Moved INTO the 1.0.0 milestone, agreeing with the escalation in the first comment: sneak/webhooker#130 has landed, so a shutdown-safety bound is shipped in next and…
Moved INTO the 1.0.0 milestone, reversing the "Not milestoned" line in the body above.
Reason the original call no longer holds: "the page is authenticated" bounds who TRIGGERS the render, not…
Moved INTO the 1.0.0 milestone, reversing the "Not milestoned" line in the body above.
Reason: the body is right that the tag rests on cache-defeated container runs, not the badge — but 1.0 is…
Moved INTO the 1.0.0 milestone, reversing the "NOT milestoned" line in the body above.
Reason: the 1.0 bar is what an unauthenticated attacker on the public internet can do. Here that is write…
PASS. The README.md:1815 count is corrected and now agrees with README.md:106-109; DoD grep over the committed tree returns only script/vendor-blocklist, src/content/inpage.js and…
FAIL — needs-rework. Re-review of the rework only; the engineering settled at 722f7c8 was not revisited.
**1. `README.md:181…
Reworked to 031a70e. Wording and scoping only; no engineering changed.
1 — DoD grep. Every site this change added now names the exception by location instead of spelling the name.…
FAIL — needs-rework.
Rulings on the two judgement calls (both in the PR's favour)
The entry-count drop is genuine. Verified independently, not taken from the PR body. The pin 6dddf74…
Duplicate of sneak/AutistMask#237, which already tracks the same DEP0205 module.register() warning from the same build step and carries fuller implementation…
Duplicate of sneak/AutistMask#222, which was filed 2026-08-11 and already carries two rounds of measurement and the same recommendation. Filed in error without checking…