← Files Generate RunbookARCHIVED FILE
skills/generate-runbook/references/safety-gates.md
2.35 KB · Oct 5, 2026 · 18:30 UTC
# Safety gates ## Gate levels ### Gate 0 — Read-only Proceed when the target is clear and inspection does not expose secrets or private content. ### Gate 1 — Reversible change Require a verified target, current health check, recovery path, post-change verification, and bounded scope. ### Gate 2 — Production or external change Require explicit authorization, named operator, blast-radius assessment, stop conditions, rollback owner, communication plan, and live monitoring. ### Gate 3 — Destructive or irreversible change Require explicit approval immediately before execution, independently verified targets, recoverable backup when possible, dry run, precise exclusions, and a second-person check when the organization supports it. ## Mandatory stops Preserve and reuse an existing authorization when its action, target, scope and limits still apply. A resumed task does not renew spent authority. Reapproval is needed for changed scope, exhausted/expired/revoked grants, or explicit action-time gates such as Gate 3. Finish authorized preparation before requesting approval; continue independent authorized work while a gated action waits. Stop the affected action and dependent work immediately for the conditions below. For an active privacy/security incident or outage, prioritize containment and preservation; otherwise continue independent authorized preparation where safe. Stop conditions: - unexpected access to another user’s data - data loss or corruption - credential or secret exposure - production outage outside the stated tolerance - a target that differs from the approved scope - recovery that requires an unapproved destructive action - verification signals that are unavailable or contradictory - an uncertain external-action outcome that has not been reconciled before retry Do not convert a failed verification into an improvised repair outside the authorized recovery scope. Contain and preserve evidence; follow already authorized recovery or obtain a new decision when the scope changes. ## Command rules - Resolve paths and identifiers with read-only checks. - Avoid broad globs, unresolved variables, and recursive deletion. - Never target a home directory, repository root, filesystem root, or shared production resource ambiguously. - Prefer reversible operations and non-interactive commands. - Redact secret values from commands and evidence.
SHA-256: e1dd4cfe58a72dda2f60f416467b3a25db45f0d823d65dcd8330ba2c81f55bc1