issues Search Results · language:Dune language:JavaScript language:JavaScript language:Java language:Python language:Python
Filter by
55.1M results
Symptom
In code mode, the search discovery tool rejects any argument beyond its declared params. A model searching for Central
sites naturally calls:
search(query= sites list central , platform= central ...
bug
reporter:zach-jennings
!-- audit-managed: kind=stale --
Surfaced by /codebase-audit, kept up to date across runs. Scope: whole repo.
Findings
- [ ] email_archiver/database/repository.py:268-273 — EmailRepository.get_all_folder_paths() ...
stale
Progress
- Merged the complete end-to-end pipeline into main — Structured APIs, Spark SQL, Streaming, and MLlib, runnable with
one command (bash run.sh).
- Finalized all five /docs/ files (dataset ...
The secret_guard refinement (PR #493) — allow shell source/. includes of env files while still blocking exfil reads —
was validated 13/13 by an ephemeral oracle script that was run then deleted before ...
The gym deliberately exposes a world only over HTTP and lets the agent bring its own tools — the http_get / submit
helpers in examples/ are just examples, not part of the gym (the core names no tool, and ...
!-- audit-managed: kind=duplication --
Surfaced by /codebase-audit, kept up to date across runs. Scope: whole repo.
Findings
- [ ] email_archiver/ui/app.py:312-324 and email_archiver/outlook/client.py:150-179 ...
duplication
Two real coherence bugs from the 2026-06-18 world-generation audit:
1. Diversify can delete the only recon clue. A diversify swap can remove the config-disclosure that names the internal
hosts and ...
When the curriculum evolves a world (harden / soften / diversify), we only re-check that a path to the flag exists on
the graph — we don t actually run the exploit to confirm the world still leaks the ...
Right now a config disclosure on the public page lists the internal service hostnames outright, so the agent is handed
the map of where to pivot. In a real engagement, finding the hidden internal services ...
Parent
ADR-0007 Track 1 hardening (epic #433). Follow-up from the secret-scanning slice (#436); surfaced by adversarial
peer-review of PR #437.
Why
grug sends the full PR diff to the LLM backend for ...
epic-security
ready-for-agent

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.