Dev/milestone c security report hardening#58
Merged
Conversation
added 29 commits
June 18, 2026 09:30
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
added 22 commits
June 18, 2026 09:30
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
Signed-off-by: docushell-admin <hello@docushell.com>
docushell-dev
force-pushed
the
dev/milestone-c-security-report-hardening
branch
from
June 18, 2026 04:01
82cf990 to
a0fe7a2
Compare
docushell-dev
added a commit
that referenced
this pull request
Jun 22, 2026
* Ground security report span previews Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report artifact identity Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report finding ids Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report finding messages Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report exclusion flags Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report span ownership Signed-off-by: docushell-admin <hello@docushell.com> * Add source-only security report command Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report page and bbox grounding Signed-off-by: docushell-admin <hello@docushell.com> * Fail closed on security report warning lane drift Signed-off-by: docushell-admin <hello@docushell.com> * Align security report validator warning lanes Signed-off-by: docushell-admin <hello@docushell.com> * Reject stale security report summary drift Signed-off-by: docushell-admin <hello@docushell.com> * Validate unsupported annotation report parity Signed-off-by: docushell-admin <hello@docushell.com> * Require security report inventory lanes Signed-off-by: docushell-admin <hello@docushell.com> * Validate unsupported annotation finding messages Signed-off-by: docushell-admin <hello@docushell.com> * Validate image-only page finding messages Signed-off-by: docushell-admin <hello@docushell.com> * Validate text exclusion finding messages Signed-off-by: docushell-admin <hello@docushell.com> * Validate security warning source messages Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report finding codes Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report inventory fields Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report envelope fields Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report finding fields Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report unexpected fields Signed-off-by: docushell-admin <hello@docushell.com> * Reject boolean security report bbox coordinates Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report summary counts Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report attachment byte counts Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report boolean fields Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report script locations Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report attachment digests Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report array items Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report inventory strings Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report identity patterns Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report finding strings Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report page locators Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report locator refs Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report finding ids Signed-off-by: docushell-admin <hello@docushell.com> * Harden security report script locations Signed-off-by: docushell-admin <hello@docushell.com> * Harden security report code diagnostics Signed-off-by: docushell-admin <hello@docushell.com> * Validate null security report pages Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report script triggers Signed-off-by: docushell-admin <hello@docushell.com> * Validate null security report locators Signed-off-by: docushell-admin <hello@docushell.com> * Validate security report inventory kinds Signed-off-by: docushell-admin <hello@docushell.com> * Split security report code diagnostics Signed-off-by: docushell-admin <hello@docushell.com> * Require security warning codes Signed-off-by: docushell-admin <hello@docushell.com> * Validate security warning locator shapes Signed-off-by: docushell-admin <hello@docushell.com> * Split security warning message diagnostics Signed-off-by: docushell-admin <hello@docushell.com> * Validate document warning ids Signed-off-by: docushell-admin <hello@docushell.com> * Validate parser warning messages Signed-off-by: docushell-admin <hello@docushell.com> * Reject duplicate warning ids Signed-off-by: docushell-admin <hello@docushell.com> * Enforce deterministic warning numbering Signed-off-by: docushell-admin <hello@docushell.com> * Add Milestone C internal checks Signed-off-by: docushell-admin <hello@docushell.com> * Ground security warning locators Signed-off-by: docushell-admin <hello@docushell.com> --------- Signed-off-by: docushell-admin <hello@docushell.com> Co-authored-by: docushell-admin <hello@docushell.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
No description provided.