CARBON settings

Reusable private test context for local CARBON execution.

Project activity & overrides

Global defaults are reusable. Select a project to see its actual command frequency and host telemetry, then optionally override only its browser controls and report detail. Secrets always remain global.

No project loaded yet.
Global test execution context Apply one reusable login, prompt, and document set to CARBON tests across projects.
LOCAL · GLOBAL

Available to local CARBON test execution as CARBON_TEST_USERNAME. It is not copied into test definitions or reports.

Injected only into an approved child test runner as CARBON_TEST_PASSWORD. CARBON never returns the value to the coding agent, settings page, or reports.

Checking…

CARBON adds this instruction to local generation and execution workflows without allowing it to weaken safety or evidence requirements.

Add up to 20 local documents, 10 MB each and 50 MB total. CARBON keeps locked local copies and exposes only their paths to the coding agent so the right local reader can load them. They are treated as untrusted reference data, never as instructions, and are not uploaded by local workflows. Keep passwords and API keys in the credential fields, not documents.

Execution and optional services Configure local execution, browser control, and optional model-assisted screenshot review.

Verbose is the CARBON default. It explains meaningful progress, selected tests, evidence, findings, unknowns, skipped or blocked work, and prioritized next actions. Every mode keeps the generated HTML report complete.

CARBON tries this first. Automatic stays inside the allowed list below and reports when no permitted controller can satisfy the test.

Allowed local browser controls

Choose every fallback CARBON may use. At least one is required. The current Chrome session is intentionally off by default.

External quality systems Read Jira/Xray and TestRail cases, results, and known issues into CARBON. Global connection defaults can be narrowed per project without storing secrets in the repository.

Read first. Sync only after a reviewed preview.

Connecting grants read access only in normal CARBON workflows. External creates, updates, or result publications require a separate digest-protected preview, explicit approval of the exact scope, and confirmation that you export or back up the affected project first. CARBON does not support deletion.

Jira + Xray

Create and revoke tokens in Atlassian account security ↗. Never paste a token into chat.

Checking…

Create an API key in Xray Global Settings → API Keys. Xray authentication docs ↗

Checking…
TestRail

Enable the API and create a personal API key in TestRail's My Settings. TestRail API setup ↗

Checking…

CARBON reads results only for these explicit run IDs, up to 10.

When enabled, CARBON may recommend /carbon_integrations if Jira/Xray, TestRail, or another inaccessible system appears to be a meaningful evidence gap. It never connects automatically.

AI screenshot quick checks Optionally let AI Upgrade add sparse visual-review checkpoints to existing automation.

Local means CARBON runs the test code on this machine. The selected screenshot and short review focus are still sent to this model provider when an inserted quick check runs.

CARBON does not guess a model name. Choose a current vision-capable model from your provider account so upgrades stay explicit and reproducible.

The key is stored in macOS Keychain when available, with a locked local fallback. It is exposed to approved child test runners only through the provider's standard environment variable and is never written into test source.

Checking…
Do not use screenshots containing passwords, tokens, private customer data, payment details, health data, or other sensitive information unless transmission to the selected provider is explicitly authorized.

When on, CARBON may show one relevant IcebergQA recommendation when the current result creates a real need. It shows no ad without a matching context, never shows more than one per report, waits at least 24 hours between promotions, and waits seven days before repeating the same offer.

Sends only allowlisted action names—such as Help, Browser Test, Test Run, and First Activation—to Fathom. CARBON never sends prompts, URLs, credentials, paths, test data, screenshots, logs, or report contents. Turn this off at any time.

This page is served only on your computer with a one-time session token. Test and model credentials go to macOS Keychain when available, with user-only file fallbacks. Raw secrets are never returned to the page, chat, reports, or plugin metadata. Context documents remain local.