-
Type:
Suggestion
-
Resolution: Unresolved
-
Component/s: Pipelines - Agentic Pipelines
-
None
Description:
Customers using Agentic Pipelines (Rovo/AI-driven workflows) in Bitbucket Cloud have reported that when they attempt to restrict environment variables for security (using an "allow list"), the agent's ability to execute tools (like Bash) and read output breaks unless specific, undocumented variables are included.
Key Requirements:
- Documentation: Maintain an official list of environment variables required for the agent to function (e.g., SHLVL, AGENT_INSTALL_PATH, PATH, HOME).
- Isolation Mechanism: Develop a way to better isolate the agent from workspace environment variables to prevent the need for manual "trial and error" allow-listing while maintaining security.