Repository navigation
fix(audit): pass p8-install-all only when skill install declares --all - #179
Open
brettdavies wants to merge 1 commit into
Open
brettdavies wants to merge 1 commit into
brettdavies wants to merge 1 commit into
Conversation
`p8-install-all` passed when `skill install --help` contained the characters `--all` anywhere. `--allow` and `--all-features` matched, and so did a usage line and a sentence in another argument's description (`Required unless --all is set`). The audit now asks the definition query whether that help declares `--all`. A single-dash `-all` counts in a help that declares no double-dash name, and beside double-dash names the warn says why it does not. The warn names what was searched: ``no option definition in `skill install --help` declares `--all`; usage lines are not read.`` The grading moves into a helper that takes the help text, so the audit has unit tests for the first time.
brettdavies
added this pull request to stack #166
October 8, 2026 22:41
This was referenced Oct 9, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
p8-install-allapplies to a project that ships a skill bundle and askillsubcommand. It passed whenskill install --helpcontained the characters--allanywhere, so each of these passed without the flag:--allow <HOST>,--all-featuresUsage: tool skill install [--all] [HOST]Required unless `--all` is setThe audit now asks the definition query whether that help declares
--all. A single-dash-allcounts in a help that declares no double-dash name, and beside double-dash names the warn says why it does not. The warn names what was searched.This is the last behavioral audit that decided a flag's presence by searching raw help text. Three matchers still read raw text on purpose and are outside this series:
error_probe.rsgates a probe on--outputappearing withjson,paired_examples.rsreads example lines, andno_pager_behavioral.rslooks for pager words.Changelog
Fixed
p8-may-install-allpassing whenskill install --helponly mentions--all: inside a longer flag such as--allow, in a usage line, or in another argument's description. It passes when an option definition declares--all.Changed
p8-may-install-allwarn evidence now readsno option definition in `skill install --help` declares `--all`; usage lines are not read.Type of Change
fix: Bug fix (non-breaking change which fixes an issue)Related Issues/Stories
docs/plans/2026-10-06-0034-fix-help-flag-names-across-frameworks-plan.md(unit U10, theinstall_all.rsPR)p2-json-output), fix(audit): credit a non-interactive flag only when the help declares it #173, fix(audit): pass p1-flag-existence only when the help declares a gate flag #172, fix(audit): pass p7-quiet only when the help declares --quiet or -q #171, fix(audit): match a declared confirm flag against the definitions the help declares #170, fix(audit): find flag definitions at column 0, in box tables, and behind brackets #169, fix(audit): stop reading wrapped description lines as flag definitions #168, fix(audit): read names from a second column and descriptions after a marker #167, fix(audit): read every flag name a help declares whole #165, refactor(audit): look flags up through one model and one query #164, test(audit): pin what the flag parser reads from a capture of every help layout #163, feat(docker/score): compare two anc builds over the registry in one pinned image agentnative-site#455 (the corpus harness)Testing
Test Summary:
install_all.rs, the audit's first. The grading moved into a helper that takes the help text, so it can be tested without a binary. anc's own--allline passes. Three helps that carry the characters without declaring the flag warn. The warn evidence is asserted whole.-allpasses in a help with no double-dash name and warns, with the reason, beside one.cargo test --test dogfoodpasses, andanc audit .on this repository keeps itsp8-may-install-allpass under the base and head builds.Negatives observed failing. The new tests, run against the base (#178) with the helper in place and the substring match still inside it:
Expected moves. Written before the corpus run.
None. All 95 scored tools pass this row before and after, because the row passes outright for a target with no skill bundle beside it, and the corpus audits installed binaries. Replaying the full registry capture set through the base and head builds moves no row.
Corpus before/after. Run after the table above was written. Base
4697a3c24879, head8a8ae3ef2419. Imagesha256:05db16cf226cd14a93a2682aea41b72d3e6b4d240cadba006f2881d3ffa996b3, networkbridge. 98 tools selected, 95 scored under both builds, 1 rerun three times (mods).Moved rows (0)
None.
Derived fields moved (0)
None.
No row and no derived field moved, as expected. No row is unstable, no harness bug is flagged, and no tool failed to score under one build only.
modsp3-should-about-long-about, the one row on the A/A noise list, did not move: both builds returned pass and warn for it (base runs warn, pass, pass, warn; head runs warn, pass, pass, pass).cursor,nvidia-smiandxai-grok-buildare absent from the image and ran under neither build.Files Modified
Modified:
src/audits/behavioral/install_all.rs:audit_install_helpgrades the help text through the definition query;audit_install_allruns the probe and hands it over.Created:
Renamed:
Deleted:
Breaking Changes
A project whose
skill install --helpmentions--allwithout declaring it loses this MAY-tier pass. The scorecard schema and JSON shape are unchanged.Deployment Notes
Checklist