fix(sandbox): bind Docker controls and cleanup to run ownership - #191
Merged
Merged
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Scope
Fix Docker lifecycle ownership on fresh origin/main d9a21de. Implements the approved internal-only decision. Wire schema, API version and operation_error operations remain unchanged.
Changes
Regression evidence
Verification
All local gates green: unit 2834 passed / 1 existing skip; integration toolchain 14 passed / 1 existing skip; Docker 28 passed; E2E 25 passed, no race events, zero retries; Typecheck, docs check, read-only lint, build and fresh coverage/Sonar quality gate passed. E2E uses unchanged assertions in temporary copies on port 3307 to avoid an unrelated service on port 3000. No no-verify, no real Provider calls, no SSOT/Tutor/Planner/Mastery/Evidence/prompt/content changes. Original untracked local documents and .env.local untouched. macOS Docker Desktop correctness tests are not representative capacity measurements.