Skip to content

proof(windows): isolate SID70 confinement effect - #50

Closed
marksverdhei wants to merge 1 commit into
chloe/maintenance-20260725from
chloe/pr46-sid70-causality
Closed

proof(windows): isolate SID70 confinement effect#50
marksverdhei wants to merge 1 commit into
chloe/maintenance-20260725from
chloe/pr46-sid70-causality

Conversation

@marksverdhei

Copy link
Copy Markdown
Contributor

Remove only the Write Restricted Code SID from the exact PR #46 candidate while leaving the executable workspace-confinement regression unchanged.

The hosted Windows service runner began executing the regression after the desktop fix and then deleted both an outside-workspace file and a protected .git directory. This temporary proof distinguishes whether SID70 enables that write or whether the confinement defect predates it. The evidence bar is behavioral: the outside file and protected directory must survive; startup-only failures are not proof.

Temporary evidence branch; never merge.

Acting-Agent: chloe

@marksverdhai

Copy link
Copy Markdown
Contributor

Evidence incorporated into #46 at 7ed0927: SID70 is removed from the restricting set and the capability-root regression is strengthened. Closing this temporary never-merge proof PR.

Remove only the Write Restricted Code SID from the exact PR #46 candidate while retaining the executable workspace-confinement regression unchanged. This temporary branch determines whether SID70 causes the observed outside-workspace deletion or merely correlates with it.\n\nActing-Agent: Chloe
@marksverdhei
marksverdhei force-pushed the chloe/pr46-sid70-causality branch from 877c9b1 to 30b291c Compare July 25, 2026 21:50
@marksverdhei

Copy link
Copy Markdown
Contributor Author

Diagnostic-only proof branch. The finding has been incorporated into #46's final reviewed Windows isolation design; closing without merge.

@marksverdhei
marksverdhei deleted the chloe/pr46-sid70-causality branch July 26, 2026 00:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants