[{"data":1,"prerenderedAt":635},["ShallowReactive",2],{"navigation":3,"external-navigation":214,"docs:\u002Feos\u002Fharbourmaster\u002Fexplanation\u002Freview-pipeline":443},[4,8,201],{"title":5,"path":6,"stem":7},"Documentation","\u002F","README",{"title":9,"path":10,"stem":11,"children":12},"EOS","\u002Feos","eos\u002FREADME",[13,44,121,181],{"title":14,"collapsed":15,"path":16,"stem":17,"children":18,"page":43},"Adrs",true,"\u002Feos\u002Fadrs","eos\u002Fadrs",[19,23,27,31,35,39],{"title":20,"path":21,"stem":22},"Use Turborepo for the EOS monorepo","\u002Feos\u002Fadrs\u002F0001-use-turborepo-for-eos","eos\u002Fadrs\u002F0001-use-turborepo-for-eos",{"title":24,"path":25,"stem":26},"Use Oxc for linting and formatting","\u002Feos\u002Fadrs\u002F0003-use-oxc-for-linting-and-formatting","eos\u002Fadrs\u002F0003-use-oxc-for-linting-and-formatting",{"title":28,"path":29,"stem":30},"Lint Markdown and validate links in CI","\u002Feos\u002Fadrs\u002F0004-lint-markdown-in-ci","eos\u002Fadrs\u002F0004-lint-markdown-in-ci",{"title":32,"path":33,"stem":34},"Use Lefthook for repository-managed Git hooks","\u002Feos\u002Fadrs\u002F0005-use-lefthook-for-repository-git-hooks","eos\u002Fadrs\u002F0005-use-lefthook-for-repository-git-hooks",{"title":36,"path":37,"stem":38},"Use Commitlint's conventional configuration","\u002Feos\u002Fadrs\u002F0006-use-commitlint-conventional-configuration","eos\u002Fadrs\u002F0006-use-commitlint-conventional-configuration",{"title":40,"path":41,"stem":42},"Use Nx for EOS task execution","\u002Feos\u002Fadrs\u002F0007-use-nx-for-eos","eos\u002Fadrs\u002F0007-use-nx-for-eos",false,{"title":45,"path":46,"stem":47,"children":48},"Harbourmaster","\u002Feos\u002Fharbourmaster","eos\u002Fharbourmaster\u002FREADME",[49,58,71,96],{"title":50,"path":51,"stem":52,"children":53,"page":43},"Decisions","\u002Feos\u002Fharbourmaster\u002Fdecisions","eos\u002Fharbourmaster\u002Fdecisions",[54],{"title":55,"path":56,"stem":57},"AI-50: GitHub auth and fork pull request policy","\u002Feos\u002Fharbourmaster\u002Fdecisions\u002Fai-50-auth-and-fork-policy","eos\u002Fharbourmaster\u002Fdecisions\u002Fai-50-auth-and-fork-policy",{"title":59,"path":60,"stem":61,"children":62,"page":43},"Explanation","\u002Feos\u002Fharbourmaster\u002Fexplanation","eos\u002Fharbourmaster\u002Fexplanation",[63,67],{"title":64,"path":65,"stem":66},"The Harbourmaster review pipeline","\u002Feos\u002Fharbourmaster\u002Fexplanation\u002Freview-pipeline","eos\u002Fharbourmaster\u002Fexplanation\u002Freview-pipeline",{"title":68,"path":69,"stem":70},"The Harbourmaster shared-action trust boundary","\u002Feos\u002Fharbourmaster\u002Fexplanation\u002Fshared-action-trust-boundary","eos\u002Fharbourmaster\u002Fexplanation\u002Fshared-action-trust-boundary",{"title":72,"path":73,"stem":74,"children":75,"page":43},"How To","\u002Feos\u002Fharbourmaster\u002Fhow-to","eos\u002Fharbourmaster\u002Fhow-to",[76,80,84,88,92],{"title":77,"path":78,"stem":79},"How to add Harbourmaster reviews to a repository","\u002Feos\u002Fharbourmaster\u002Fhow-to\u002Fadd-harbourmaster-to-a-repository","eos\u002Fharbourmaster\u002Fhow-to\u002Fadd-harbourmaster-to-a-repository",{"title":81,"path":82,"stem":83},"How to build a pilot dashboard","\u002Feos\u002Fharbourmaster\u002Fhow-to\u002Fbuild-pilot-dashboard","eos\u002Fharbourmaster\u002Fhow-to\u002Fbuild-pilot-dashboard",{"title":85,"path":86,"stem":87},"How to configure model routing","\u002Feos\u002Fharbourmaster\u002Fhow-to\u002Fconfigure-model-routing","eos\u002Fharbourmaster\u002Fhow-to\u002Fconfigure-model-routing",{"title":89,"path":90,"stem":91},"How to request a Harbourmaster review","\u002Feos\u002Fharbourmaster\u002Fhow-to\u002Frequest-a-review","eos\u002Fharbourmaster\u002Fhow-to\u002Frequest-a-review",{"title":93,"path":94,"stem":95},"How to diagnose a Harbourmaster review failure","\u002Feos\u002Fharbourmaster\u002Fhow-to\u002Ftroubleshoot-a-review","eos\u002Fharbourmaster\u002Fhow-to\u002Ftroubleshoot-a-review",{"title":97,"path":98,"stem":99,"children":100,"page":43},"Reference","\u002Feos\u002Fharbourmaster\u002Freference","eos\u002Fharbourmaster\u002Freference",[101,105,109,113,117],{"title":102,"path":103,"stem":104},"Harbourmaster command-line interface","\u002Feos\u002Fharbourmaster\u002Freference\u002Fcli","eos\u002Fharbourmaster\u002Freference\u002Fcli",{"title":106,"path":107,"stem":108},"Harbourmaster configuration","\u002Feos\u002Fharbourmaster\u002Freference\u002Fconfiguration","eos\u002Fharbourmaster\u002Freference\u002Fconfiguration",{"title":110,"path":111,"stem":112},"Harbourmaster GitHub Action","\u002Feos\u002Fharbourmaster\u002Freference\u002Fgithub-action","eos\u002Fharbourmaster\u002Freference\u002Fgithub-action",{"title":114,"path":115,"stem":116},"Harbourmaster review behavior","\u002Feos\u002Fharbourmaster\u002Freference\u002Freview-behavior","eos\u002Fharbourmaster\u002Freference\u002Freview-behavior",{"title":118,"path":119,"stem":120},"Harbourmaster telemetry","\u002Feos\u002Fharbourmaster\u002Freference\u002Ftelemetry","eos\u002Fharbourmaster\u002Freference\u002Ftelemetry",{"title":72,"path":122,"stem":123,"children":124,"page":43},"\u002Feos\u002Fhow-to","eos\u002Fhow-to",[125,129,133,137,141,145,149,153,157,161,165,169,173,177],{"title":126,"path":127,"stem":128},"How to add an external documentation source","\u002Feos\u002Fhow-to\u002Fadd-external-documentation-source","eos\u002Fhow-to\u002Fadd-external-documentation-source",{"title":130,"path":131,"stem":132},"How to connect SDLC integrations","\u002Feos\u002Fhow-to\u002Fconnect-sdlc-integrations","eos\u002Fhow-to\u002Fconnect-sdlc-integrations",{"title":134,"path":135,"stem":136},"How to consume the EOS plugin marketplace","\u002Feos\u002Fhow-to\u002Fconsume-eos-marketplace","eos\u002Fhow-to\u002Fconsume-eos-marketplace",{"title":138,"path":139,"stem":140},"How to create a spike ticket","\u002Feos\u002Fhow-to\u002Fcreate-spike-ticket","eos\u002Fhow-to\u002Fcreate-spike-ticket",{"title":142,"path":143,"stem":144},"How to finalise a repository change","\u002Feos\u002Fhow-to\u002Ffinalise-change","eos\u002Fhow-to\u002Ffinalise-change",{"title":146,"path":147,"stem":148},"How to install the EOS Docs MCP server","\u002Feos\u002Fhow-to\u002Finstall-eos-docs-mcp","eos\u002Fhow-to\u002Finstall-eos-docs-mcp",{"title":150,"path":151,"stem":152},"How to resolve a spike ticket","\u002Feos\u002Fhow-to\u002Fresolve-spike-ticket","eos\u002Fhow-to\u002Fresolve-spike-ticket",{"title":154,"path":155,"stem":156},"How to run Git hook checks","\u002Feos\u002Fhow-to\u002Frun-git-hook-checks","eos\u002Fhow-to\u002Frun-git-hook-checks",{"title":158,"path":159,"stem":160},"How to use the AI-enabled SDLC","\u002Feos\u002Fhow-to\u002Fuse-ai-enabled-sdlc","eos\u002Fhow-to\u002Fuse-ai-enabled-sdlc",{"title":162,"path":163,"stem":164},"Use the Aikido plugin","\u002Feos\u002Fhow-to\u002Fuse-aikido-plugin","eos\u002Fhow-to\u002Fuse-aikido-plugin",{"title":166,"path":167,"stem":168},"How to use Compass","\u002Feos\u002Fhow-to\u002Fuse-compass","eos\u002Fhow-to\u002Fuse-compass",{"title":170,"path":171,"stem":172},"How to use Fallow","\u002Feos\u002Fhow-to\u002Fuse-fallow","eos\u002Fhow-to\u002Fuse-fallow",{"title":174,"path":175,"stem":176},"How to use incremental mutation tests","\u002Feos\u002Fhow-to\u002Fuse-incremental-mutation-tests","eos\u002Fhow-to\u002Fuse-incremental-mutation-tests",{"title":178,"path":179,"stem":180},"How to use Scout","\u002Feos\u002Fhow-to\u002Fuse-scout","eos\u002Fhow-to\u002Fuse-scout",{"title":97,"path":182,"stem":183,"children":184,"page":43},"\u002Feos\u002Freference","eos\u002Freference",[185,189,193,197],{"title":186,"path":187,"stem":188},"Compass CLI","\u002Feos\u002Freference\u002Fcompass-cli","eos\u002Freference\u002Fcompass-cli",{"title":190,"path":191,"stem":192},"EOS marketplace skills","\u002Feos\u002Freference\u002Fmarketplace-skills","eos\u002Freference\u002Fmarketplace-skills",{"title":194,"path":195,"stem":196},"Nx task execution and cache","\u002Feos\u002Freference\u002Fnx-task-execution","eos\u002Freference\u002Fnx-task-execution",{"title":198,"path":199,"stem":200},"Scout CLI","\u002Feos\u002Freference\u002Fscout-cli","eos\u002Freference\u002Fscout-cli",{"title":202,"path":203,"stem":204,"children":205},"Product engineering","\u002Fproduct-engineering","product-engineering\u002FREADME",[206],{"title":14,"collapsed":15,"path":207,"stem":208,"children":209,"page":43},"\u002Fproduct-engineering\u002Fadrs","product-engineering\u002Fadrs",[210],{"title":211,"path":212,"stem":213},"Codify Engineering Standards as Skills","\u002Fproduct-engineering\u002Fadrs\u002F0002-codify-engineering-standards-as-skills","product-engineering\u002Fadrs\u002F0002-codify-engineering-standards-as-skills",[215,268],{"nav":216,"source":265},[217],{"title":218,"path":219,"stem":220,"children":221},"Ember","\u002Fember","ember",[222,225,257,261],{"title":223,"path":219,"stem":224},"StoreFront Documentation","ember\u002Findex",{"title":14,"path":226,"stem":227,"children":228,"page":43},"\u002Fember\u002Fadrs","ember\u002Fadrs",[229,233,237,241,245,249,253],{"title":230,"path":231,"stem":232},"Add Infection as a non-blocking mutation testing tool for Ember","\u002Fember\u002Fadrs\u002F0001-infection-mutation-testing","ember\u002Fadrs\u002F0001-infection-mutation-testing",{"title":234,"path":235,"stem":236},"Process DELETE scheduled changes before CREATE_UPDATE at the same instant","\u002Fember\u002Fadrs\u002F0002-scheduled-change-processing-order","ember\u002Fadrs\u002F0002-scheduled-change-processing-order",{"title":238,"path":239,"stem":240},"Standard rate scheduling is permanent until overridden","\u002Fember\u002Fadrs\u002F0003-standard-rate-scheduling-is-permanent","ember\u002Fadrs\u002F0003-standard-rate-scheduling-is-permanent",{"title":242,"path":243,"stem":244},"Promotions require an existing standard rate","\u002Fember\u002Fadrs\u002F0004-promotions-require-existing-standard-rate","ember\u002Fadrs\u002F0004-promotions-require-existing-standard-rate",{"title":246,"path":247,"stem":248},"UTC datetime contract between Storefront and Hub","\u002Fember\u002Fadrs\u002F0005-utc-datetime-contract-between-storefront-and-hub","ember\u002Fadrs\u002F0005-utc-datetime-contract-between-storefront-and-hub",{"title":250,"path":251,"stem":252},"Elapsed unprocessed scheduled changes do not block rate changes","\u002Fember\u002Fadrs\u002F0006-stale-scheduler-rows-do-not-block-rate-changes","ember\u002Fadrs\u002F0006-stale-scheduler-rows-do-not-block-rate-changes",{"title":254,"path":255,"stem":256},"ADR-0007: Delete ConfigureTenantAuth routing command once OIDC setup migrates to Hub","\u002Fember\u002Fadrs\u002F0007-delete-configure-tenant-auth-routing-command","ember\u002Fadrs\u002F0007-delete-configure-tenant-auth-routing-command",{"title":258,"path":259,"stem":260},"Domain Overview","\u002Fember\u002Fdomain_overview","ember\u002Fdomain_overview",{"title":262,"path":263,"stem":264},"Main Flows","\u002Fember\u002Fkey_flows","ember\u002Fkey_flows",{"collectionName":266,"label":267,"prefix":220},"external_ember","StoreFront (Ember)",{"nav":269,"source":441},[270],{"title":271,"path":272,"stem":273,"children":274},"Core","\u002Fcore","core",[275,278,306,310,332,336,346,363,420,424],{"title":276,"path":272,"stem":277},"Documentation Index","core\u002Findex",{"title":14,"path":279,"stem":280,"children":281,"page":43},"\u002Fcore\u002Fadrs","core\u002Fadrs",[282,286,290,294,298,302],{"title":283,"path":284,"stem":285},"ADR-XXXX: Short, descriptive title","\u002Fcore\u002Fadrs\u002F0000-template","core\u002Fadrs\u002F0000-template",{"title":287,"path":288,"stem":289},"ADR-1: Promotions endpoint","\u002Fcore\u002Fadrs\u002F0001-add-promotions-endpoint","core\u002Fadrs\u002F0001-add-promotions-endpoint",{"title":291,"path":292,"stem":293},"ADR-2: EOM partner report job dispatch","\u002Fcore\u002Fadrs\u002F0002-eom-report-job-dispatch","core\u002Fadrs\u002F0002-eom-report-job-dispatch",{"title":295,"path":296,"stem":297},"ADR-3: Replace PB fee waive flag with a Zero scheme override","\u002Fcore\u002Fadrs\u002F0003-replace-pb-fee-waive-with-zero-scheme","core\u002Fadrs\u002F0003-replace-pb-fee-waive-with-zero-scheme",{"title":299,"path":300,"stem":301},"ADR-4: No processor Digital Top-up capability gate in Reloadable Commercials","\u002Fcore\u002Fadrs\u002F0004-no-processor-top-up-capability-gate","core\u002Fadrs\u002F0004-no-processor-top-up-capability-gate",{"title":303,"path":304,"stem":305},"ADR-5: Sparse polymorphic sale fee override reason stamp","\u002Fcore\u002Fadrs\u002F0005-sale-fee-override-reason-stamp","core\u002Fadrs\u002F0005-sale-fee-override-reason-stamp",{"title":307,"path":308,"stem":309},"Agent Workflow","\u002Fcore\u002Fai-workflow","core\u002Fai-workflow",{"title":311,"path":312,"stem":313,"children":314},"Backend Guide","\u002Fcore\u002Fbackend","core\u002Fbackend\u002Findex",[315,316,320,324,328],{"title":311,"path":312,"stem":313},{"title":317,"path":318,"stem":319},"Backend AI Tooling","\u002Fcore\u002Fbackend\u002Fai-tooling","core\u002Fbackend\u002Fai-tooling",{"title":321,"path":322,"stem":323},"Backend Linting and Formatting","\u002Fcore\u002Fbackend\u002Flinting-and-formatting","core\u002Fbackend\u002Flinting-and-formatting",{"title":325,"path":326,"stem":327},"Backend Setup","\u002Fcore\u002Fbackend\u002Fsetup","core\u002Fbackend\u002Fsetup",{"title":329,"path":330,"stem":331},"Backend Testing","\u002Fcore\u002Fbackend\u002Ftesting","core\u002Fbackend\u002Ftesting",{"title":333,"path":334,"stem":335},"Documentation Health","\u002Fcore\u002Fdoc-health","core\u002Fdoc-health",{"title":337,"path":338,"stem":339,"children":340},"Frontend Guide","\u002Fcore\u002Ffrontend","core\u002Ffrontend\u002Findex",[341,342],{"title":337,"path":338,"stem":339},{"title":343,"path":344,"stem":345},"Frontend Development","\u002Fcore\u002Ffrontend\u002Fdevelopment","core\u002Ffrontend\u002Fdevelopment",{"title":347,"path":348,"stem":349,"children":350,"page":43},"Modules","\u002Fcore\u002Fmodules","core\u002Fmodules",[351,355],{"title":352,"path":353,"stem":354},"Connect API","\u002Fcore\u002Fmodules\u002Fconnect-api","core\u002Fmodules\u002Fconnect-api",{"title":356,"path":357,"stem":358,"children":359,"page":43},"Secure Links","\u002Fcore\u002Fmodules\u002Fsecure-links","core\u002Fmodules\u002Fsecure-links",[360],{"title":356,"path":361,"stem":362},"\u002Fcore\u002Fmodules\u002Fsecure-links\u002Fsecure-links","core\u002Fmodules\u002Fsecure-links\u002Fsecure-links",{"title":364,"path":365,"stem":366,"children":367,"page":43},"Processors","\u002Fcore\u002Fprocessors","core\u002Fprocessors",[368,372,376,380,384,388,392,396,400,404,408,412,416],{"title":369,"path":370,"stem":371},"Amazon Processor and API","\u002Fcore\u002Fprocessors\u002Famazon","core\u002Fprocessors\u002Famazon",{"title":373,"path":374,"stem":375},"Amilon Processor and API","\u002Fcore\u002Fprocessors\u002Familon","core\u002Fprocessors\u002Familon",{"title":377,"path":378,"stem":379},"Cadooz Processor and API","\u002Fcore\u002Fprocessors\u002Fcadooz","core\u002Fprocessors\u002Fcadooz",{"title":381,"path":382,"stem":383},"Choice Digital Processor and API","\u002Fcore\u002Fprocessors\u002Fchoice-digital","core\u002Fprocessors\u002Fchoice-digital",{"title":385,"path":386,"stem":387},"Diggecard processor reference","\u002Fcore\u002Fprocessors\u002Fdiggecard","core\u002Fprocessors\u002Fdiggecard",{"title":389,"path":390,"stem":391},"ePay Processor and API","\u002Fcore\u002Fprocessors\u002Fepay","core\u002Fprocessors\u002Fepay",{"title":393,"path":394,"stem":395},"GoGift v2 Processor and API","\u002Fcore\u002Fprocessors\u002Fgo-gift-v2","core\u002Fprocessors\u002Fgo-gift-v2",{"title":397,"path":398,"stem":399},"InComm Processor and API","\u002Fcore\u002Fprocessors\u002Fincomm","core\u002Fprocessors\u002Fincomm",{"title":401,"path":402,"stem":403},"Ogloba Processor and API","\u002Fcore\u002Fprocessors\u002Fogloba","core\u002Fprocessors\u002Fogloba",{"title":405,"path":406,"stem":407},"SVSECard Processor and API","\u002Fcore\u002Fprocessors\u002Fsvs-ecard","core\u002Fprocessors\u002Fsvs-ecard",{"title":409,"path":410,"stem":411},"Vananam Processor and API","\u002Fcore\u002Fprocessors\u002Fvananam","core\u002Fprocessors\u002Fvananam",{"title":413,"path":414,"stem":415},"Vouchers Depot processor reference","\u002Fcore\u002Fprocessors\u002Fvouchers-depot","core\u002Fprocessors\u002Fvouchers-depot",{"title":417,"path":418,"stem":419},"You Got a Gift Processor and API","\u002Fcore\u002Fprocessors\u002Fyou-got-a-gift","core\u002Fprocessors\u002Fyou-got-a-gift",{"title":421,"path":422,"stem":423},"Development Quickstart","\u002Fcore\u002Fsetup","core\u002Fsetup",{"title":425,"path":426,"stem":427,"children":428,"page":43},"Workflows","\u002Fcore\u002Fworkflows","core\u002Fworkflows",[429,433,437],{"title":430,"path":431,"stem":432},"Hub Endpoint Workflow","\u002Fcore\u002Fworkflows\u002Fhub-endpoints","core\u002Fworkflows\u002Fhub-endpoints",{"title":434,"path":435,"stem":436},"OpenAPI Tooling","\u002Fcore\u002Fworkflows\u002Fopenapi-tooling","core\u002Fworkflows\u002Fopenapi-tooling",{"title":438,"path":439,"stem":440},"Processor Integration Workflow","\u002Fcore\u002Fworkflows\u002Fprocessors","core\u002Fworkflows\u002Fprocessors",{"collectionName":442,"label":271,"prefix":273},"external_core",{"page":444,"surround":632},{"id":445,"title":64,"body":446,"config":627,"description":452,"extension":628,"meta":629,"navigation":15,"path":65,"seo":630,"stem":66,"__hash__":631},"docs\u002Feos\u002Fharbourmaster\u002Fexplanation\u002Freview-pipeline.md",{"type":447,"value":448,"toc":616},"minimark",[449,453,458,463,466,475,496,500,507,510,527,530,534,545,548,555,558,562,565,568,572,579,582,586],[450,451,452],"p",{},"Harbourmaster separates trusted context and publication verification from the\nOpenCode review runtime. OpenCode decides what the review says and submits it.\nThe TypeScript runner controls what data and tools agents can access and proves\nthat publication happened on the intended pull request head.",[454,455],"content-mermaid-transport",{":page-config":456,"code":457},"config","flowchart%20TD%0A%20%20%20%20PR%5B%22GitHub%20pull%20request%22%5D%20--%3E%20Context%5B%22Load%20PR%20context%20through%20Octokit%22%5D%0A%20%20%20%20Context%20--%3E%20Filter%5B%22Filter%20diff%20and%20classify%20risk%22%5D%0A%20%20%20%20Filter%20--%3E%20Stage%5B%22Stage%20isolated%20patch%20files%22%5D%0A%20%20%20%20Stage%20--%3E%20Workspace%5B%22Write%20review%20index%20and%20context%20files%22%5D%0A%20%20%20%20Workspace%20--%3E%20Coordinator%5B%22Start%20OpenCode%20coordinator%22%5D%0A%0A%20%20%20%20subgraph%20OpenCode%5B%22OpenCode%20review%20runtime%22%5D%0A%20%20%20%20%20%20%20%20Coordinator%20--%3E%20Specialists%5B%22Run%20selected%20specialists%20in%20parallel%22%5D%0A%20%20%20%20%20%20%20%20Specialists%20--%3E%20Verify%5B%22Aggregate%20adversarial%20verification%22%5D%0A%20%20%20%20%20%20%20%20Verify%20--%3E%20Edit%5B%22Edit%20one%20coherent%20review%22%5D%0A%20%20%20%20%20%20%20%20Edit%20--%3E%20Publish%5B%22Call%20trusted%20publication%20plugin%20(up%20to%20three%20attempts)%22%5D%0A%20%20%20%20end%0A%0A%20%20%20%20Publish%20--%3E%20Publication%5B%22Verify%20receipt%20and%20marked%20review%20on%20exact%20head%20SHA%22%5D%0A%20%20%20%20Coordinator%20-.-%3E%20Logs%5B%22Stream%20raw%20stdout%20and%20stderr%22%5D%0A%20%20%20%20Context%20-.-%3E%20Telemetry%5B%22Emit%20redacted%20logfmt%20telemetry%22%5D%0A%20%20%20%20Publication%20-.-%3E%20Telemetry",[459,460,462],"h2",{"id":461},"github-context-enters-through-a-trusted-boundary","GitHub context enters through a trusted boundary",[450,464,465],{},"Harbourmaster obtains pull request metadata, changed files, and bounded existing\ndiscussion through Octokit. It also loads review threads through GitHub GraphQL\nbefore specialists start. The coordinator receives those threads as untrusted\nquoted facts, including resolved state, outdated flags, and developer replies.",[450,467,468,469,474],{},"The runner then verifies the expected head SHA, skips drafts and forks, filters\nnoisy files, classifies risk, and selects specialists. Exact bounds, filters,\nand specialist rules are in the\n",[470,471,473],"a",{"href":472},"..\u002Freference\u002Freview-behavior","review behavior reference",".",[450,476,477,478,482,483,486,487,490,491,495],{},"The runner stages one patch file per reviewable changed file in an ephemeral\ndirectory. Before OpenCode starts, it writes ",[479,480,481],"code",{},"review-index.json",",\n",[479,484,485],{},"shared-pr-context.txt",", and ",[479,488,489],{},"review-discussion.txt",". File roles and tool limits\nare in the ",[470,492,494],{"href":493},"..\u002Freference\u002Fconfiguration","configuration reference",". OpenCode\nstarts in this directory with the trusted bundled configuration.",[459,497,499],{"id":498},"specialists-inspect-scoped-evidence","Specialists inspect scoped evidence",[450,501,502,503,506],{},"Selected specialists run as independent sibling sessions. They can use read-only\nfile tools against the review files, ",[479,504,505],{},"patches\u002F",", and any staged root reference\npaths. They cannot use a shell, browse the network, create nested agents, or\naccess GitHub.",[450,508,509],{},"The code-quality reviewer also receives read-only access to the canonical\ncheckout so it can trace callers, contracts, and tests beyond the diff. Other\nspecialists and the verifier inspect only the staged material. Findings must\nconcern behavior introduced by the pull request and refer to changed lines.\nCheckout content remains untrusted review context.",[450,511,512,513,516,517,516,520,486,523,526],{},"A trusted hook canonicalizes paths for ",[479,514,515],{},"read",", ",[479,518,519],{},"glob",[479,521,522],{},"grep",[479,524,525],{},"list"," before\nthose tools access files. It rejects paths that escape the allowed directory,\nincluding symlink escapes.",[450,528,529],{},"After specialists finish, the verifier tests their claims against the staged\nmaterial and the evidence they provide. The editor then removes duplicates,\ncalibrates severity, and prepares one coherent review. The editor supplies one\ndisposition for every active Harbourmaster finding.",[459,531,533],{"id":532},"only-the-editor-can-publish","Only the editor can publish",[450,535,536,537,540,541,544],{},"In comment mode, the editor invokes the preloaded ",[479,538,539],{},"spawn_reviewers"," tool exactly\nonce, then uses ",[479,542,543],{},"publish_review"," after verification. The GitHub token is passed\nonly to this editor process. Specialists and the verifier receive neither the\ntool nor the token.",[450,546,547],{},"The plugin owns the trusted repository, pull request, head SHA, publication\nmarker, and changed-file allowlist. A failed publication attempt returns its\ntool error to the editor, which may correct the input and retry up to two more\ntimes. The first successful result is cached and ends publication retries.",[450,549,550,551,554],{},"The editor always submits one ",[479,552,553],{},"COMMENT"," review, including when no validated\nissues remain. Silent and check-only modes do not publish. Blocking mode retains\nfail-closed runtime behavior but publishes the same advisory review event.",[450,556,557],{},"Lifecycle replies use GitHub's REST review-comment reply endpoint and run\nconcurrently. On later runs, the trusted GraphQL loader accepts a completion\nmarker only from an expected Harbourmaster bot identity.",[459,559,561],{"id":560},"the-runner-verifies-instead-of-republishing","The runner verifies instead of republishing",[450,563,564],{},"Before OpenCode starts, the runner snapshots existing pull request review IDs\nand creates a unique marker containing the run ID and exact head SHA. After\nOpenCode exits, the runner queries GitHub and accepts success only when it finds\na new submitted review on the exact head that contains that marker.",[450,566,567],{},"Harbourmaster does not parse OpenCode output as a control message. The\npublication plugin writes a private receipt, and the runner cross-checks its\nreview ID and head SHA against the marked review returned by GitHub. OpenCode\nstandard output and standard error are streamed unchanged to the GitHub Actions\nlog.",[459,569,571],{"id":570},"failures-remain-observable","Failures remain observable",[450,573,574,575,578],{},"Harbourmaster classifies configuration, GitHub, OpenCode, model, diff, policy,\nand internal failures. Retryable operations use bounded attempts and configured\nfallback models. In non-blocking modes, selected OpenCode startup failures can\nproduce a degraded outcome. ",[479,576,577],{},"strict_runtime"," turns a run with no real model\nexecution into a failure, and blocking mode fails closed when the runtime cannot\ncomplete.",[450,580,581],{},"Every stage emits redacted logfmt telemetry. The specialist plugin writes a\nversioned execution receipt outside the agent-readable diff directory. The\ntelemetry plugin writes private snapshots of observed session events. Process\nattempts never substitute for model calls. The runner removes receipt files\nafter each attempt.",[459,583,585],{"id":584},"related-information","Related information",[587,588,589,595,600,606,611],"ul",{},[590,591,592],"li",{},[470,593,594],{"href":472},"Review behavior reference",[590,596,597],{},[470,598,599],{"href":493},"Configuration reference",[590,601,602],{},[470,603,605],{"href":604},"..\u002Freference\u002Fgithub-action","GitHub Action reference",[590,607,608],{},[470,609,89],{"href":610},"..\u002Fhow-to\u002Frequest-a-review",[590,612,613],{},[470,614,615],{"href":69},"The shared-action trust boundary",{"title":617,"searchDepth":618,"depth":618,"links":619},"",3,[620,622,623,624,625,626],{"id":461,"depth":621,"text":462},2,{"id":498,"depth":621,"text":499},{"id":532,"depth":621,"text":533},{"id":560,"depth":621,"text":561},{"id":570,"depth":621,"text":571},{"id":584,"depth":621,"text":585},{},"md",{},{"title":64,"description":452},"nid3SiqjWGmplvuTUnsPOa-dL3Le6yC2ei-h_QvvzeE",[633,634],{"title":55,"path":56,"stem":57,"children":-1},{"title":68,"path":69,"stem":70,"children":-1},1789777547846]