Skip to content

docs: pin the reviewed audit-isolated deployment workflow - #40

Merged
brianvarskonst merged 1 commit into
mainfrom
fix/review-20261006-docs
Oct 6, 2026
Merged

brianvarskonst merged 1 commit into
mainfrom
fix/review-20261006-docs

Conversation

@brianvarskonst

Copy link
Copy Markdown
Member

Fix the confirmed findings in the 2026-10-06 organization review. The changes preserve compatibility, add a regression for the affected behavior, and document the patch release.

Validation: PHP 8.5 package QA where applicable, native WordPress/database regressions for mail, consent, ORM and cache queues; real Nginx/FPM and rsync probes for project templates. Workflow checks include immutable audit inventory verification and an adversarial build that mutates its locks and SBOM.

Private Security remains absent from Starter and Demo. Original working directories are preserved; all changes were made in isolated worktrees.

@brianvarskonst
brianvarskonst merged commit a044303 into main Oct 6, 2026
18 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant