035137513f44c4dd1ef73 100644
58--- a/dot_config/opencode/opencode.json
59+++ b/dot_config/opencode/opencode.json
60@@ -10,12 +10,11 @@
61 "external_directory": {
62 "~/dev/dune/**": "allow",
63 "~/dev/go/**": "allow",
64- "/tmp/opencode/**": "allow",
65 "*": "ask"
66 },
67 "webfetch": "ask",
68- "websearch": "ask",
69- "codesearch": "ask",
70+ "websearch": "allow",
71+ "codesearch": "allow",
72 "doom_loop": "ask"
73 },
74 "plugin": [