v0.3.2
Linmas 0.3.2
Codex compatibility and live evaluation
- Selects the account-visible Codex default model without pinning automatic execution to one GPT generation.
- Adds explicit
--modelsupport to the judge demo for reproducible evidence. - Makes Codex the default live evaluator while retaining explicitly selected Claude compatibility.
- Keeps CI credentials step-scoped and removes request identifiers and raw responses from live reports.
Verification and repository operations
- Adds enforced Node 24 source coverage thresholds: 96% lines, 85% branches, and 94% functions.
- Adds deterministic Windows CI while preserving the required Linux
verifycheck. - Updates maintained checkout, setup-node, and upload-artifact actions to major v7.
- Creates a protected main-to-dev ancestry sync pull request after promotions when required.
Documentation and branding
- Aligns npm and GitHub positioning around proof-carrying defensive security reviews.
- Replaces the public Linmas logo and preserves the name story, independent-project disclaimer, and Build Week evidence.
- Documents CI-only API-key use separately from subscription-first local Codex authentication.
- Adds a truthful trusted-machine gate for future native Windows live evidence.
Linmas remains defensive-only. Policy output is not approval or proof of security, and human review remains required.