Guarded terminal
PATH shims for common tools. Humans get convenient resolution; agent harness invocations do not inherit workspace secrets implicitly.
Agents leave the shim boundary at launch
Workspace Agent launches, app menu launches, printed commands, goal handoffs, and hand-typed claude, code, codex, cursor, devin-desktop, or devin start the agent child without guard markers. Authsia restores the pre-guard PATH and removes every stale authsia-guard-* entry while leaving the parent tab guarded. Shells owned by the launched agent skip Auto-guard; ordinary IDE terminals remain guarded.
Run authsia setup --repair once and open a new terminal first.
The Guarded Terminal line reports Active with the shim count, Stale when guard metadata and PATH disagree, or Inactive (agent session) inside a launched agent. --verbose lists shimmed tool names, with agent launchers (claude, codex, …) called out separately from mediated tools since they start unguarded rather than routed through workspace run.
Default tool families
npm, pnpm, yarn, python, pip, docker, aws, gcloud, az, kubectl, helm, terraform, tofu, terragrunt, pulumi, ansible-playbook.