LPM treats this as warn-only first-party agent extension lifecycle risk. Explicit GED installer invocation deploys package-owned workflow commands to Codex, Claude, Gemini, or OpenCode configuration directories. A separate explicit command can install a launchd curation schedule; no automatic install-time mutation exists.
Static reason
No blocking static signals were detected.
Trigger
User runs get-engineering-done/bin/install.js or ged install-curation-schedule.
Impact
Adds GED-controlled agent commands to selected runtime config surfaces and can persist recurring local curation.
Mechanism
User-invoked agent-extension installation and optional scheduled template curation.
Rationale
Source establishes an explicit agent-extension setup and optional persistence capability, but no automatic lifecycle execution, destructive overwrite, or credential exfiltration to an unrelated endpoint. Per policy, the guarded first-party extension setup warrants a warning rather than a block.
Evidence
package.jsonbin/install.jssrc/ged/adapters/runtime_catalog.jsonsrc/ged/template_curation.pysrc/ged/vvuq.py$CODEX_CONFIG_DIR/skills/ged-*/SKILL.md~/.claude/commands/ged/*.md~/.gemini/commands/ged/*.md~/.config/opencode/command/ged-*.md~/Library/LaunchAgents/com.englund-garage.ged.template-curator.plist