Update docs, threat model, and red-team tests for single-binary OCI rollout #120
Labels
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Blocks
Depends on
#121 Publish Linux
auto-review binaries with full provenance
Slipstream/auto_review
#119 Run the Docker image through the unified
auto-review binary
Slipstream/auto_review
Reference
Slipstream/auto_review#120
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Follow-up implementation slice from #115.
Decision context
The ADR-only PR will record the accepted single-binary and embedded OCI decisions. Implementation must then update operator docs, the threat model, and red-team/contract tests to match shipped behavior.
Scope
THREAT-MODEL.mdfor:ADR-0002references if the new OCI isolation supersedes or complements linter-era sandbox history.QUICKSTART.md,docs/OPERATIONS.md, systemd docs, E2E runbook, CLI README, and release announcement docs after the implementation exists.Acceptance criteria
Required tests
auto-reviewbinaryauto-reviewbinaries with full provenance