trust-release: browser-local evidence readiness intake - #315
Merged
thecelestialmismatch merged 2 commits intoAug 20, 2026
Conversation
Harden public liveness visibility, protect administrator diagnostics, and pin the Node runtime used by application, proxy, and CI validation. Add the scoped Evidence Readiness Path and a browser-only PDF Evidence Intake workflow with human review, local manifests, dashboard access, permanent public product page, shared navigation, and truthful privacy copy. Qualify public claims and add regression coverage for liveness, local-only evidence handling, product-page disclosure, and dashboard privacy boundaries.
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
|
This pull request has been ignored for the connected project Preview Branches by Supabase. |
Replace C3PAO-ready, assessor-acceptance, absolute-compliance, and equivalent public copy with scoped human-review and deployment-boundary language across public pages, shared navigation, SEO metadata, reports, customer messaging, and product knowledge. Add a public-source regression guard so prohibited readiness and hosted-FedRAMP assertions cannot return unnoticed.
thecelestialmismatch
deleted the
trust-release/evidence-intake-permanent
branch
August 20, 2026 11:56
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Release summary
This release hardens HoundShield’s public trust boundary and introduces the Evidence Readiness Path plus a permanent Evidence Intake product page at
/evidence-intake.Included changes
/api/healthresponse to a non-secret liveness signal and introduces a fail-closed, administrator-gated diagnostics route./evidence-intakepage with the existing shared header and footer.Privacy and decision boundary
The Evidence Intake flow has no document upload, cloud OCR, external-model call, or automatic compliance determination. PDF analysis, review state, and manifest generation are browser-local; a human review gate is required before a record can be accepted.
Validation completed
Review focus
Please review the public copy and local-only privacy boundary. The production deployment should be verified on
https://www.houndshield.com/evidence-intakeafter merge.