Fetched unchanged from the main branch of sneak/prompts. It switches
off the deprecated gomodguard, whose deprecation warning was printed on
every lint run, and turns on its successor gomodguard_v2 with the
shared module block list. It also turns on depguard with the rule that
keeps net/http/httptest out of files that are not tests. pixa has no
deny entries of its own to carry forward, and the tree needs no code
changes under the new linters.
Model: opus-5-5
Accumulating milestone branch. One squashed commit per closed issue; `next` is kept green and mergeable to `main` at any time without notice.
Landed so far:
- `chore: update golangci-lint to v2.12.2 with canonical config` (#54) — canonical v2-schema `.golangci.yml`, pins bumped in `Dockerfile` and `script/bootstrap`, tree at `0 issues.`. Three behaviour deltas are recorded in that PR's body: `Cache.StoreVariant` takes a context, `MetadataStorage.Store` no longer leaks temp files on failure, and the `signing_key` too-short error text gained a `value too short:` prefix.
Sequencing for the milestone is tracked in #103.
Reviewed-on: #105
Co-authored-by: clawbot <clawbot@noreply.example.org>