Summary
Provide a public-repository report experience with finding filters, details, explicit visibility, retention, and tombstoning behavior.
Scope
- Render pending, pass, advisory, blocked, input-error, and internal-error states.
- Filter findings by severity, rule, risk, and operation.
- Show evidence, source location, remediation, provenance, and reproduction details.
- Revalidate current repository visibility and installation access before serving.
- Tombstone and purge cached reports after privatization, uninstall, transfer, or deletion.
Acceptance criteria
Dependencies
Priority gate and claiming
Keep status:blocked until every open priority:p1 issue is closed,
the Phase 0 hosted-product decision is proceed, and every explicit
dependency above is closed. Only then replace it with status:ready
and add help wanted.
To claim a ready issue, assign yourself, replace status:ready with
status:in-progress, and comment with a short implementation plan.
Non-goals
- Private repository authorization, billing, report comparison, or custom branding.
- Client-side interpretation of untrusted HTML from specifications.
Summary
Provide a public-repository report experience with finding filters, details, explicit visibility, retention, and tombstoning behavior.
Scope
Acceptance criteria
Dependencies
Priority gate and claiming
Keep
status:blockeduntil every openpriority:p1issue is closed,the Phase 0 hosted-product decision is
proceed, and every explicitdependency above is closed. Only then replace it with
status:readyand add
help wanted.To claim a ready issue, assign yourself, replace
status:readywithstatus:in-progress, and comment with a short implementation plan.Non-goals