From 4d92716a69c9ac2b95d46397403ec57326c73dca Mon Sep 17 00:00:00 2001 From: Neil Date: Fri, 2 Oct 2026 06:36:32 -0700 Subject: [PATCH] Document the validated Linux managed account scope --- docs/reference/managed-data-accounts.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/reference/managed-data-accounts.md b/docs/reference/managed-data-accounts.md index a8db7c6762f..7967ab231e5 100644 --- a/docs/reference/managed-data-accounts.md +++ b/docs/reference/managed-data-accounts.md @@ -20,4 +20,4 @@ Selection affects newly launched explicit OpenCode/Devin commands and agent laun For SSH, enroll by running the command on a headless Orca runtime on the remote machine. The remote runtime owns its profiles and selection; a desktop client's credential paths never cross SSH. Direct SSH relay launches and Windows-hosted WSL panes do not consume the desktop host's profiles. Run a headless runtime inside that execution environment instead. Folder workspaces use the same host account store as git worktrees. Older Orca hosts reject new operations before login through capability negotiation. -Validation currently covers OpenCode 2.0.16 on macOS, real isolated login and selected terminal authentication, Devin 3000.10.31 saved-login recognition, and the Node headless runtime. Fresh Devin manual-token enrollment, a physical SSH host, Linux, and Windows still require verification; these are not claimed as tested. +Validation covers OpenCode 2.0.16 on macOS and Linux arm64, including isolated official enrollment, selected and System background-terminal credential checks, reselection, and profile deletion. Linux checks used the Node headless runtime in an Ubuntu 24.04 container. Devin 3000.10.31 saved-login recognition was checked on macOS. Fresh Devin manual-token enrollment, a physical SSH host, Linux desktop UI, Windows, and Windows-hosted WSL still require verification.