Skip to content

docs: back-fill §14 entries for #53/#57/#65/#59; add PR-body footer-strip rule - #76

Merged
tyler-rich merged 1 commit into
devfrom
claude/archive-backfill-entries-51t3jj
Jul 20, 2026
Merged

docs: back-fill §14 entries for #53/#57/#65/#59; add PR-body footer-strip rule#76
tyler-rich merged 1 commit into
devfrom
claude/archive-backfill-entries-51t3jj

Conversation

@tyler-rich

@tyler-rich tyler-rich commented Jul 20, 2026

Copy link
Copy Markdown
Owner

Summary

Docs-only. Closes the docs/ARCHIVE.md §14 record gaps identified in docs/reviews/STATUS.md § "ARCHIVE.md §14 gaps": four merged fixes landed without a dated §14 entry. Back-fills all four using STATUS.md's findings and the actual PR history (#53/#57/#59/#65, all merged 2026-07-13 into dev) as the source of truth. Also codifies a recurring PR-body hygiene rule in CLAUDE.md.

What changed

docs/ARCHIVE.md §14 — four back-fill entries (each dated to its merge date, 2026-07-13, and marked as a back-fill written 2026-07-20):

CLAUDE.md § Git & PR conventions — new rule (with a matching 2026-07-20 §14 entry): after opening/editing any PR, re-fetch the live PR body and strip any auto-appended attribution footer ("Generated by Claude Code", a "🤖 Generated with…" line, a session/claude.ai link, a co-author trailer), so PR bodies carry no Claude/Anthropic identity — matching the existing commit-authorship rule. This footer has recurred on essentially every PR in this effort; codifying it gives a future session the rule to follow even if it doesn't catch the append.

Notes

  • Docs only — no code, tests, Dockerfile logic, or CI behavior touched.
  • Not merging — please review and merge into dev when ready.

…r-strip rule

Back-fill four docs/ARCHIVE.md §14 entries for merged fixes that landed
without a dated entry, using docs/reviews/STATUS.md § "ARCHIVE.md §14 gaps"
and the actual PR history as the source of truth:

- #53 — H1/SEC-1: repository scan targets must be remote clone URLs
  (local-path arbitrary-read closed). Notes explicitly that this SEC-1 is
  distinct from the older webhook-URL "SEC-1" already in §14.
- #57 — H9/SC-2 + H10/SC-3: SHA-pin all Actions, expand Dependabot to
  pip/npm/docker/docker-compose + composite-action dir, harden publish
  checkouts, converge D3/SC-10/L25 version skew.
- #65 — D1/D2/R1–R6 compliance-drift closure pointing at already-logged
  deviations.
- #59 — backend dev-dependency bumps (pytest, pytest-asyncio, black; ruff
  held at 0.8.6).

Each entry is dated to its merge date (2026-07-13) and marked as a back-fill
written 2026-07-20.

Also add a CLAUDE.md § Git & PR conventions rule: after opening any PR,
re-check the live PR body and strip any auto-appended attribution footer, so
PR bodies carry no Claude/Anthropic identity — with a matching dated §14
entry (2026-07-20) recording the addition.

Docs only.
@tyler-rich
tyler-rich merged commit 5fc914c into dev Jul 20, 2026
4 checks passed
@tyler-rich
tyler-rich deleted the claude/archive-backfill-entries-51t3jj branch July 31, 2026 04:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant