|
| 1 | +<!-- |
| 2 | +SPDX-License-Identifier: MPL-2.0 |
| 3 | +SPDX-FileCopyrightText: 2026 Jonathan D.A. Jewell (hyperpolymath) |
| 4 | +--> |
| 5 | + |
| 6 | +# Changelog |
| 7 | + |
| 8 | +All notable changes to `januskey` will be documented in this file. |
| 9 | + |
| 10 | +This file is generated from conventional commits by the |
| 11 | +[`changelog-reusable.yml`](https://github.com/hyperpolymath/standards/blob/main/.github/workflows/changelog-reusable.yml) |
| 12 | +workflow (`hyperpolymath/standards#206`). Adopt the workflow in this repo's CI to keep this file in sync automatically — see |
| 13 | +[`templates/cliff.toml`](https://github.com/hyperpolymath/standards/blob/main/templates/cliff.toml) |
| 14 | +for the canonical config. |
| 15 | + |
| 16 | +The format follows [Keep a Changelog](https://keepachangelog.com/en/1.1.0/); |
| 17 | +this project aims to follow [Semantic Versioning](https://semver.org/spec/v2.0.0.html). |
| 18 | + |
| 19 | +## [Unreleased] |
| 20 | + |
| 21 | +### Added |
| 22 | + |
| 23 | +- feat(crg): add crg-grade and crg-badge justfile recipes |
| 24 | +- feat(crg): add Current Grade badge anchor to READINESS.md |
| 25 | +- feat: add idrisiser Idris2 proof wrappers for JanusKey cryptographic core |
| 26 | +- feat: blitz — wire all tests, add property-based + regression, fix benchmarks, READINESS.md |
| 27 | +- feat: add E2E, P2P, aspect tests + criterion benchmarks |
| 28 | +- feat: add Zig FFI implementation + C header + integration tests |
| 29 | +- feat: complete Idris2 ABI — Foreign.idr + Proofs.idr |
| 30 | +- feat: add Idris2 ABI proofs — TypeLL Levels 1-12 |
| 31 | +- feat: add stapeln.toml container definition |
| 32 | +- feat: deploy UX Manifesto infrastructure |
| 33 | + |
| 34 | +### Fixed |
| 35 | + |
| 36 | +- fix(ci): bump a2ml/k9-validate-action pins to canonical (#33) |
| 37 | +- fix(ci): sync hypatia-scan.yml to canonical (#32) |
| 38 | +- fix(ci): adopt canonical hypatia-scan.yml (#31) |
| 39 | +- fix(ci): Phase-2 fleet submission must not fail the security gate (#30) |
| 40 | +- fix(ci): hypatia-scan workdir (${{ env.HOME }} resolves empty) (#29) |
| 41 | +- fix(januskey): sweep .expect("TODO: handle error") — 166 sites cleared |
| 42 | +- fix: replace 60 unwrap() calls with expect() in security-critical modules |
| 43 | +- fix: quote $$ and use printf in setup.sh |
| 44 | +- fix: correct 'Provably Reversible' claim — proofs are pending, not done |
| 45 | +- fix(scorecard): enforce granular permissions and add fuzzing placeholder |
| 46 | + |
| 47 | +### Changed |
| 48 | + |
| 49 | +- refactor: migrate 6SCM → 6A2 (.scm → .a2ml format) |
| 50 | + |
| 51 | +### Documentation |
| 52 | + |
| 53 | +- docs(security): draft MCP-exposure threat model (AI-authored, pending human sign-off) |
| 54 | +- docs: add M2 estate audit report (2026-04-04) |
| 55 | +- docs: substantive CRG C annotation (EXPLAINME.adoc) |
| 56 | +- docs: add EXPLAINME.adoc — prove-it file backing README claims |
| 57 | +- docs: add ARCHITECTURE.md — reversibility stack junction point |
| 58 | +- docs: update SCM files with project information |
| 59 | +- docs: add CONTRIBUTING.md |
| 60 | +- docs: add checkpoint files for state tracking |
| 61 | + |
| 62 | +### CI |
| 63 | + |
| 64 | +- ci(rust): convert rust-ci.yml to thin wrapper (standards#174) (#39) |
| 65 | +- ci: redistribute concurrency-cancel guard to read-only check workflows (#35) |
| 66 | +- ci: bump actions/upload-artifact SHA to current v4 (#27) |
| 67 | +- ci: SHA-pin hyperpolymath validate-actions in dogfood-gate |
| 68 | +- ci: restore Dependabot security path + wire auto-merge |
| 69 | + |
| 70 | +## Pre-history |
| 71 | + |
| 72 | +Prior commits to this file's introduction are recorded in git history but not formally classified into Keep-a-Changelog sections. To backfill, run `git cliff -o CHANGELOG.md` locally using the canonical [`cliff.toml`](https://github.com/hyperpolymath/standards/blob/main/templates/cliff.toml) — this is one-shot mechanical work. |
| 73 | + |
| 74 | +--- |
| 75 | + |
| 76 | +<!-- This file was seeded by the 2026-05-26 estate tech-debt audit follow-up (Row-2 Phase 3); see [`hyperpolymath/standards/docs/audits/2026-05-26-estate-documentation-debt.md`](https://github.com/hyperpolymath/standards/blob/main/docs/audits/2026-05-26-estate-documentation-debt.md). --> |
0 commit comments