# HarnessLink 17.5.47 release notes

4 changes, released Oct 7, 2026.

### Breaking Changes

- `superpi add` no longer writes skills and agents to `~/.superpi/agent`, and `--force` no longer overwrites existing files: it only replaces SuperPi's own copies that you edited. Skills already under `~/.superpi/agent/skills` stay where they are; run `superpi add <name>` again to install them into your harnesses.

### Added

- Your organisation's policies are now enforced, not only stored. Tool and command rules from the dashboard's Policies page, including their folder and model conditions, are checked before a tool runs in Claude Code, Codex and omp: a denied tool or command is blocked with the name of the policy, and "ask first" rules ask in Claude Code and omp (Codex blocks them, because it can't ask from a hook). Policy instructions are added at the start of each session in those harnesses. Rules are cached on the machine and refreshed every minute, so they apply offline and never slow a tool call. pi, Cursor and Antigravity are not enforced yet. `superpi` and `superpi cloud status` show which policy is active and when it was last fetched.
- `superpi add <skill>` installs the skill where each harness reads it: `~/.agents/skills` (Codex, also read by pi and Cursor), `~/.claude/skills` (Claude Code), `~/.omp/agent/skills` (omp), `~/.pi/agent/skills` (pi), `~/.gemini/antigravity-cli/skills` (Antigravity CLI) and `~/.cursor/skills` (Cursor), for every harness enabled or detected on the machine. It shows where it will write and asks first (`--yes` skips); `--harness <id>` targets one harness. Running it again changes nothing, and a skill of the same name that SuperPi did not install is never overwritten. `superpi add --list` shows what is installed for each harness, and `superpi remove <name>` removes only the files SuperPi wrote. Agents and extensions install for omp only.

### Changed

- When the SuperPi service starts (including after `superpi update`), it adds the policy hook wherever SuperPi's context hooks are already installed and refreshes its omp extension, so no reinstall is needed; nothing is added where you never installed the hooks. Codex skips hooks you haven't trusted, so `superpi` shows "run /hooks in Codex" until you trust SuperPi's.

Update HarnessLink and every installed harness to its current release:

hnl update

New machine? Install with:

curl -fsSL https://harnesslink.sh/install.sh | bash

[Newer: 17.5.48](https://harnesslink.sh/releases/17.5.48) · [Older: 17.5.46](https://harnesslink.sh/releases#v17.5.46) · [All releases](https://harnesslink.sh/releases) · [Atom feed](https://harnesslink.sh/releases.atom)
