Boundary
What DexCode should hold
The control plane stores run metadata and evidence, not unlimited repo access.
Scoped tokens
RequiredCLI and API tokens should be revocable, named and scoped to the account.
Evidence retention
RequiredArtifacts need configurable retention because traces and screenshots can contain sensitive context.
Human approval
RequiredMerge, deploy and customer-facing changes still need explicit owner approval.