Skip to content

feat(scan): balance action coverage within finite budgets - #1

Merged
datzle123 merged 2 commits into
mainfrom
codex/phase-i-coverage-balanced-scan
Jul 26, 2026
Merged

datzle123 merged 2 commits into
mainfrom
codex/phase-i-coverage-balanced-scan

Conversation

@datzle123

Copy link
Copy Markdown
Owner

What changed

  • add deterministic coverage-balanced-v1 action scheduling for finite scan budgets
  • represent more routes, action kinds, intents, and activation paths instead of taking controls in discovery order
  • place known policy/environment denials after runnable actions while preserving destructive/logout ordering
  • expose additive selection telemetry in scan.json and the HTML report
  • fix report arrow/separator mojibake

Evidence

  • pnpm check: 140 passed, 2 expected service-dependent skips
  • pnpm audit --audit-level high: no known vulnerabilities
  • pnpm smoke: passed, including a real three-route/three-action budget control
  • pnpm pack: passed
  • installed-tarball package smoke: passed

Release status

This is intentionally a draft release candidate. The behavior fingerprint changed from released 68d4a8cb… to candidate f3f65840…; existing real-project evidence remains correctly bound to v1.3.3 and must be rerun before Phase I can be merged/released with hosted 15/15 qualification.

@datzle123
datzle123 marked this pull request as ready for review July 26, 2026 09:09
@datzle123
datzle123 merged commit 2572aba into main Jul 26, 2026
7 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant