docs(auth): record final review fix round 1 evidence
This commit is contained in:
@@ -1,6 +1,36 @@
|
||||
# Task 4 authentication remediation recertification (sanitized)
|
||||
|
||||
## Result
|
||||
## Fix-round-1 recertification — Windows remediation PASS
|
||||
|
||||
- Exact source: `10cd66fe6a5b484a4dc569326a228c1c5484a5d4` on `feat/thoth-auth`.
|
||||
- Authorized workflow: completed run `32141428407`,
|
||||
https://github.com/mptyl/ThothII/actions/runs/32141428407, exact matching head SHA.
|
||||
- Native job: `Windows clone and Compose contract`, job `95724751282`.
|
||||
- Required native step: `Run native Windows retained-capability tests` — **PASS**.
|
||||
- Exact unfiltered command:
|
||||
`go test ./internal/safeio ./internal/backup ./internal/authstorage -count=1`.
|
||||
- Package evidence: `internal/safeio` PASS (`8.230s`), `internal/backup` PASS (`5.195s`),
|
||||
`internal/authstorage` PASS (`8.383s`). This includes explicit native Windows
|
||||
StageArchive retained-capability and concurrent claim-consume coverage.
|
||||
- The later `Verify Windows clone contract` step failed independently at
|
||||
`scripts/test-windows-clone-contract.ps1:208`: PowerShell parsed `$remoteYaml:` as an invalid
|
||||
variable reference. This baseline deployment-contract failure does not change the native Go
|
||||
package result.
|
||||
- The optional `Native Windows Docker Desktop/WSL2 startup` job was skipped by workflow
|
||||
conditions. It is `NOT_RUN` / `BLOCKED`, because no Docker Desktop/WSL2 command executed.
|
||||
- The workflow reached `completed` with conclusion `failure`: the native authentication step is
|
||||
PASS, while the later clone-contract, LF/Compose, and Linux Docker baseline steps are FAIL.
|
||||
- Existing LF/Compose and Linux Docker failures repeated before downstream work. Skipped commands
|
||||
are `NOT_RUN` / `BLOCKED`, not executed failures. External L2/PSD/provider gates remain
|
||||
`PENDING`.
|
||||
|
||||
All four final-review Important findings are addressed. Authentication implementation is complete
|
||||
for this fix round; overall release readiness remains `FAIL` because the unrelated deployment,
|
||||
Compose, harness/Ruff, Docker-runner, and external/manual gates above are not green.
|
||||
|
||||
The section below is retained as historical evidence for the pre-fix frozen source.
|
||||
|
||||
## Historical pre-fix result
|
||||
|
||||
- Frozen source under test: `b31b27e5845ffd3adf311429367319beaba263c7` on `feat/thoth-auth`.
|
||||
- Freeze check: PASS. No tracked source changed during certification. The only untracked paths
|
||||
@@ -74,7 +104,7 @@ was run locally after the failure.
|
||||
## Evidence and provenance
|
||||
|
||||
- Current machine-readable matrix: `.artifacts/task-15/automated-gates.json`; SHA-256
|
||||
`e0cb84185354b740ce97c8d21d365160b321c88722d08cc31b668ec4cab0353c`.
|
||||
`5c110b7b2607693de078def441b10290c5a29024c83b7e5a0ced894b72b7507f`.
|
||||
- Current requested report: this file (SHA-256 recorded after the evidence commit if needed for
|
||||
external indexing).
|
||||
- Historical Docker image manifest: `.artifacts/task-15/unified-docker-images.json`, unchanged
|
||||
|
||||
Reference in New Issue
Block a user