can1357
|
4c1793b9b7
|
fix(security): hardened cloud import attribution and comparison honesty
- Failed closed when cloud pulls could not verify the project origin.
- Re-verified configuration attribution on every cloud finding detail.
- Rejected non-repository-relative Codex bundle locations.
- Refused lineage comparisons against incomplete after-scans.
- Preserved diff and working-tree targets when adding path scopes.
- Logged post-publication output failures and recovered persisted status.
- Used Bun.SHA256 directly and reused pi-ai JWT decoding.
- Shortened exported paths in interactive output.
|
2026-07-30 17:24:07 +02:00 |
|
Kyle McCleary
|
0b968bbb49
|
feat(security): integrate Codex Security cloud scans
|
2026-07-29 23:24:26 -07:00 |
|
Kyle McCleary
|
13ed773855
|
fix(coding-agent): correlate producer-neutral findings
|
2026-07-29 20:30:54 -07:00 |
|
Kyle McCleary
|
d90e54fb09
|
fix(coding-agent): harden native security workflow
|
2026-07-29 20:05:57 -07:00 |
|
Kyle McCleary
|
9314e200fe
|
fix(security): harden scan runtime boundaries
|
2026-07-29 18:47:51 -07:00 |
|
Kyle McCleary
|
80bdfdcbd4
|
fix(security): stabilize imported finding identities
|
2026-07-29 18:47:51 -07:00 |
|
Kyle McCleary
|
b708b39915
|
fix(security): harden native scan contracts
|
2026-07-29 18:47:51 -07:00 |
|
Kyle McCleary
|
089a9963f8
|
feat(security): OMP-native security subsystem (planner handoff)
|
2026-07-29 18:47:51 -07:00 |
|