Skip to content

docs(sbom): clarify risk model non-claims#98

Merged
stacknil merged 1 commit into
mainfrom
codex/v1rc-risk-model-nonclaims
Jun 30, 2026
Merged

docs(sbom): clarify risk model non-claims#98
stacknil merged 1 commit into
mainfrom
codex/v1rc-risk-model-nonclaims

Conversation

@stacknil

Copy link
Copy Markdown
Owner

Summary

  • add an explicit non-claims section to the risk model boundary
  • distinguish CVE scanning, malware scanning, and package safety verdicts
  • enforce all three boundaries in focused docs and reviewer-route validation

Validation

  • python -m pytest tests/test_risk_model_boundary_docs.py (2 passed)
  • python -m pytest (180 passed)
  • python scripts/validate-reviewer-routes.py
  • git diff --check
  • scoped privacy and credential pattern scan

@stacknil stacknil merged commit 09a251e into main Jun 30, 2026
7 checks passed
@stacknil stacknil deleted the codex/v1rc-risk-model-nonclaims branch June 30, 2026 03:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant