Skip to content

Harden public project baseline - #1

Merged
lrgthu merged 2 commits into
mainfrom
maint/public-baseline
Sep 12, 2026
Merged

lrgthu merged 2 commits into
mainfrom
maint/public-baseline

Conversation

@lrgthu

@lrgthu lrgthu commented Sep 12, 2026

Copy link
Copy Markdown
Owner

Summary

  • clarify the first-run, contribution, diagnostic, and release workflows
  • add concise pull request and bug/feature issue templates
  • add a dependency-free public-source privacy audit and regression coverage

Repository / contributor workflow

Document branch → pull request → CI → merge as the normal public workflow, preserve the CX Deck identity/runtime/presentation boundaries, and record immutable release tags plus the public-history firewall.

Security / CI

Keep Actions at contents: read, harden the verified zmx download, cancel superseded runs, add the public-source audit to regular CI, and route security-sensitive reports to GitHub Private Vulnerability Reporting.

Validation

  • 342 unit/disposable tests passed
  • 6/6 real-zmx disposable integration tests passed
  • direct-vs-zmx behavior: 11/11 comparisons passed
  • T1 capture, T2 MOVE_REUSE, T2 exact restore, and T3 navigation disposable iTerm acceptances passed
  • fresh install, reinstall, v0.7-style upgrade, doctor/status, and uninstall preservation passed in a temporary HOME
  • Python compile, zsh syntax, YAML parse, diff check, and 71-file public-source audit passed

Non-goals

No product feature, persistence, runtime, session, or version change. CX Deck remains 0.8.1.

@lrgthu
lrgthu merged commit 4ca067b into main Sep 12, 2026
2 checks passed
@lrgthu
lrgthu deleted the maint/public-baseline branch September 12, 2026 07:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant