Skip to content

Add dogfood ledger artifact for shippable-demo evidence tracking - #520

Merged
cursor[bot] merged 5 commits into
masterfrom
cursor/dogfood-ledger-artifact-c5af
Sep 6, 2026
Merged

Add dogfood ledger artifact for shippable-demo evidence tracking#520
cursor[bot] merged 5 commits into
masterfrom
cursor/dogfood-ledger-artifact-c5af

Conversation

@IanFrelinger

@IanFrelingerIanFrelinger commented Sep 6, 2026

Copy link
Copy Markdown
Owner

Summary

Creates docs/dogfood-ledger.md to track dated pass/fail evidence for Ashlar dogfood / shippable-demo truth before any autonomy or design-partner marketing claims.

Changes

  • Create docs/dogfood-ledger.md with table format for dated evidence entries
  • First entry dated 2026-09-05: PR P0: Close certification trust signature holes (limitations 7-9) #513 landed fail-closed verification defaults (partial close of limitations 7–9); merge commit 16125e58f098826fc1a970ce609fefe77759b5d4
  • Explicit gap recorded: Limitation 7 NOT fully closed — strict production paths still lack RequireEd25519Signature (follow-up PR pending)
  • Add one-line reference to the ledger in docs/DocsIndex.md trust loop section, positioned after certification-evidence.md
  • Ledger is the dated evidence log; DogfoodValidation.md remains the gate catalog

Testing

  • Docs-only change; no product/Forge code moves
  • First entry references PR P0: Close certification trust signature holes (limitations 7-9) #513 fail-closed defaults, CertificationForgeAttackTests, and explicitly states limitation 7 remains open
  • Ledger includes explicit gap notes: limitation 7 open for strict production paths; full end-to-end shippable demos still need dated entries
  • Does NOT claim forged certs fully closed or that autonomy marketing is unblocked

Testing strategy (blast radius)

  • Not applicable — documentation artifact only

Checklist

  • make test not required (docs-only)
  • Documentation created (docs/dogfood-ledger.md) and indexed (docs/DocsIndex.md)
  • No TODO or NotImplementedException
  • No breaking changes

Release (only when this PR ships a versioned NuGet/GHCR release)

  • Not a versioned release — skip
Open in WebOpen in Cursor

cursoragentand others added 2 commits September 6, 2026 02:26
- Create docs/dogfood-ledger.md with dated pass/fail entries
- First entry: PR #513 cert-gate trust signature limitations 7-9 closed
- Add ledger reference to DocsIndex.md trust loop section
- Ledger tracks what actually runs E2E before marketing claims
Co-authored-by: IanFrelinger <IanFrelinger@users.noreply.github.com>
- Clarify #513 landed fail-closed defaults, NOT full limitation 7 closure
- Explicit gap: Strict production paths still lack RequireEd25519Signature
- Follow-up PR pending for strict+Ed25519
- Do not claim forged certs fully closed or autonomy unblocked
Co-authored-by: IanFrelinger <IanFrelinger@users.noreply.github.com>
cursoragentand others added 3 commits September 6, 2026 03:34
Co-authored-by: IanFrelinger <IanFrelinger@users.noreply.github.com>
Co-authored-by: IanFrelinger <IanFrelinger@users.noreply.github.com>
Co-authored-by: IanFrelinger <IanFrelinger@users.noreply.github.com>
@cursor
cursorBot merged commit 0d0c57b into masterSep 6, 2026
6 of 8 checks passed
@cursor
cursorBot deleted the cursor/dogfood-ledger-artifact-c5af branch September 6, 2026 04:08
cursorBot pushed a commit that referenced this pull request Sep 6, 2026
Co-authored-by: IanFrelinger <IanFrelinger@users.noreply.github.com>
cursorBot pushed a commit that referenced this pull request Sep 6, 2026
Co-authored-by: IanFrelinger <IanFrelinger@users.noreply.github.com>
cursorBot pushed a commit that referenced this pull request Sep 6, 2026
Co-authored-by: IanFrelinger <IanFrelinger@users.noreply.github.com>
cursorBot pushed a commit that referenced this pull request Sep 6, 2026
Co-authored-by: IanFrelinger <IanFrelinger@users.noreply.github.com>
cursorBot pushed a commit that referenced this pull request Sep 6, 2026
Co-authored-by: IanFrelinger <IanFrelinger@users.noreply.github.com>
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@IanFrelinger@cursoragent