Skip to content

docs(changelog): v1.0.23 security baseline#1

Merged
bilbospocketses merged 1 commit into
mainfrom
chore/v1.0.23-changelog-entry
May 19, 2026
Merged

docs(changelog): v1.0.23 security baseline#1
bilbospocketses merged 1 commit into
mainfrom
chore/v1.0.23-changelog-entry

Conversation

@bilbospocketses
Copy link
Copy Markdown
Owner

First PR through the new PR-gated workflow. Records the security baseline pass under [Unreleased] in CHANGELOG.md ahead of the v1.0.23 tag cut.

Summary

  • Adds the v1.0.23 security baseline entry to [Unreleased]: Added (6 items) + Changed (2 items) + Security (7 items) + Notes (3 items).
  • Captures the LICENSE-absence decision deferral, the Trusted Signing v1.1.0 deferral, and the gh api PATCH array-field lesson learned mid-execution.

Test plan

  • build-and-test CI status check goes green (sole purpose of this PR is to validate the new ruleset works end-to-end before tagging).
  • Squash-merge cleanly via gh pr merge --squash --delete-branch.
  • No SHA-pinning enforcement errors in the CI run.
  • No allowed_actions denial errors.

@bilbospocketses bilbospocketses merged commit ca51d9a into main May 19, 2026
5 checks passed
@bilbospocketses bilbospocketses deleted the chore/v1.0.23-changelog-entry branch May 19, 2026 07:39
@bilbospocketses bilbospocketses mentioned this pull request May 19, 2026
5 tasks
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant