fix: make packaged updates certificate-free
ForgeFlow quality gate / quality (push) Canceled after 0s
ForgeFlow quality gate / quality (push) Canceled after 0s
This commit is contained in:
+2
-2
@@ -108,9 +108,9 @@ included model uses:
|
||||
- atomic non-secret status JSON;
|
||||
- previous-SHA recording and non-zero failure exits.
|
||||
|
||||
## Remaining release hardening
|
||||
## Optional and future release hardening
|
||||
|
||||
- code-sign packages and signed updates;
|
||||
- optional code signing if ForgeFlow is ever distributed publicly;
|
||||
- validate private CA/TLS behavior in the target network;
|
||||
- dependency, secret and binary scans in CI;
|
||||
- package-level IPC/navigation regression tests;
|
||||
|
||||
Reference in New Issue
Block a user