Evidence: F24. Surfaced while measuring the metadatastician ruleset stack for the Marid assessment (D54). Org-wide, outside Marid scope — filed here rather than on marid for that reason.
The org carries four active rulesets:
| ruleset |
target |
scope |
rules |
| Estate Baseline |
repository |
~ALL |
visibility, delete, transfer |
| EstateBranching |
branch |
~DEFAULT_BRANCH / ~ALL repos |
required_signatures, pull_request, code_scanning, copilot_code_review |
| EstateTagging |
tag |
~ALL |
required_signatures, workflows, linear history, non-fast-forward, creation, update, deletion |
| EstatePushing |
push |
~ALL |
none — zero rules |
EstatePushing is active with an empty rule array. It enforces nothing while reading as protection in any listing — the same vacuous-gate pattern as the required_status_checks: [] found inside marid/.github/rulesets/Optimus-Branch.json (F25), and the pattern the estate has already ruled against.
⭐ Elegant arm: either give it rules or delete it. An empty active ruleset is strictly worse than no ruleset, because it answers "is this protected?" with a yes.
Acceptance criteria
Filed from the Marid constellation assessment. Full evidence and the Tier 1 rows are in the decision sheet: #787 (comment)
Evidence: F24. Surfaced while measuring the
metadatasticianruleset stack for the Marid assessment (D54). Org-wide, outside Marid scope — filed here rather than onmaridfor that reason.The org carries four active rulesets:
~ALL~DEFAULT_BRANCH/~ALLrepos~ALL~ALLEstatePushingisactivewith an empty rule array. It enforces nothing while reading as protection in any listing — the same vacuous-gate pattern as therequired_status_checks: []found insidemarid/.github/rulesets/Optimus-Branch.json(F25), and the pattern the estate has already ruled against.⭐ Elegant arm: either give it rules or delete it. An empty active ruleset is strictly worse than no ruleset, because it answers "is this protected?" with a yes.
Acceptance criteria
EstatePushingeither carries rules or no longer existsactiveruleset whoserulesarray is empty, org-wideFiled from the Marid constellation assessment. Full evidence and the Tier 1 rows are in the decision sheet: #787 (comment)