Skip to content

Complete distribution and release hardening - #8

Merged
KeyffMS merged 36 commits into
mainfrom
release/hardening-20260828
Aug 29, 2026
Merged

Complete distribution and release hardening#8
KeyffMS merged 36 commits into
mainfrom
release/hardening-20260828

Conversation

@KeyffMS

@KeyffMS KeyffMS commented Aug 28, 2026

Copy link
Copy Markdown
Owner

Summary

Completes the non-Codex release-engineering work so the remaining production blockers are repository administration and live Codex qualification.

Distribution

  • add standard-library install / verify / upgrade / status / uninstall tooling;
  • preserve existing AGENTS.md, compatible .codex/config.toml, unrelated hooks and adopted files;
  • track ownership/hashes in .plananvil/installation.json;
  • fail closed on unmanaged conflicts and locally modified managed files;
  • transactional rollback on failed mutations.

Release engineering

  • introduce distribution version 0.2.0 and manifest;
  • add deterministic ZIP/checksum/release-notes builder;
  • add candidate and production release gates;
  • add tag-driven GitHub Release workflow that cannot publish until required capabilities are REPRODUCED;
  • pin Actions to immutable Node-24-based SHAs.

Validation

  • expand core CI to Python 3.11 and 3.14 on Ubuntu/macOS/Windows;
  • add distribution and release-engineering tests;
  • add deterministic C01-C16 template archive, safe materializer, validator and rehash tool;
  • document installation, troubleshooting, release and the remaining Codex sandbox procedure.

Intended end state

After this PR, only two external workstreams should remain:

  1. GitHub administration: protect main as tracked by issue Protect main with required PlanAnvil CI checks #6;
  2. create an authenticated Codex sandbox and execute/commit the prepared live C01-C16 evidence as tracked by issue Complete live Codex capability evidence for baseline 2.3 #7.

@KeyffMS
KeyffMS merged commit 531492a into main Aug 29, 2026
7 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant