You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This branch adds a one-time interactive installer, root-owned checksummed DeckDoc snapshot, exact sudoers command allowlist, and an unprivileged client that uses sudo -n. Remediation and arbitrary arguments/paths are excluded.
Scope
Threat-model and harden this path before recommending it broadly or allowing diagnostic agents to use it.
Current prototype
This branch adds a one-time interactive installer, root-owned checksummed DeckDoc snapshot, exact sudoers command allowlist, and an unprivileged client that uses
sudo -n. Remediation and arbitrary arguments/paths are excluded.Scope
Threat-model and harden this path before recommending it broadly or allowing diagnostic agents to use it.
Acceptance criteria
Non-goals
Do not add a generic privileged RPC endpoint or password storage. State-changing fixes require separate, fresh authorization.
Docs
docs/wiki/Privileged-Diagnostic-Authorization.md