Repository navigation
docs: FIELD-NOTES.md — the failure mode behind every gate - #7
Merged
Merged
Conversation
The gates added in #6 each exist because a specific analysis shipped a specific error. That reasoning lived only in a local SKILL.md, which is not in this repo and sat on an ephemeral filesystem — so the checks would have outlived the explanation of why they are worth their friction, and the first person to hit a red gate would have had no way to judge whether it was telling them something true. Records seven failure modes with the evidence: four false absence claims (one rated band-1 and recorded as CONFIRMED); 2,508 guard candidates the analysis never consumed; a belief credited as a working control because sourcedFrom named a hop rather than an origin, invalidating six remediations; two generic RPC bridges that survived two passes and a review; a one-directional review returning 0 upgrades in 96 verdicts; a verdict filed but reverted by the apply step; and a hand-typed count that drifted from the grid. Also records the three false positives these gates produced on first run, because a gate that cries wolf gets disabled — that is a failure of the gate, not a cosmetic issue.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
The gates in #6 each exist because an analysis shipped a specific error, but that reasoning lived only in a local
SKILL.md— not in this repo, and on an ephemeral filesystem. The checks would have outlived the explanation, and the first person to hit a red gate would have no way to judge whether it was telling them something true.Seven failure modes, each with the evidence and the gate that now catches it:
WWW-Authenticateheader inside the middleware a finding declared did not exist.sourcedFromnamed a hop, not an origin — invalidating six remediations that were placebos against a forged token.:paramroute collapses into one REST control action.It also records the three false positives these gates produced on first run, because a gate that cries wolf gets disabled — that is a failure of the gate, not a cosmetic issue. The generalisable one: the evidence standard must match what the analysis was derived from. A codebase analysis cites code; a design-document analysis cites the document.
Docs only — no tool changes.