Skip to content

ADR-0021: Repository-defined execution requires Project trust

  • Status: Accepted
  • Date: 2026-09-10

Context

Setup/verification/dev commands can execute arbitrary local repository code.

Decision

Opening a Project and authorizing repository-defined scripts are different actions.

Consequences

Forge records trust and asks before first project-defined execution; the exact UX can remain lightweight.

Change rule

If implementation evidence proves this wrong, update the canonical architecture/product document first and then supersede/amend this ADR. The ADR is not allowed to keep current docs stale.

Forge is local-first. The docs are part of the product engineering system.