{
  "audit_skipped": [
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "recursive-home-tool-discovery"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "north-rig-raw"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "model-verification-purpose-raw"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "model-verification-probe-raw"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "worktree-outside-repo"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "worktree-add-raw-suggest"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "codex-auth-symlink-mutate"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "codex-review-raw"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "agent-heavy-work-remote-only"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "gh-run-watch-unbounded"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "unbounded-wait-loop"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "follow-forever"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "raw-e2e-pair-local"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "e2e-remote-ok-forgery"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "playwright-install-rewraps-guard"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "raw-e2e-driver-local"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "cdx-account-steal"
    },
    {
      "reason": "no shim_binary \u2014 not opted in (see module docstring for why)",
      "rule": "cdx-probe-premium-model"
    }
  ],
  "generated_at_rules_count": 21,
  "registry_hash": "cfdbee7d4da7",
  "shims": {
    "ccr": "ccr-start-raw",
    "podman": "raw-podman-in-sandbox",
    "systemctl": "cpuquota-on-agent-slice"
  }
}
