Advanced Topics¶
This section covers safety, enterprise governance, and automation topics beyond basic command usage.
- Enterprise Hardening: fleet-wide deployment, enforced keyring storage, internal PKI, proxy traversal, and AI/MCP governance
- Security Architecture & Threat Model: trust boundaries, threat vectors, mitigations, and honest enterprise gap tracker
- Repository Discovery and Server Switching: remote-based repo inference, precedence, and multi-server workflows
- Bulk Operations: reviewed multi-repository policy workflows
- Dry-Run Planning: mutation previews, capability signaling, and safety guarantees
- Git Authentication: letting plain
gitauthenticate throughbbwithout storing a token in a repository - Networks, Proxies and TLS: outbound proxies, internal certificate authorities, and diagnosing a connection
- Machine Mode and Diagnostics: JSON contract and supportability patterns
- Server-Side Hooks: why
bbdoes not manage plugin hooks or hook scripts, and what to use instead - Webhook Secrets: the shared secret and endpoint credentials — where
bbreads them, what it refuses to print, and how a bulk plan names one without holding it
These guides are aligned with accepted ADRs and generated reference artifacts.