Skip to content

Harden Plan Mode policy for activate_skill #24942

@ruomengz

Description

@ruomengz

What would you like to be added?

Move 'activate_skill' from automatically allowed to requiring user confirmation ('ask_user') in Plan Mode.

Why is this needed?

Plan Mode should be restrictive. Automatically allowing skill activation might lead to unintended side effects if the skill's tools aren't all read-only, or simply for better user awareness. This aligns 'activate_skill' with other sensitive tools (ask_user, save_memory, web_fetch) in Plan Mode.

Additional context

Modified packages/core/src/policy/policies/plan.toml to move activate_skill from an 'allow' rule to the 'ask_user' group.

Metadata

Metadata

Assignees

Labels

area/coreIssues related to User Interface, OS Support, Core Functionalityworkstream-rollupLabel used to tag epics and features that are associated with one of the three primary workstreams🔒 maintainer only⛔ Do not contribute. Internal roadmap item.

Type

No fields configured for Task.

Projects

Status

Closed

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions