Skip to content

docs(#137): PR A applied to production and proven live; public-grants required - #237

Merged
tornidomaroc-web merged 1 commit into
mainfrom
docs/137-pr-a-applied
Oct 7, 2026
Merged

tornidomaroc-web merged 1 commit into
mainfrom
docs/137-pr-a-applied

Conversation

@tornidomaroc-web

Copy link
Copy Markdown
Owner

Records the step after PR #236's merge, in docs/PROGRESS.md Section 7 only: one block, additions only (0 deletions), directly below the preamble.

Recorded: the apply of 20261007_public_grants_dead_writes_and_anon.sql on production (07:23:50Z, "Success. No rows returned", file loaded from the merged commit and hash-checked against it); the live read after apply (149 lines, identical to the green public-grants fixture read except the two platform lines the audit already recorded: every one of the 25 grant lines flipped exactly, the six policies gone, all other policies hash-identical, every other section unchanged); the rolled-back proof block (definer functions write and read back as a role-switched authenticated throwaway account; every forbidden write as authenticated and anon answers 42501 permission denied for table; anon calling the functions hits their own not authenticated; row counts identical before and after); public-grants made a required check after its first green run on main, by one PATCH of required_status_checks with the five contexts and strict unchanged; branch deleted.

Deliberately not edited: row #137, per the brief (Section 7 additions only). Its "NOT BUILT" now holds for PR B and PR C only; the block says so and the row is rewritten when #137 closes. Rows 42, 69 and 81 untouched.

🤖 Generated with Claude Code

…s flipped exactly, six policies gone, nothing else moved, definer functions and every refusal witnessed inside a rolled-back transaction; public-grants required

Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
@vercel

vercel Bot commented Oct 7, 2026 •

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated
knowflow Ready Ready Preview Oct 7, 2026 7:34am UTC

@fixor-security

fixor-security Bot commented Oct 7, 2026

Copy link
Copy Markdown

🛡️ Fixor Security Report

Repository: tornidomaroc-web/knowflow · PR: #237
Commit: 655dc55383f7e5128aecbec728efcf74b76d7071

⏸️ Fixor scan paused - budget reached

This installation has hit its $0.00 monthly cap (spent $0.00 this month).
This installation's cap is $0, so scans stay paused until the cap is raised.
To raise the cap, contact the Fixor operator. The current cap is shown on your dashboard's billing page.

🔒 Analyzed by Fixor · 2026-10-07T07:33:44.956Z

@tornidomaroc-web
tornidomaroc-web merged commit ab39878 into main Oct 7, 2026
8 checks passed
@tornidomaroc-web
tornidomaroc-web deleted the docs/137-pr-a-applied branch October 7, 2026 07:37

This branch was successfully deployed

1 active deployment
Preview — 655dc553 Deployed Oct 7, 2026 by vercel[bot]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant