Skip to content

docs: clarify AFS macOS consent result - #52

Merged
BunsDev merged 2 commits into
mainfrom
docs/afs-macos-consent-confirmation
Aug 9, 2026
Merged

docs: clarify AFS macOS consent result#52
BunsDev merged 2 commits into
mainfrom
docs/afs-macos-consent-confirmation

Conversation

@BunsDev

@BunsDev BunsDev commented Aug 9, 2026

Copy link
Copy Markdown
Member

Summary

  • records passed human-Terminal mounted I/O for the experimental AgentFS NFS path
  • clarifies that macOS network-volume/privacy access is assessed per client or harness
  • retains no supported mount workflow, no-auth, no-sandbox, and remaining safety gates

Validation

  • pnpm run build
  • pnpm run check:links
  • git diff --check

BunsDev and others added 2 commits August 9, 2026 01:31
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Copilot AI lite review requested due to automatic review settings August 9, 2026 06:47
@vercel

vercel Bot commented Aug 9, 2026

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
coven-docs Ready Ready Preview Aug 9, 2026 6:48am

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Clarifies the documentation around the experimental AgentFS macOS loopback NFS mount result, distinguishing a successful human Terminal validation from the still process-/client-specific macOS privacy (TCC) consent requirements.

Changes:

  • Updates architecture docs to reflect that a human Terminal validation passed and that per-process macOS consent is still required.
  • Rewrites the Agent filesystem page to record the 2026-08-09 human Terminal mount/read/write validation and clarify client/harness-specific consent implications.
  • Adjusts daemon security posture docs to reflect the validated behavior while reiterating remaining safety/access-control gaps.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated 1 comment.

File Description
content/docs/guide/architecture.mdx Updates the architecture overview to reference the passed human Terminal validation and remaining per-process consent requirement.
content/docs/guide/agent-filesystem.mdx Records the human-operated macOS validation steps and updates the roadmap gating language around consent and remaining unknowns.
content/docs/daemon/security.mdx Clarifies security posture wording: validation was for one consented client, while other processes may still be denied.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

| Storage foundation | Shipped experimental | `coven-afs` provides the SPEC-compatible schema, filesystem operations, and copy-on-write overlay. |
| macOS NFS and performance spike | Shipped experimental | A feature-gated NFSv3 export and benchmark show a conditional storage-engine GO with WAL. Agent-process confirmation, concurrent-client evaluation, and Linux/FUSE remain open. |
| Mount safety decision | Planned after spike | Resolve loopback access control, default-off behavior, copy-up limits, base-ingest filters, platform-specific recovery, and the macOS privacy confirmation before enabling any mount by default. |
| macOS NFS and performance spike | Shipped experimental | A feature-gated NFSv3 export and benchmark show a conditional storage-engine GO with WAL. Human Terminal validation passed; the result requires a client-/harness-specific macOS privacy or network-volume access assessment, while concurrent-client evaluation and Linux/FUSE remain open. |
@BunsDev
BunsDev merged commit 88e0e55 into main Aug 9, 2026
2 checks passed
@BunsDev
BunsDev deleted the docs/afs-macos-consent-confirmation branch August 9, 2026 06:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants