Files
headquarter/.pi-map.index.md
T
Developer 9f720930ea fix: run tool terminal sessions as container user instead of root
- Remove compose-level user: 0:0 override from manifest_compiler.py so the
  entrypoint can start as root, fix mount ownership, and drop privileges to
  the container user internally.
- Add get_manifest_container_user() helper to resolve the manifest-declared
  container user (with uid:gid fallback).
- Pass container user through TerminalSession, TerminalManager, and the
  terminal WebSocket handler so docker exec is invoked with --user <user>.
- Update and add unit tests for the manifest compiler and terminal session.
- Record the additional root-user fix in the fix-pi-container-mount-permissions
  OpenSpec change/tasks.

Quality gates: pytest tests/unit/ (226 passed), pytest tests/services/test_terminal_manager_multi.py (7 passed), ruff check on changed files (clean), mypy on changed files (clean)
2026-06-17 20:51:46 +00:00

2.1 KiB

. (index)

dir: .

Project Map Protocol

  1. Read this protocol and the root .pi-map.index.md first.
  2. Use index: / map: references to open relevant directory indexes and maps.
  3. Load indexes before rich maps during task-start navigation.
  4. Read the local rich map and actual source before editing.
  5. Treat non-empty ## dirty sections in either artifact as stale.
  6. If source and generated artifacts disagree, trust source.
  7. If map and index disagree, trust neither blindly; verify from source and regenerate the pair.
  8. After editing source, run project_map_patch for each changed file.
  9. Before broad architectural claims or final handoff, run project_map_validate when freshness matters.

Trust boundary: index routes, map orients, source decides.

role

A self-hosted development platform that manages projects, git repositories, and development tools with OAuth2 authentication, containerized via Docker Compose.

parent

children

  • .atl index: .atl/.pi-map.index.md map: .atl/.pi-map.md
  • .claude index: .claude/.pi-map.index.md map: .claude/.pi-map.md
  • .opencode index: .opencode/.pi-map.index.md map: .opencode/.pi-map.md
  • .pi index: .pi/.pi-map.index.md map: .pi/.pi-map.md
  • .sisyphus index: .sisyphus/.pi-map.index.md map: .sisyphus/.pi-map.md
  • .stoneforge index: .stoneforge/.pi-map.index.md map: .stoneforge/.pi-map.md
  • apps index: apps/.pi-map.index.md map: apps/.pi-map.md
  • docs index: docs/.pi-map.index.md map: docs/.pi-map.md
  • e2e index: e2e/.pi-map.index.md map: e2e/.pi-map.md
  • openspec index: openspec/.pi-map.index.md map: openspec/.pi-map.md
  • scripts index: scripts/.pi-map.index.md map: scripts/.pi-map.md
  • tool-images index: tool-images/.pi-map.index.md map: tool-images/.pi-map.md
  • uploads index: uploads/.pi-map.index.md map: uploads/.pi-map.md

files

  • .env.example
  • .gitignore
  • AGENTS.md
  • CHANGELOG.md
  • Makefile
  • README.md
  • docker-compose.traefik.yml
  • docker-compose.yml
  • progress.md
  • swap-pane
  • ui-audit-spacing-typography.md
  • ui-rework-foundations-apply.md
  • ui-rework-pass2-apply.md

index: ./.pi-map.index.md map: ./.pi-map.md

workflows

dirty