From e1fd28970b370059f4daf0879c2608628a8dcd9d Mon Sep 17 00:00:00 2001 From: AIOSAI Date: Sun, 5 Jul 2026 12:57:57 -0700 Subject: [PATCH] fix(aipass): seedgo-audit bypasses for install.py (introspection + modules) CI flagged @aipass at 99%: install.py had no no-args introspection gate and a direct mkdir. Both are sanctioned patterns (binary-invoked 'aipass install' bare-runs; bootstrap dir-prep before services exist) matching doctor/init_flow/profile precedent. @aipass authored the bypass entries; landing them. Local audit now 100%, pyright clean. --- src/aipass/aipass/.seedgo/bypass.json | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/src/aipass/aipass/.seedgo/bypass.json b/src/aipass/aipass/.seedgo/bypass.json index fdfff204..f40d11af 100644 --- a/src/aipass/aipass/.seedgo/bypass.json +++ b/src/aipass/aipass/.seedgo/bypass.json @@ -281,6 +281,16 @@ "standard": "introspection", "reason": "aipass is binary-invoked: aipass profile runs the command; introspection via --info" }, + { + "file": "apps/modules/install.py", + "standard": "introspection", + "reason": "aipass is binary-invoked: bare 'aipass install' runs the bootstrap; introspection via --info (same pattern as doctor/init_flow/profile)." + }, + { + "file": "apps/modules/install.py", + "standard": "modules", + "reason": "Thin bootstrap orchestrator — preps the target/project dir (mkdir) immediately before shelling out to git clone / setup.sh / aipass init. Pre-subprocess dir prep, not business file ops; a handler adds indirection for 2 mkdir calls in a linear flow (same pattern as init_flow/doctor)." + }, { "file": "apps/handlers/json/json_handler.py", "standard": "test_quality",