Skip to content

chore(ci): remove duplicate Trust test suite - #491

Merged
0xLeif merged 13 commits into
mainfrom
leif/ci-95-confidence
Aug 2, 2026
Merged

chore(ci): remove duplicate Trust test suite#491
0xLeif merged 13 commits into
mainfrom
leif/ci-95-confidence

Conversation

@0xLeif

@0xLeif 0xLeif commented Aug 1, 2026

Copy link
Copy Markdown
Contributor

Summary

  • split the hosted Trust lifecycle from the full local verify lane
  • keep Trust on release-binary contract, risk, and provenance without another cargo test
  • document the approximately 95% CI ownership model and immutable-SHA RC policy
  • preserve protected workflows for separately pinned follow-up changes

Verification

  • 2,178 unit tests passed
  • 333 integration tests passed
  • CI path classifier, runtime pins, and release version validators passed
  • independent scoped review: PASS, zero findings
  • trust-lifecycle: check-types only in 311 ms; no cargo test

Current baseline blocker

Local residual Trust reaches the contract phase and then reports stale active CHG-0073 evidence inherited from main after PR #486. CHG-0074 itself is current and green; the baseline repair remains separate so this PR stays thin.

Scope

No .github/workflows, protected scripts, src paths, ship-status code, or #486 history are included.

@0xLeif
0xLeif requested a review from a team as a code owner August 1, 2026 19:15
@0xLeif
0xLeif requested review from 0xGaspar, Kyntrin and tofu-ux and removed request for a team August 1, 2026 19:15

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 6a0956fbe5

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

@github-actions github-actions Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

❌ Corvin says...

      _
    <(;\  .oO(oh no...)
     |/(\
      \(\\
      " "\\

"Caw... validation failed..."

CI Summary

Check Status
Validate action.yml ✅ Passed
Packaged Action Consumer ✅ Passed
Dependency Audit ✅ Passed
Code Coverage ✅ Passed
Format Check ✅ Passed
Docs Site ✅ Passed
Spec Validation ❌ failure
Tests (build, test, clippy) ✅ Passed
VS Code Extension ✅ Passed
📋 Spec Validation Details

❌ SpecSync: Failed

Metric Value
Specs checked 62
Passed 62
Errors 1
Warnings 0
File coverage 100% (105/105)
LOC coverage 100% (124812/124812)

Errors

.specsync/sdd.json

  • CHG-0073-approve-rejects-living-added-reqs-and-draft-next-action-waits-on-complete-artifa: verification evidence is stale for the current commit or contract

Action Items

  • Review and fix -- CHG-0073-approve-rejects-living-added-reqs-and-draft-next-action-waits-on-complete-artifa: verification evidence is stale for the current commit or contract

Generated by specsync · Run specsync check --format github to reproduce


Powered by corvid-pet

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: e0d87f7f37

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

@github-actions
github-actions Bot dismissed their stale review August 1, 2026 22:25

Superseded by updated review.

@github-actions github-actions Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

❌ Corvin says...

      _
    <(;\  .oO(oh no...)
     |/(\
      \(\\
      " "\\

"Even the dumpster of code seems empty today."

CI Summary

Check Status
Validate action.yml ✅ Passed
Packaged Action Consumer ✅ Passed
Dependency Audit ✅ Passed
Code Coverage ✅ Passed
Format Check ✅ Passed
Docs Site ✅ Passed
Spec Validation ❌ failure
Tests (build, test, clippy) ✅ Passed
VS Code Extension ✅ Passed
📋 Spec Validation Details

❌ SpecSync: Failed

Metric Value
Specs checked 62
Passed 62
Errors 2
Warnings 0
File coverage 100% (105/105)
LOC coverage 100% (124864/124864)

Errors

.specsync/sdd.json

  • CHG-0073-approve-rejects-living-added-reqs-and-draft-next-action-waits-on-complete-artifa: verification evidence is stale for the current commit or contract
  • CHG-0074-simplify-specsync-ci-to-one-expensive-suite-authority-with-residual-trust-identi: verification evidence is stale for the current commit or contract

Action Items

  • Review and fix -- CHG-0073-approve-rejects-living-added-reqs-and-draft-next-action-waits-on-complete-artifa: verification evidence is stale for the current commit or contract
  • Review and fix -- CHG-0074-simplify-specsync-ci-to-one-expensive-suite-authority-with-residual-trust-identi: verification evidence is stale for the current commit or contract

Generated by specsync · Run specsync check --format github to reproduce


Powered by corvid-pet

@github-actions
github-actions Bot dismissed their stale review August 1, 2026 23:41

Superseded by updated review.

github-actions[bot]
github-actions Bot previously approved these changes Aug 1, 2026

@github-actions github-actions Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

✅ Corvin says...

      _
    <(^\  .oO(Caw! ^v^)
     |/(\
      \(\\
      " "\\

"That's a nice looking export you've got there."

CI Summary

Check Status
Validate action.yml ✅ Passed
Packaged Action Consumer ✅ Passed
Dependency Audit ✅ Passed
Code Coverage ✅ Passed
Format Check ✅ Passed
Docs Site ✅ Passed
Spec Validation ✅ Passed
Tests (build, test, clippy) ✅ Passed
VS Code Extension ✅ Passed
📋 Spec Validation Details

✅ SpecSync: Passed

Metric Value
Specs checked 62
Passed 62
Errors 0
Warnings 0
File coverage 100% (105/105)
LOC coverage 100% (124864/124864)

Generated by specsync · Run specsync check --format github to reproduce


Powered by corvid-pet

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: f7fff1f32f

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread docs/ci-confidence.md
Comment thread specs/github/testing.md
Comment thread src/commands/change.rs
@github-actions
github-actions Bot dismissed their stale review August 2, 2026 00:01

Superseded by updated review.

@github-actions github-actions Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

❌ Corvin says...

      _
    <(;\  .oO(oh no...)
     |/(\
      \(\\
      " "\\

"I'm pecking through the errors..."

CI Summary

Check Status
Validate action.yml ✅ Passed
Packaged Action Consumer ✅ Passed
Dependency Audit ✅ Passed
Code Coverage ✅ Passed
Format Check ✅ Passed
Docs Site ✅ Passed
Spec Validation ❌ failure
Tests (build, test, clippy) ❌ cancelled
VS Code Extension ✅ Passed
📋 Spec Validation Details

❌ SpecSync: Failed

Metric Value
Specs checked 62
Passed 62
Errors 2
Warnings 0
File coverage 100% (105/105)
LOC coverage 100% (124864/124864)

Errors

.specsync/sdd.json

  • CHG-0074-simplify-specsync-ci-to-one-expensive-suite-authority-with-residual-trust-identi: verification evidence is stale for the current commit or contract
  • meaningful changed paths are not covered by an active change: src/commands/change.rs

Action Items

  • Review and fix -- CHG-0074-simplify-specsync-ci-to-one-expensive-suite-authority-with-residual-trust-identi: verification evidence is stale for the current commit or contract
  • Review and fix -- meaningful changed paths are not covered by an active change: src/commands/change.rs

Generated by specsync · Run specsync check --format github to reproduce


Powered by corvid-pet

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 5fe35d832b

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread .github/scripts/verify-trusted-policy-check.py
@0xLeif
0xLeif dismissed github-actions[bot]’s stale review August 2, 2026 00:57

Stale automated review on b117382; its CHG-0074 freshness and uncovered-path findings were superseded by verified/finalized head 5fe35d8. Current-head Codex review has no findings, independent scoped review passed, and the controlled merge exception is user-authorized for the protected-policy bootstrap.

@0xLeif
0xLeif merged commit 6cc103d into main Aug 2, 2026
18 of 24 checks passed
@0xLeif
0xLeif deleted the leif/ci-95-confidence branch August 2, 2026 00:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant