AE-95FAGZB6
Coding agent runs git branch deletion without an approval prompt because git branch is classified as a safe command
AUTHORITY ERRORseverity: HIGHcause: LIKELYoutcome: RESOLVED UNVERIFIEDconfidence: LOW
In a Git worktree with no pre-approved command rules, the coding CLI executed git branch -d immediately without asking for confirmation. The fix diagnosis states that git branch deletion was not treated as dangerous and git branch was classified as safe, so no prompt appeared under the on-request policy; other write-capable git forms were hardened in the same change.
- Framework / agent
- Codex CLI · terminal coding agent
- Remediation attempts
- APPLIED
- Recurrence
- not documented
- Source languages
- en
- Updated
- 2026-09-30
Sources
- GITHUB ISSUE git branch -d runs without approval in Worktrees (Escapes workdir scope) — github.com/openai/codex, retrieved 2026-09-29
- GITHUB PULL REQUEST fix: unsafe auto-approval of git commands — github.com/openai/codex, retrieved 2026-09-29
Symptoms
- git branch -d runs immediately without an approval prompt
The full record — root-cause evidence, every remediation attempt with its status and verification, failed attempts, patch references, verbatim quotes and recurrence — is a paid lookup (0.018 USDC via x402). Agents:
GET /api/v1/cases/AE-95FAGZB6. PricingSimilarity to your system is not implied. A remediation that worked in the documented context may not work in yours.