9013fcdc87
_resolve_cron_enabled_toolsets returned None when _get_platform_tools raised, and AIAgent reads None as "load every toolset": a malformed platform_toolsets block (or a stale-module import error after an update) turned the operator's cron restriction into the full default set, with only a log warning. Unattended jobs process untrusted text, so that is a privilege widening, not a safety net (#111380). The resolver now raises a RuntimeError naming the cause; run_job's existing failure path records it on the job (last_error, failure streak, incident) and the agent is never constructed. Per-job enabled_toolsets (unknown names included) and the MCP merge path never touch the platform resolver and are unchanged; the disabled-toolset resolver has no fail-open branch. Live: platform_toolsets: oops -> before: run ok, enabled_toolsets=None, 98 tool names selected; after: run fails "Cron toolset resolution failed, so this run was refused rather than given every tool", agent never constructed. normal / unknown-per-job / mcp-merge shapes: identical before and after. Co-authored-by: Austin Bell <10687162+robertaustinbell@users.noreply.github.com>
Website
This website is built using Docusaurus, a modern static website generator.
Installation
yarn
Local Development
yarn start
This command starts a local development server and opens up a browser window. Most changes are reflected live without having to restart the server.
Build
yarn build
This command generates static content into the build directory and can be served using any static contents hosting service.
Deployment
Using SSH:
USE_SSH=true yarn deploy
Not using SSH:
GIT_USER=<Your GitHub username> yarn deploy
If you are using GitHub pages for hosting, this command is a convenient way to build the website and push to the gh-pages branch.
Diagram Linting
CI runs ascii-guard to lint docs for ASCII box diagrams. Use Mermaid (````mermaid`) or plain lists/tables instead of ASCII boxes to avoid CI failures.