DashboardpublishAlways perform a read-only, evidence-ba…

Always perform a read-only, evidence-based final security review

Category: preference
Confidence: 0.80
ID: 01a088a4-14e0-723f-a16c-37b3f5ad7c1f
Project ID: ac098440-8723-4582-9021-39e07a608100
Cross-project: No
Recalled in other projects: 1
Source session: 1HGx3AlG2ZPSUlhpj
Created: 2026-09-10 00:07:29
Updated: 2026-09-10 00:07:29

Cross-Project Recalls

ProjectHitsLast recalled
opencode-lore 4 15h ago

Content

When asked for a final review, inspect the exact current worktree—including all changed and untracked files—without editing files or running destructive commands. Independently trace approval authorization and attestations, request/event race conditions, CI-ready handoff, final pre-publish revalidation, failure cleanup, trust boundaries, and immutable action/image references. Inspect current source lines and relevant tests, then run the requested validation commands. Provide non-empty findings ordered by severity, label every finding exactly MUST-FIX, CONCERN, or PASS, and support each with precise file:line citations. Follow with compact test evidence and end on its own line with exactly MERGE or DO-NOT-MERGE. If tooling prevents inspection, begin with BLOCKED and the exact failure, and end with DO-NOT-MERGE.

Move to: