Skip to content

docs(security): add Release path & compromise scope appendix to SECURITY.md - #211

Merged
Chris-Wolfgang merged 1 commit into
vNextfrom
docs/security-release-path-appendix
Jul 24, 2026
Merged

docs(security): add Release path & compromise scope appendix to SECURITY.md#211
Chris-Wolfgang merged 1 commit into
vNextfrom
docs/security-release-path-appendix

Conversation

@Chris-Wolfgang

Copy link
Copy Markdown
Owner

Adds the "Release path & compromise scope" appendix to SECURITY.md — the load-bearing per-repo facts a maintainer needs during a release-identity compromise. Canonical shape from Etl-DbClient #240.

Filled-in values for this repo:

  • Release path: OIDC / NuGet Trusted Publishing via NuGet/login@v1 (release.yaml); OIDC identity Chris-Wolfgang/AuditTrail; no long-lived API-key fallback.
  • Owner: @Chris-Wolfgang.
  • Consumers: leaf library, no known Wolfgang.* dependents.
  • Package coordinates: the 3 published packages (Abstractions, EntityFrameworkCore, TestKit.Xunit); CLI is IsPackable=false.

Docs-only; no version bump. Addresses #61 (base is vNextCloses won't auto-fire until the release PR merges to main; will close explicitly on vNext merge).

🤖 Generated with Claude Code

…ITY.md

Documents the load-bearing per-repo incident facts (OIDC trusted-publishing
release path, no API-key fallback, owner, leaf-library consumer scope, and the
three published package coordinates for unlisting). Canonical shape from
Etl-DbClient #240. Docs-only; no version bump.

Closes #61

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
Copilot AI review requested due to automatic review settings July 24, 2026 16:44

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot was unable to review this pull request because the user who requested the review has reached their quota limit.

@Chris-Wolfgang
Chris-Wolfgang merged commit f399219 into vNext Jul 24, 2026
1 check passed
@Chris-Wolfgang
Chris-Wolfgang deleted the docs/security-release-path-appendix branch July 24, 2026 17:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants