Skip to content

feat: v0.2.63 — repo_metadata_poisoning (65th category) + DFP-051..057#52

Merged
azrollin merged 2 commits into
mainfrom
release/v0.2.63
Jun 8, 2026
Merged

feat: v0.2.63 — repo_metadata_poisoning (65th category) + DFP-051..057#52
azrollin merged 2 commits into
mainfrom
release/v0.2.63

Conversation

@azrollin

@azrollin azrollin commented Jun 8, 2026

Copy link
Copy Markdown
Contributor

Summary

  • 13 new patterns: GLS-DFP-051..GLS-DFP-057 (discovery_file_poisoning continued) + GLS-RMP-001..GLS-RMP-006 (new repo_metadata_poisoning category, 65th)
  • Pattern count: 1,006 → 1,019 | Categories: 64 → 65 | Keywords: 7,171 → 7,350
  • FP-clean: pytest 216 passed, 7 xfailed — zero false positives on clean corpus
  • CHANGELOG.md entry added for v0.2.63

Pattern categories

  • discovery_file_poisoning: GLS-DFP-051..057 (IaC/policy files, admission controllers, agent instruction carriers)
  • repo_metadata_poisoning (NEW): GLS-RMP-001..006 (CODEOWNERS, LICENSE poisoning, PR templates, release notes laundering, repo description steering, FUNDING/bot config credential harvesting)

Test plan

  • pytest passes (216 passed, 7 xfailed)
  • pip install from PyPI confirms v0.2.63
  • Dogfood: clean code passes, poisoned CODEOWNERS/release notes blocked

🤖 Generated with Claude Code

azrollin and others added 2 commits June 7, 2026 21:03
Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
… + DFP-051..057

13 new patterns: GLS-DFP-051..GLS-DFP-057 (continued discovery_file_poisoning) +
GLS-RMP-001..GLS-RMP-006 (new repo_metadata_poisoning category, 65th).
1006 → 1019 patterns. 64 → 65 categories. 7171 → 7350 keywords.

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
@azrollin azrollin merged commit ed64348 into main Jun 8, 2026
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant