pulse-triage[bot]
bd146586e8
Make release continuity failures actionable
...
Change-source: pulse-maintainer
2026-08-31 21:20:30 +01:00
rcourtman
83cc5e5642
Give stable backend qualification full completion headroom
2026-08-31 19:05:32 +01:00
pulse-triage[bot]
0f7a8683c2
Block privileged workflow code ingress
...
Change-source: pulse-maintainer
2026-08-31 18:21:45 +01:00
rcourtman
5754d924d7
Add rootful Docker secure-runtime qualification
2026-08-31 18:13:22 +01:00
pulse-triage[bot]
8f877bee14
Bind privileged workflow runs to canonical code
...
Change-source: pulse-maintainer
2026-08-31 17:09:53 +01:00
pulse-triage[bot]
69cbe5f3b8
Enforce protected GitHub checkout baseline
2026-08-31 13:21:25 +01:00
rcourtman
2ddd12cb31
Repair v6.4.2 Helm provenance
2026-08-31 11:59:11 +01:00
rcourtman
f47ac1f020
Define beta and RC release maturity
2026-08-31 11:42:03 +01:00
rcourtman
70c1d0a178
Authenticate RC artifacts before qualification
2026-08-31 09:49:41 +01:00
Richard Courtman
2ff027a743
Bind release candidate version explicitly
2026-08-31 09:37:28 +01:00
pulse-triage[bot]
445ebacf24
Restore delivery qualification trust
...
Harden release workflow input transport and make native lifecycle proof honor each platform security boundary. Refresh stale telemetry and delivery qualifications.
Contract-Neutral: Formatting-only catalog updates and browser-verified alert copy; release compiler and native lifecycle changes update their owning contracts.
2026-08-31 03:02:13 +01:00
pulse-triage[bot]
fda955627f
Bound GitHub Actions job runtimes
2026-08-31 02:00:09 +01:00
rcourtman
7650fdaba3
Wire secure runtime RC qualification
2026-08-31 01:50:48 +01:00
pulse-triage[bot]
eb0d17c282
Restore trustworthy governance signals
2026-08-31 00:55:44 +01:00
pulse-triage[bot]
47c1cee895
Enforce least-privilege job tokens
2026-08-30 22:11:40 +01:00
pulse-triage[bot]
cb079c9de0
Publish portable candidate build provenance
2026-08-30 20:34:04 +01:00
pulse-triage[bot]
d732b5a9e8
Restore scoped governance audit signal
2026-08-30 17:01:44 +01:00
pulse-triage[bot]
c3faa48973
Watch stable release locks continuously
2026-08-30 16:17:15 +01:00
pulse-triage[bot]
a0dfdadc5e
Close workflow trust policy gaps
2026-08-30 15:06:00 +01:00
pulse-triage[bot]
21007a8662
Isolate private governance from pull requests
2026-08-30 15:02:41 +01:00
pulse-triage[bot]
7d9e77ff32
Continuously verify stable container aliases
2026-08-30 13:55:41 +01:00
pulse-triage[bot]
8724f6b9e5
Continuously verify stable release delivery
2026-08-30 13:10:22 +01:00
pulse-triage[bot]
9393b710da
Preflight immutable release publication
2026-08-30 12:55:51 +01:00
pulse-triage[bot]
2fca8c957b
Authenticate published release sidecars
2026-08-30 09:38:23 +01:00
pulse-triage[bot]
f70da05467
Bind Helm delivery to release provenance
2026-08-30 07:34:56 +01:00
pulse-triage[bot]
0d32dac16e
Keep release toolchains within support
2026-08-30 06:40:25 +01:00
pulse-triage[bot]
e66f6a26f7
Fail closed when installing MCP binaries
...
Verify the signed release checksum manifest against Pulse's pinned SSH key before either MCP installer accepts a downloaded binary. Remove the unsigned bypass and require one exact digest entry.
Include bare Unix MCP executables in release checksum/signature assembly, cover unavailable, invalid, ambiguous, mismatched, and successful evidence paths with executable regression tests, and enforce MCP installer pins against the configured release key.
2026-08-30 05:11:55 +01:00
pulse-triage[bot]
d8986c139a
Enforce workflow data trust boundaries
...
Contract-Neutral: Moves workflow expressions into environment data flow without changing deployment interfaces or behavior.
2026-08-30 04:56:34 +01:00
pulse-triage[bot]
a2bfadba7b
Enforce workflow execution trust boundaries
2026-08-30 04:44:25 +01:00
pulse-triage[bot]
560c2de026
Automate dependency trust maintenance
2026-08-30 04:02:27 +01:00
Pulse Test
d607d5cf46
Separate agent remediation runtime
2026-08-29 23:48:28 +01:00
Pulse Test
1720fd635b
Harden CodeQL-scanned input boundaries
2026-08-29 23:42:23 +01:00
pulse-triage[bot]
e67e4a7c5f
Bind container promotion to attested digests
2026-08-29 22:56:12 +01:00
Pulse Test
6d4ee48000
Add typed agent privilege helper
2026-08-29 22:51:58 +01:00
pulse-triage[bot]
7e7fb53911
Gate release publication on immutable setting
2026-08-29 22:41:04 +01:00
pulse-triage[bot]
1d170de364
Require immutable attested releases
2026-08-29 19:59:04 +01:00
pulse-triage[bot]
61a58758b2
Stabilize telemetry candidate validation
...
Fail schema-version drift in the fast E2E preflight before starting the browser matrix, and align the stable telemetry preview proof with schema 15.
Change-source: pulse-maintainer
2026-08-29 18:21:50 +01:00
pulse-triage[bot]
6cb5d3046b
Preserve secondary issue feedback
...
Contract-Neutral: issue-triage intake only; no product, deployment, or release contract change
Change-source: pulse-maintainer
2026-08-29 12:24:03 +01:00
pulse-triage[bot]
f83541061e
Qualify embedded agent executable mode
2026-08-29 11:01:59 +01:00
pulse-triage[bot]
ba73a5474e
Keep published release validation non-destructive
2026-08-29 10:27:08 +01:00
pulse-triage[bot]
2c6eb9a58d
Clear retired demo alert replay sources
2026-08-29 03:57:50 +01:00
pulse-triage[bot]
5686069d6e
Reset poisoned demo incident replay
2026-08-29 03:53:34 +01:00
Richard Courtman
db0145b2b9
Bound legacy demo history startup
2026-08-29 03:47:09 +01:00
pulse-triage[bot]
2bf37a58c7
Capture blocked demo startup stack
2026-08-29 03:46:48 +01:00
pulse-triage[bot]
0d5b1202b5
Disable dev metrics backfill on stable demo
2026-08-29 03:41:44 +01:00
Richard Courtman
7255e44f57
Retain demo recovery diagnostics
2026-08-29 03:33:03 +01:00
Richard Courtman
c006b15871
Require proven large-demo startup
2026-08-29 03:28:50 +01:00
Richard Courtman
cb0e55671f
Enforce exact release visual assets
2026-08-29 02:59:47 +01:00
Richard Courtman
58b07ef36c
Serialize Docker staging after draft recovery
2026-08-29 01:29:17 +01:00
Pulse Test
0dc2c8c16d
Require prerelease observation windows
2026-08-28 20:39:32 +01:00