- remove codex auth mounts from opencode run/shell paths - reject opencode login and invalid backend values - harden opencode config writes against symlink clobbering - fix opencode build args and packages_extra handling - enforce cap-drop and read-only rootfs in runtime commands - reject dangerous runtime/build env overrides - update README and test docs to match actual behavior - extend regression coverage for backend safety and hardening
8 lines
172 B
Plaintext
8 lines
172 B
Plaintext
name=opencode-print-config
|
|
packages_extra=
|
|
agent=opencode
|
|
opencode_server=http://manifest:8080
|
|
opencode_model=manifest-model
|
|
opencode_context=128K
|
|
allow_host_network=false
|