Skip to content

docs(case): add one-page evidence trace#78

Merged
stacknil merged 1 commit into
mainfrom
stacknil/v0.5-one-page-incident-case
Jun 30, 2026
Merged

docs(case): add one-page evidence trace#78
stacknil merged 1 commit into
mainfrom
stacknil/v0.5-one-page-incident-case

Conversation

@stacknil

Copy link
Copy Markdown
Owner

Summary

  • add a one-page incident-style case tracing five raw SSH records through normalized events to one explainable finding
  • state the supported conclusion, non-verdict boundary, parser limitations, and context required before disposition
  • bind every displayed raw line and finding field to the existing sanitized sample and golden report fixture
  • link the compact case from README, reviewer path, the full case study, and changelog

Validation

  • cmake -S . -B build
  • cmake --build build
  • ctest --test-dir build -C Debug --output-on-failure
  • git diff --check
  • evidence contract check: 5 raw lines and brute-force finding fields match golden fixtures
  • one-page limit check: 652 words
  • local Markdown link check: 60 links
  • privacy/secret marker scan of changed docs

@stacknil stacknil merged commit ae99271 into main Jun 30, 2026
9 checks passed
@stacknil stacknil deleted the stacknil/v0.5-one-page-incident-case branch June 30, 2026 03:25
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant