Evidence record / gemini-cli

A dated record of one change, kept so the writing that cites it can be checked. Compiled from the sources listed below by the research run, not written for reading. The judgment lives in the signals and issues that cite it, below.

2026-07-01-gemini-cli-at-reference-file-defensive-path-resolution-null-byte-sa

At-reference (@file) defensive path resolution + null-byte sanitization landed on main (not yet stable) (channel: main-unreleased, 2026-06-30). Operator consequence: Centralized defensive path resolution for read_file/replace/write_file when the model emits ‘@’-prefixed paths (e.g. @policies/foo.txt): strips leading @ when the literal path is absent, sanitizes null bytes to avoid crashes, resolves symlinks to canonical paths (fixes macOS /var vs /private/var), and enforces plan-mode boundary restrictions against traversal. Fresh on main 2026-06-30; not in any stable/preview tag. Operators relying on @-reference file handling or plan-mode boundaries should WATCH for the next stable. Full receipted detail lives in harvest/watchlist.md.

Receipt

Finding metadata

Run: 2026-07-01-weekly-digest-2026-06-24_2026-07-01-frontier-v0

Finding ID: 2026-07-01-gemini-cli-at-reference-file-defensive-path-resolution-null-byte-sa

Source links

Primary links, including exact changelog lines when available.

Versioned source: run artifact