Skip to content

refactor: harden Work service boundaries for Civilization - #107

Merged
MichaelSaucier merged 1 commit into
mainfrom
codex/civilization-production-v1
Sep 4, 2026
Merged

refactor: harden Work service boundaries for Civilization#107
MichaelSaucier merged 1 commit into
mainfrom
codex/civilization-production-v1

Conversation

@MichaelSaucier

Copy link
Copy Markdown

Summary

  • use persistent owner-only signing identity
  • remove credential-bearing legacy browser UI and URL/cookie key transport
  • require Bearer authentication for API and SSE paths
  • remove permissive CORS behavior
  • redirect legacy dashboards to the Site workbench
  • remove the stale repository-local TLC adoption manifest

Verification

  • make verify
  • independent Claude Fable 5 cross-repository CFAR: pass_with_minors; no P0/P1 remains

Exact head: ade947c095d34c54f4e99137d43770e207e70d69

Draft only. No merge, credential change, activation, release, or deployment is implied.

@MichaelSaucier

MichaelSaucier commented Sep 4, 2026

Copy link
Copy Markdown
Author

Human exact-head approval record

Approved in Civilization dependency order 2/8 (service layer) at exact head ade947c.

This Human approval is bound to the unchanged head and the successful exact-head eight-repository review. Any head change voids this approval and requires renewed review and approval.

This authorizes ready-for-review and manual merge preparation only. It does not authorize merge, release, publication, auto-merge activation, settings or credential changes, runtime wiring, or deployment.

@MichaelSaucier
MichaelSaucier marked this pull request as ready for review September 4, 2026 08:50
@MichaelSaucier
MichaelSaucier merged commit d94effa into main Sep 4, 2026
4 checks passed
@MichaelSaucier
MichaelSaucier deleted the codex/civilization-production-v1 branch September 4, 2026 08:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant