Skip to content

chore: bump the six standards pins to 8f2ee508, and bring AFFIRMATION.adoc to profile A - #78

Merged
hyperpolymath merged 2 commits into
mainfrom
chore/pin-bump-8f2ee508-and-affirmation-profile-a
Sep 9, 2026
Merged

hyperpolymath merged 2 commits into
mainfrom
chore/pin-bump-8f2ee508-and-affirmation-profile-a

Conversation

@hyperpolymath

Copy link
Copy Markdown
Owner

Two foundation fixes to the template. Both matter more here than in an ordinary
repo, because every repository scaffolded from this template inherits whatever
this one carries.

1. The six standards reusable pins were 43 commits behind

All six callers were pinned at 571cc734. Measured against
compare/571cc734...8f2ee508 filtered to .github/workflows/, five of the
six reusables genuinely changed
in that range:

Reusable Delta in range
governance-reusable.yml +145 / -143
hypatia-scan-reusable.yml +98 / -22
scorecard-reusable.yml +92 / -9
secret-scanner-reusable.yml +24 / -1
rust-ci-reusable.yml +4 / -4
mirror-reusable.yml unchanged

So this is real staleness, not a cosmetic bump — and it is very likely how the
estate-wide startup-dead governance suite propagated in the first place: new
repos were scaffolded stale.

Pin target liveness. 8f2ee508 is standards main HEAD, and all six
reusable blobs were confirmed present at that ref with
contents/<path>?ref=<sha>. A commits/<sha> --jq .sha probe is not a
liveness test — jq prints the literal string null on a gh error object,
so that probe reports every dead pin as alive.

No permissions patch accompanies this, deliberately. At 8f2ee508 the
reusables no longer require actions: read: secret-scanner-reusable.yml
carries a comment documenting the removal, and governance-reusable.yml is
permissions: {}. Adding actions: read to the job-level blocks here would
have been the wrong cure. The pin bump alone is the cure.

.github/workflows/actions.lock tracks actions, not reusable-workflow refs,
and needs no change — verified by grep.

2. docs/AFFIRMATION.adoc was missing five of the twelve profile A sections

hyperpolymath/standards#758 derives an AFFIRMATION authoring standard from the
affirmations already written across this estate. The template's skeleton
predates it.

Added: Companion documents and repo metadata (cross-check); The honest state
(one breath)
with its four required subsections (what is solid and how we
checked · the honest nuance you must not lose · known-incomplete but honestly
fenced · outstanding / weak / refuted); Reproduce it yourself; One-line
characterisation (quote this)
; Joint attestation.

The anchor table gained the two mandatory fields it lacked — Permalink and
Working-tree delta at verification — moved ahead of the state sections as
the standard orders them, and now carries the required tag ban and drift
warning.

Prose the previous skeleton got right is preserved verbatim: the trio table,
the three moving parts, "no intentional overclaim", and the standing invitation
to refute.

Two things this PR deliberately does not change

  • Placement. I initially recorded this file as missing and drafted a root
    copy; that was my error — it already existed at docs/. The standard permits
    root or docs/, and README.adoc already links docs/AFFIRMATION.adoc, so
    docs/ stands.
  • Token convention. Only tokens already in the template's vocabulary are
    used ({{PROJECT_NAME}} {{OWNER}} {{REPO}} {{FORGE}} {{MAIN_BRANCH}} {{AUTHOR}} {{AUTHOR_EMAIL}} {{PROJECT_DESCRIPTION}}), and fill-at-signing
    fields keep the existing <...> convention, so check-no-placeholders.sh
    stays satisfied after instantiation.

Verification

  • asciidoctor --failure-level=WARN clean on the edited AsciiDoc.
  • All six workflow files confirmed to read @8f2ee508 with no stragglers.
  • Both commits signed (%G? == G) with the @users.noreply author.

Depends on

hyperpolymath/standards#758 — the standard this skeleton now conforms to. The
link:{std-docs}/AFFIRMATION-STANDARD.adoc[] reference in the skeleton
resolves once #758 lands on standards main.

🤖 Generated with Claude Code

https://claude.ai/code/session_01QMTyDv9CoJo5PfeNzyp519

hyperpolymath and others added 2 commits September 9, 2026 01:01
Every one of the template's six callers was pinned at 571cc734, 43 commits
behind standards main. Five of the six reusables genuinely changed in that
range (governance +145/-143, hypatia-scan +98/-22, scorecard +92/-9,
secret-scanner +24/-1, rust-ci +4/-4; mirror-reusable is unchanged), so this
is real staleness rather than a cosmetic bump.

This matters more here than in an ordinary repo: every repository scaffolded
from this template inherited the stale pin, which is how the estate-wide
startup-dead governance suite propagated in the first place.

Target 8f2ee508 is standards main HEAD, and all six reusable blobs were
confirmed to exist at that ref via `contents/<path>?ref=<sha>` (a
`commits/<sha>` probe reports every dead pin alive).

No permissions patch accompanies this. At 8f2ee508 the reusables no longer
require `actions: read` — secret-scanner-reusable.yml documents the removal
and governance-reusable.yml is `permissions: {}` — so the pin bump alone is
the cure. .github/workflows/actions.lock tracks actions, not reusable
workflow refs, and needs no change.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01QMTyDv9CoJo5PfeNzyp519
Signed-off-by: Jonathan D.A. Jewell <6759885+hyperpolymath@users.noreply.github.com>
hyperpolymath/standards#758 derives an AFFIRMATION authoring standard from the
affirmations already written in this estate. The template's skeleton predates
it and is missing five of the twelve profile A sections. Since every RSR repo
scaffolds its affirmation from this file, the gap propagates.

Added:

* Companion documents and repo metadata (cross-check) — the files a sceptic
  should read against the affirmation, including any that contradict it.
* The honest state (one breath), with its four required subsections: what is
  solid and how we checked; the honest nuance you must not lose;
  known-incomplete but honestly fenced; outstanding / weak / refuted.
* Reproduce it yourself — the exact commands, in order.
* One-line characterisation (quote this).
* Joint attestation — the AI engineering party and the owner, per the
  standard's attestation section.

Anchor table completed with the two mandatory fields it lacked: Permalink and
Working-tree delta at verification. Anchor moved ahead of the state sections,
as the standard orders them, and carries the required tag ban and drift
warning.

Prose the previous skeleton got right is preserved verbatim: the trio table,
the three moving parts, "no intentional overclaim", and the standing
invitation to refute.

Placement is unchanged. The standard permits root or docs/, and README.adoc
already links docs/AFFIRMATION.adoc. Only tokens already in the template's
vocabulary are used; fill-at-signing fields keep the existing <...> convention
so check-no-placeholders.sh stays satisfied after instantiation.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01QMTyDv9CoJo5PfeNzyp519
Signed-off-by: Jonathan D.A. Jewell <6759885+hyperpolymath@users.noreply.github.com>
@coderabbitai

coderabbitai Bot commented Sep 9, 2026

Copy link
Copy Markdown
Contributor

Warning

Review limit reached

Next included review available in 5 seconds.

Check out review usage here.

View limit details

Limit details: You’ve used the included review currently available.

You've used all free OSS reviews for now. Wait for the free limit to reset to keep reviewing this public repository.

Learn how review limits work.

Review configuration:

⚙️ Run configuration

Configuration used: Organization UI

Review profile: ASSERTIVE

Plan: Advanced

Run ID: 942f8530-fdcd-4722-8d21-d969910edf5c

📥 Commits

Reviewing files that changed from the base of the PR and between 805ecb7 and 8f13c6f.

📒 Files selected for processing (7)
  • .github/workflows/governance.yml
  • .github/workflows/hypatia-scan.yml
  • .github/workflows/mirror.yml
  • .github/workflows/rust-ci.yml
  • .github/workflows/scorecard.yml
  • .github/workflows/secret-scanner.yml
  • docs/AFFIRMATION.adoc

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@sonarqubecloud

sonarqubecloud Bot commented Sep 9, 2026

Copy link
Copy Markdown

@hyperpolymath
hyperpolymath enabled auto-merge (squash) September 9, 2026 00:40
@hyperpolymath
hyperpolymath merged commit 1e296ab into main Sep 9, 2026
48 of 52 checks passed
@hyperpolymath
hyperpolymath deleted the chore/pin-bump-8f2ee508-and-affirmation-profile-a branch September 9, 2026 01:27
hyperpolymath added a commit that referenced this pull request Sep 17, 2026
…tive source (#76)

Fourth of five propagation PRs for the DEED grammar. Pointers, never
copies —
a second copy of the grammar anywhere is how the divergence restarts.

## Why this repo matters

`rsr-template-repo` is a template. Every repository scaffolded from it
inherits
whatever these READMEs say about the record format. Four statements here
are
wrong, stale, or unrenderable, and they propagate on every use.

## What changed (4 files)

**`machine-readable/rsr-profile.a2ml`** — header comment only.
Cited `hyperpolymath/standards a2ml/RECORD-DIALECT-SPEC.adoc`. Two
errors: that
spec lives in `hyperpolymath/a2ml`, not `standards`; and the `a2ml/`
subtree was
evicted from `standards` by `24a12d6f` (2026-08-28), so the path
resolves to
nothing. The dialect is also now superseded. **The record surface of the
file is
deliberately untouched** — converting it is #64, not this PR.

**`machine-readable/descriptiles/README.adoc`** — the highest-value fix.
It was markdown syntax (`#`, `##`, `-`, `[text](url)`) inside a `.adoc`
file, so
asciidoctor rendered every heading and link as body text. Rewritten as
real
AsciiDoc — *that syntax repair is incidental; the DEED pointer is the
deliverable*. Also drops the deprecated "6A2" term and states explicitly
that
DEED has no `key = value` form, since the absence of that statement is
the
documented cause of the family-wide divergence.

**`machine-readable/README.adoc`** — was a three-line stub. Now carries
the
pillar-level normative pointer and describes each subdirectory. This
also serves
the per-directory human-readable README requirement (#78).

**`machine-readable/contractiles/README.adoc`** — pointer banner only.
The
substantive trident and k9 trust-tier content is sound and untouched.

## Link audit (measured, not assumed)

`descriptiles/README.adoc` carried three outbound links. Measured
against the
real `hyperpolymath/standards` — resolved by `git remote get-url
origin`, not by
directory name:

| Link | Status | Action |
|---|---|---|
| `standards/tree/main/a2ml` | **dangles** (evicted by `24a12d6f`) |
replaced with the DEED grammar pointer |
| `standards/blob/main/A2ML-REPO-TEMPLATE.adoc` | live | kept |
| `standards#a2ml-format-family-7-formats` | live (README.adoc:145) |
kept, relabelled |

One dead link of three, not three.

## Known-unresolved citations, recorded not repaired

`contractiles/README.adoc` cites `docs/CONTRACTILE-SPEC.adoc`, which
**does not
exist in this repository**, and "the contractile CLI", which was never
built.
The banner records both rather than silently repairing them; fixing them
is
separate work.

## Scope

**207 files in this repo mention a2ml. This PR changes 4.** The
extension rename
is a single atomic estate-wide change (#64) because ~40% of these
basenames are
literals in source and in Nickel runners. Not started here.

`0-AI-MANIFEST.a2ml` is **not touched** — the manifest dialect's status
is an
open question, separate from the DEED grammar.

## Verification

- `asciidoctor` renders all three `.adoc` files clean.
- `scripts/check-variant-drift.sh` reads only
`descriptiles/VARIANT.a2ml` — unaffected.
- `scripts/validate-template.sh` checks file *existence*, not README
content — unaffected.

## Merge order

**Merge after `hyperpolymath/standards` #752**, which lands the grammar
this PR
points at. Draft until then.

🤖 Generated with [Claude Code](https://claude.com/claude-code)

https://claude.ai/code/session_01QNjWX2B4FffG7zqMBMui6v

---------

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: Claude Opus 5 <noreply@anthropic.com>
Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com>
Co-authored-by: Mistral Vibe <vibe@mistral.ai>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant