5 Commits

Author SHA1 Message Date
eb8553ce0b security: lock down OpenCode containers to read-only legal research
Add defense-in-depth restrictions via agent config and global permissions:
- Global permission layer denies bash, edit, webfetch, lsp
- Build agent tools restricted to read-only (grep/glob/list/read/todo)
- General/explore subagents locked to read-only
- Plan agent disabled to prevent mode switching
- Custom system prompt for legal research context (temp=0.2)
2026-02-08 20:22:57 +01:00
05aa70c4af connected zen 2026-02-03 00:36:22 +01:00
5e1cb64a81 wp on webui 2026-02-02 23:37:11 +01:00
0243cfc250 work with session manager etc 2026-01-18 22:10:03 +01:00
93da0b117e first attempts 2026-01-18 19:03:38 +01:00