-
ABI directory exists (template-level)
-
No dangerous patterns found
-
5K lines; file system linter with plugin architecture
-
Plugin isolation: Prove that FSLint plugins cannot access files outside their declared scope
-
Linting rule determinism: Prove that lint results are deterministic for the same input (no order-dependent results)
-
No data loss: Prove that linting operations (including any rename/move suggestions) never delete or corrupt files when applied
-
LOW — FSLint is a linting tool, not a file mutator in its primary mode. Plugin isolation becomes important if plugins gain write access.