Skip to content

test: ignore local tooling in source audit - #14

Merged
madars merged 1 commit into
mainfrom
codex/source-audit-scope
Aug 30, 2026
Merged

madars merged 1 commit into
mainfrom
codex/source-audit-scope

Conversation

@madars

@madars madars commented Aug 28, 2026 •

Copy link
Copy Markdown
Member

Independent of the crawler/hosted-fetcher stack.

Keeps the shipped-Go-source custody audit scoped to repository source by skipping hidden metadata/tooling directories and generated dependency/test trees. This deliberately includes .github; workflow secret and action-pin checks are a separate concern.

The issue was reproduced with a local Go 1.22 toolchain cache, and the focused source-audit test passes with that cache present.

@madars
madars force-pushed the codex/source-audit-scope branch from ab2f6ab to 1ae5f35 Compare August 29, 2026 00:32
@madars
madars changed the base branch from codex/test-trim to main August 29, 2026 00:34
Co-authored-by: Madars Virza <madars@radiustech.xyz>
@madars
madars force-pushed the codex/source-audit-scope branch from 1ae5f35 to 5eb198a Compare August 29, 2026 00:57

@anders94 anders94 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@madars
madars merged commit 14a65b7 into main Aug 30, 2026
4 checks passed
@madars
madars deleted the codex/source-audit-scope branch August 30, 2026 00:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants