pub fn provider_native_mapping_supported(
provider: &str,
approval_level: ApprovalLevel,
native: &ProviderNativeNetworkSketch,
) -> Result<(), String>Expand description
Whether provider_native on a catalog entry can be honored for provider
at the resolved ApprovalLevel.
Codex first slice (research codex-network-access-mapping-2026-10-02):
codex_network_access maps only under Moderate (workspace-write).
ReadOnly / FullAuto / Unmanaged refuse clearly rather than silent ambient.
Non-Codex providers refuse Codex-only knobs.