{
  "kind": "repo_config_exec",
  "product_version": "0.12.897",
  "wheel_sha256": "a9c3bf17b036c5f661df05ba4a02cf3afa834b44c2492f3e60fb3b66061a0a24",
  "method": "Published detector functions evaluated on authored inert events or disposable configuration files.",
  "scope": "No live agent, runtime adapter, daemon ingestion, product UI, external command or network action was exercised.",
  "cases": [
    {
      "case": "workspace-hooks",
      "inputs": {
        "file": ".git/config",
        "content": "[core]\n\thooksPath = .githooks\n"
      },
      "expected_severity": "critical",
      "actual_severity": "critical",
      "findings": [
        {
          "kind": "repo_config_exec",
          "session_id": "",
          "runtime": "unknown",
          "severity": "critical",
          "title": "repository config names a program to run: core.hookspath",
          "detail": "This checkout's own .git/config sets core.hookspath, and git executes that value during ordinary operations \u2014 a background `git status` or `git diff` is enough. The code runs with your privileges, outside the agent's sandbox, before any approval prompt. Inspect .git/config before letting an agent work here; to neutralise it for one command, run `git -c core.fsmonitor=false status`.",
          "evidence": {
            "keys": [
              "core.hookspath"
            ],
            "hits": [
              {
                "key": "core.hookspath",
                "command": ".githooks",
                "line": 2,
                "manager": null
              }
            ],
            "config": ".git/config",
            "observed": "repository_config"
          },
          "first_bad_step": null,
          "spend_at_risk_usd": 0.0,
          "spend_basis": "unknown",
          "frameworks": {
            "mapping_version": "2026-09-27.1",
            "owasp_llm": [],
            "owasp_asi": [
              "ASI05"
            ],
            "atlas": [],
            "mapped": true,
            "mode": "detect",
            "pre_action_control": false
          }
        }
      ]
    },
    {
      "case": "default-hooks",
      "inputs": {
        "file": ".git/config",
        "content": "[core]\n\thooksPath = <workspace>/.git/hooks\n"
      },
      "expected_severity": null,
      "actual_severity": null,
      "findings": []
    }
  ]
}
