Dev.to
7/24/2026

Your AI-contribution policy is prose. Here's the enforceable half.
Short summary
The author scanned 2,204 agent-authored PRs across GitHub and found that current AI-contribution policies are unenforceable prose. Key findings: 0% declared machine-checkable scope, 3.9% modified agent control-plane files like AGENTS.md, and ~13% of CI-touching PRs escalated GitHub Actions permissions. The article proposes splitting policies into honor-system clauses and machine-checkable rules with concrete enforcement strategies for each.
- •2,204 agent-authored PRs scanned — zero had machine-checkable scope declarations
- •3.9% modified agent control-plane files; ~13% escalated CI permissions silently
- •Proposes splitting AI-contribution policies into enforceable vs honor-system clauses
Generated with AI, which can make mistakes.
Is this a good recommendation for you?



