Skip to content

Agent Operating Guide

/coach-redact

Run a standalone redaction pass over a staged directory of outbound content, dispatching the canvas-redactor agent to strip internal-only patterns and flag ambiguous ones before anything leaves Canvas.

The universal outbound-safety dispatcher: a thin wrapper over the canvas-redactor agent, the plugin’s single redaction engine. Run a standalone redaction pass over any staged directory before its contents leave Canvas’s gravity. The skill doesn’t implement redaction itself: it dispatches the agent, which auto-removes deterministic internal-only patterns, surfaces ambiguous ones for your confirmation, rewrites markdown with [redacted: kind] markers, flags binary documents for you to edit by hand, and writes a _redact-report.md at the staged root. This is the standalone entry point, not a required hop: the skills that produce shareable output each dispatch the same agent themselves.

When you want an ad-hoc redaction pass over a directory you’ve staged for sharing, outside of a skill that already redacts. The outbound skills, /coach-export-package, /coach-render-package, and /coach-notify, all pipe through the same canvas-redactor agent on their own, so reach for this one only for a manual pass.

Flag Required Notes
--staged <path> Yes The directory of staged outbound content to scan.
--policy warn|block|off No Overrides the redaction_policy in .coworkcanvas/config.json. off requires an explicit in-conversation confirmation before anything is dispatched.

/coach-redact --staged .coworkcanvas/exports/2026-q3/ --policy block dispatches the canvas-redactor agent over the staged directory: it auto-removes internal-only fields and review / coaching sections, flags any binary documents and ambiguous spans for you, writes _redact-report.md at the staged root, and returns its structured verdict: the status, the counts, and any unresolved items. On a needs_user status it lists the flagged spans and stops until you resolve them.

  • The floor cannot be lowered. severity: critical items and confidential: true contracts always require your confirmation regardless of policy, and --policy off must be explicitly confirmed in conversation before dispatch.
  • Binary redaction is not automated. The agent flags binary documents; you edit them. It never writes outside the staged directory: modifications are contained.
  • The pattern set lives in one place. The canvas-redactor agent is the source of truth. In summary: fields flagged internal_only, internal / review / coaching sections and tags, watchlist frontmatter, and reviewer / coach / QA / audit-committee comments are deterministic auto-removals; “do not share” phrasing, names near performance-evaluation language, verbatim Canvas copies over 140 characters, and legal markers are heuristics surfaced for your confirmation.
  • Mirrors brain-redactor from the Second Brain plugin: the same invariants apply.