Skip to content

chore: add signed-release ceremony for v0.1.3 - #5

Merged
3leapsdave merged 7 commits into
mainfrom
chore/release-v0.1.3
Aug 18, 2026
Merged

chore: add signed-release ceremony for v0.1.3#5
3leapsdave merged 7 commits into
mainfrom
chore/release-v0.1.3

Conversation

@3leapsdave

Copy link
Copy Markdown
Member

Adds the waitprims-style signing DAG and stages generated fingerprint pins into the checksum set before signing. Pins come from decernor fingerprint via DECERNOR_* environment variables only.

First signed private cut is v0.1.3. Does not move v0.1.2.

3leapsdave and others added 7 commits August 18, 2026 17:17
Record where fingerprint pins live (keys/) and that they must enter
the signed checksum set the same way release notes do.

Changes:
- Add PDR-0001 (proposed)
- Index the record in docs/decisions/README.md

Generated by Grok 4.6 via Grok Build under supervision of @3leapsdave

Co-Authored-By: Grok 4.6 <noreply@3leaps.net>
Role: cxotech
Committer-of-Record: Dave Thompson <dave.thompson@3leaps.net> [@3leapsdave]
Add a waitprims-style signing DAG and generate fingerprint pins
from decernor records. Stage those pins into dist before checksums.

Changes:
- Add release-insert-anchors, release-stage-anchors, and signing targets
- Commit keys/expected-fingerprints generated by decernor fingerprint
- Bump VERSION and notes to 0.1.3
- Accept PDR-0001

Generated by Grok 4.6 via Grok Build under supervision of @3leapsdave

Co-Authored-By: Grok 4.6 <noreply@3leaps.net>
Role: cxotech
Committer-of-Record: Dave Thompson <dave.thompson@3leaps.net> [@3leapsdave]
Changes:
- Normalize PDR-0001 and decisions README for goneat format

Generated by Grok 4.6 via Grok Build under supervision of @3leapsdave

Co-Authored-By: Grok 4.6 <noreply@3leaps.net>
Role: cxotech
Committer-of-Record: Dave Thompson <dave.thompson@3leaps.net> [@3leapsdave]
Require archives in checksums, verify staged pins, and install the
fingerprint pair atomically. Align the process record with the
executable walk.

Changes:
- Fail generate-checksums when no archives are present
- Verify dist/release pins, schema, and recomputed publics
- Stage insert outputs then replace both pin files as a pair
- Add ceremony probes and reconcile PDR-0001

Generated by Grok 4.6 via Grok Build under supervision of @3leapsdave

Co-Authored-By: Grok 4.6 <noreply@3leaps.net>
Role: cxotech
Committer-of-Record: Dave Thompson <dave.thompson@3leaps.net> [@3leapsdave]
Remove a newly installed pin when the second install fails and no
prior pair existed. Require exactly two TXT fields and two NDJSON
records on the staged payload.

Changes:
- Add atomic-install-pair with first-use rollback
- Tighten staged TXT/NDJSON shape checks
- Validate schema records via a temp file and trap
- Extend ceremony probes for writer and shape faults

Generated by Grok 4.6 via Grok Build under supervision of @3leapsdave

Co-Authored-By: Grok 4.6 <noreply@3leaps.net>
Role: cxotech
Committer-of-Record: Dave Thompson <dave.thompson@3leaps.net> [@3leapsdave]
Arm process-lifetime rollback for the pin install window and extract
shape/schema checks so ceremony probes assert the specific refusal.

Changes:
- Trap EXIT/INT/TERM/HUP until both dest files are installed
- Add validate-pin-pair helper (shape + schema, no keys/ compare)
- Probe signal-after-first-install and exact shape errors

Generated by Grok 4.6 via Grok Build under supervision of @3leapsdave

Co-Authored-By: Grok 4.6 <noreply@3leaps.net>
Role: cxotech
Committer-of-Record: Dave Thompson <dave.thompson@3leaps.net> [@3leapsdave]
Ceremony shape probes must fail on the two-field / two-record errors
without a built binary. Schema validation still runs after shape.

Generated by Grok 4.6 via Grok Build under supervision of @3leapsdave

Co-Authored-By: Grok 4.6 <noreply@3leaps.net>
Role: cxotech
Committer-of-Record: Dave Thompson <dave.thompson@3leaps.net> [@3leapsdave]
@3leapsdave
3leapsdave merged commit 5eed213 into main Aug 18, 2026
1 check passed
@3leapsdave
3leapsdave deleted the chore/release-v0.1.3 branch August 18, 2026 22:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant