feat(agents-api): initialize env, packages and setup through shared Runtime - #711
Merged
Merged
Conversation
SaladDay
force-pushed
the
codex/environment-template-setup
branch
from
September 20, 2026 08:31
22db926 to
995e40c
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Hosted templates and inline configuration can now initialize confidential environment variables, npm/Python dependencies and ordered setup commands before native execution. Core freezes tenant-owned encrypted configuration, runs one shared initializer through the existing Provider contract, and passes tool configuration through the common Runtime interface; native injection stays in the Codex, Claude Code and MiniMax adapters.
Initialization runs in an isolated workspace/package sandbox, keeps credentials and native history private, and does not replay after completion or uncertain effects. Requested network policy applies after setup. Saved-Agent retries distinguish changes to confidential initialization without losing unchanged retries after reference deletion.
Validation: full
make check, regenerated OpenAPI/sqlc, focused PostgreSQL/race suites, real fixed-SDK/raw-HTTP Docker execution for all three harnesses, and current E2B/Codex execution with Files/Artifacts, cancellation, isolation and Core/Runtime crash recovery. Shared initialization was tested on Docker/E2B; the six deployment combinations were not repeated. The final creation-identity correction received a rebuilt real HTTP regression.Limits: system packages, reference overrides with unconfirmed semantics, and other installation resources remain explicitly unsupported. Codex native hook process failures can permit an original command before failure notification; the adapter verifies configuration and stops on observed failure, without claiming atomic prevention. One MiniMax upstream timeout is retained; its affected inline rerun passed without production transport changes. No complete protocol compatibility claim.
Review: two fresh independent GPT-6 Astra high full-diff reviews. The final review found no actionable findings after the creation-identity regression was corrected.