v1.4.0
Changelog
All notable changes to this project will be documented in this file.
[1.4.0] — 2026-06-10
Bug Fixes
- Emit two-ruleset split, not one bypass-less required-checks ruleset
- Propagate two-ruleset split to template + prose (TRDD-5307ae6c Ph2-3)
- Replace broken references/ link with universal-skill prose pointer
- Restructure maintainer-prrd-trdd-kanban to CPV 7-section format (<5000)
- Widen workflow-file globs to .yml AND .yaml (.yml)
- Orphan-delete the janitor's names too (convergence union)
- Required_status_checks = PR-applicable jobs only
- Clear 4 Pyright nits (CPV-G3 our-side portion)
- Clear all our-side strict findings from the 2026-06-09 scan
- Devitalize the last 7 doc NITs — strict gate now exit 0
- One-char-class the triage detection regexes (scanner-inert needles)
Documentation
- Lock in PUT-not-PATCH for ruleset update (guardrail)
- Record the two post-SHA-exchange shared follow-ups
- Record agreed baseline-tag-protect + audit hardening list
- Refine baseline-tag-protect to tri-party consensus
- Record baseline-tag-protect consensus closed (awaiting USER ratify)
- Record baseline-tag-protect IMPLEMENTED (b71a1ff) + C2 addressed
- Refresh STATE block for three-ruleset baseline + CPV-G3 detail
- Sync VERIFY description with D2 fingerprint binding
- Record b02b24c — our-side CPV-G3 Pyright nits cleared
- Record live baseline-* apply + readback-pin (#7)
Features
- Add MAINTAINER's PRRD/TRDD/Kanban layer
- Add Approval discipline section to maintainer-prrd-trdd-kanban
- Bootstrap PRRD with G1 GitHub self-id golden rule
- Migrate source to ratified baseline-* ruleset pair
- Implement baseline-tag-protect (3rd ratified ruleset)
- Approval-tiers governance section (#8) + memory-protocol wiring (#9)
- Markdown memory system — rule + recall/write skills + tests (#9)
Miscellaneous Tasks
- Sync uv.lock to 1.3.1
- Record baseline-standardization implementation commits
- Record orphan-delete-union commit 31fe57f
- Record CI-detection-filter commit cde65eb
- Record PUT-not-PATCH guardrail commit 138dfdd
- Record Tier-0 hardening SHAs (C3-C6, D1, D2, recheck)
Security
- C3-C6 verify/parse guards (Tier-0, no baseline change)
Harden
- D1 — T3 absolute baseline-compliance check (Tier-0)
- D2 — bind approval to a planned-diff fingerprint (Tier-0)
Generated by git-cliff