Core controls
Container & Networksettings- Worktree isolation
- Diff review before finalization
Recommended baseline
- Use containerized workspaces where consistency matters.
- Default network policy to least privilege.
- Keep allowlists explicit and minimal.
Worktree bootstrap as safety tooling
UseWorktree Bootstrap to enforce repeatable setup commands for every new worktree so session behavior is consistent.