Files
CASAN/packages/casan-harness/agentops/rate-limits.yaml
T
thanhnvandClaude Opus 4.8 36a4812ef3 refactor(structure): promote app to repo root + remove redundant workspace cruft
Standard production layout: the OKR app (was nested under AINative_OKR_CASAN5/) is now
the repository root. No more wrapper directory.

- Promote AINative_OKR_CASAN5/* -> repo root (backend/ frontend/ packages/ apps/
  .specify/ docs/ infra/ nginx/ scripts/ + configs). Merge tool dirs: .gitea (kept the
  active deploy ci.yml, added harness-ci.yml + runbooks), .claude (agents/commands +
  launch.json), .github moved up.
- Remove redundant: 00_SUBMISSION_PACKAGE, scattered root notes (FPT_CASAN_Full.md,
  tu-tuong-casan.md, casan-tu-sinh..., casan_harness_assessment.md, source-review...,
  README_CASAN5_REFINED.md), casan-next-plans/ and optimize-docs/ (competition/planning
  artifacts — roadmap + design history preserved in git log / commit messages).
- Update all references to the old layout:
  - .gitea/workflows/{ci,harness-ci}.yml, .github/workflows/{ci,deploy}.yml:
    working-directory .; drop AINative_OKR_CASAN5/ prefix; .specify/{tests,scripts}
    -> packages/casan-harness/... (.specify/logs state kept)
  - .claude/launch.json, .gitea/*-runbook.md: path prefixes
  - CLAUDE.md, README.md: docs/input -> apps/okr/domain/input
  - policy-bundle.yaml: 8 policy paths -> packages/casan-harness/...; manifest re-signed
- secrets-scan.sh: fixture excludes -> new package/domain paths.

Full gate from the new root: PASS=64 FAIL=0 SKIP=3.

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
2026-07-08 13:26:36 +09:00

37 lines
886 B
YAML
Raw Blame History

This file contains ambiguous Unicode characters
This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.
version: 1.0
description: CASAN H2 Tool rate limits — prevent runaway agent loops
limits:
- tool: deploy
max_per_pipeline: 3
window: pipeline_run
note: "Max 3 deploy attempts per pipeline run before escalation"
- tool: migration
max_per_pipeline: 5
window: pipeline_run
note: "Max 5 migration runs — includes retries"
- tool: db_write
max_per_pipeline: 10
window: pipeline_run
- tool: write_code
max_per_pipeline: 50
window: pipeline_run
note: "50 write_code calls covers BE+FE implementation + up to 5 retry cycles"
- tool: external_api
max_per_hour: 100
window: rolling_60min
- tool: agent_step
max_per_pipeline: 200
window: pipeline_run
note: "Covers all 13 steps × max retries"
enforcement:
on_limit_exceeded: deny
log_denials: true
log_path: .specify/logs/audit/rate-limit-denials.jsonl