You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
Commit 684800b
Browse filesBrowse the repository at this point in the historyBrowse files
sec-default: the system prompt's sections continue past the user tier (#97241)
* sec-default: the system prompt's sections continue past the user tier; the declarations carry prompt.compose
* sec-default: prompt.compose has its own row, a second case where a person's plugin asks first, and the declarations as the event shipped
* sec-default: the two new cases set their several-line hooks apart
Copy file name to clipboardExpand all lines: mods/sec-default/README.md
+2-1Lines changed: 2 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -27,6 +27,7 @@ settings it decides by.
27
27
| --- | --- |
28
28
|`classic.*`| Continue past the user tier: the organization's settings hooks see the engine's input and their answer stands. |
29
29
|`prompt.section`, `prompt.context`, `skill.prompt`, `attribution.text`| Continue past the user tier: managed CLAUDE.md, rules and policy skills reach the model as written. A person's plugins keep `prompt.submit` and its additive context. |
30
+
|`prompt.compose`| Continue past the user tier: the system prompt's list of sections is what the organization's tiers, the built-ins and the engine's own composition make it. A person's plugin neither drops, reorders nor rewrites a section, nor changes the facts the list is composed from, nor answers a list of its own in its place. The engine raises this event only when some loaded plugin hooks it, so where this plugin is seated every render of the system prompt runs the chain. |
30
31
|`settings.read`| Continue past the user tier: no user hook rewrites what any caller reads as settings, this plugin's own policy reads included. |
31
32
|`tool.describe`, `command.describe`, `agent.offer`, `agent.spawn`| When the subject's pinned `e.provider.tier` is `prepend` or `append` (a policy-installed plugin, the managed folder, a policy MCP server), continue past the user tier; a subject provided by `user`, `builtin` or `core` passes. |
32
33
|`tool.register`| A caller in `prepend` or `append` continues past the user tier. A `user`-tier caller is refused by name while managed settings hold `allowedMcpServers` (set at all, empty included); otherwise it passes. |
@@ -91,7 +92,7 @@ as unset leaves deny rules holding. See [Deny rules hold](#deny-rules-hold).
0 commit comments