Skip to content

Risk audit metadata omits mutating tools and differs across native and deferred dispatch #617

Description

@Calmingstorm

Severity: P3

Verified at v4.10.0, 55c15761845b00931ab2ea4aa184a7797dfd0614.

Locations

src/tools/risk_classifier.py:432-459,528-530; src/discord/tool_loop.py:3073-3074; src/discord/background_task.py:334-350

Failure scenario / benefit and affected installs

Riskdashboards classifyactualmutatingtoolsdefaultLOW, stalenameingest_knowledgeinstead ingest_document, missinghttp_probe/validate_action/schedule/skill/lifecycle; nativeforegroundassessmentgenerallyabsent. Observabilitynotbypassclaim.

Verification

Independently readmapdefaultandsitedispatchmetadata; reviewerrealclassifierLOWforeffectcapableexamples.

Correction and tests

Useactualaction-awarenamesandsharedmetadataacrosssurfaces, notchangingsettledspawn_agentaffordance.

Duplicate screening

Checked original open/closed inventory and fresh GitHub title/body search. No matching root. Full-path traces and harmless mocks only; mutation strings were never executed.

Activity

  1. Calmingstorm commented on Sep 30, 2026

    @Calmingstorm
    OwnerAuthor

    Validated as fixed on campaign/v4.10.0-review (PR #629) at a978f193: the fix was reviewed against the final code, and its regression tests pass on the branch and in CI. It is not merged to master yet. Closing per the maintainer's instruction; reopen if a later change regresses it.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions