diff options
| author | godosa <godosa@godosa.eu> | 2026-10-07 07:51:31 +0200 |
|---|---|---|
| committer | godosa <godosa@godosa.eu> | 2026-10-07 07:51:31 +0200 |
| commit | 930d8e023b5a4ac2e179aa80a74951cd5452668e (patch) | |
| tree | 5c6b35798563081b344d8d10e38864069f10d3a9 /CHANGES.md | |
| parent | 71d1b0d84d0a2c55a4698c83788fa1f9e901ea35 (diff) | |
| download | workflow-930d8e023b5a4ac2e179aa80a74951cd5452668e.tar.gz workflow-930d8e023b5a4ac2e179aa80a74951cd5452668e.zip | |
shared push rule: split projects push the public repo via their publish command only
Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01JEAjUkQRrCYX5MZhWxdtj2
Diffstat (limited to 'CHANGES.md')
| -rw-r--r-- | CHANGES.md | 1 |
1 files changed, 1 insertions, 0 deletions
@@ -1,4 +1,5 @@ # Changes (newest first) +- 2026-10-07 Shared push rule: in a split project the public `code_root` repo is pushed only via the project's publish command, never `git push home --all` (that pushes local review branches unscanned). Projects: split projects name their publish command in their CLAUDE.md. - 2026-10-07 Denylist guard at commit time: `.githooks/pre-commit` (staged lines + paths) and `.githooks/commit-msg` run `scripts/denylist_check.py` against the git-ignored `publish-denylist.local` (worktree top + main tree, plus `git config denylist.file` lists; `word` / `!token` exemption / `#`, case-insensitive; output `word #<line>` only; no list → warning). Enable per clone: `git config core.hooksPath .githooks`; audit: `denylist_check.py tree`. `scripts/publish_snapshot.py` removed (history is public now). Projects: nothing. - 2026-10-07 Tests use generic fixtures (/h/u, 10.0.0.x) instead of real home-dir and LAN paths (publish-scan clean). Projects: nothing. |
