Skip to content

release(tag-path): verify v0.1.1 tag route and restore a sanctioned tag-cut path under ruleset 21899500 #163

Description

@PeterGuy326
schemaVersion: requirement-record.v1
revision: R1
status: ready
priority: P0
productOwner: "@PeterGuy326"
technicalOwner: "@PeterGuy326"
userOutcome: "The release runbook's 'cut a new patch tag' step is actually executable under the current rulesets, with the v0.1.1 route documented or a sanctioned replacement in place."
requirements:
  - REQ-001
  - REQ-002
acceptanceCriteria:
  - AC-001
  - AC-002
parent: null
dependencies:
  - "https://github.com/bytefolk/mem/issues/125"
supersedes: []
lastDecisionAt: null

User problem and observable outcome

Ruleset 21899500 (Restrict stable release tag creation) blocks refs/tags/v* creation with no bypass actor. GitHub exposes no ruleset timestamps, so nobody can prove which path v0.1.1 actually used; if that path no longer exists, the GOVERNANCE.md runbook step "cut a new patch tag" is unexecutable today. This is a repository-configuration problem, not a documentation problem — split out of #125 by owner decision 2026-09-03.

Requirements

  • REQ-001: Admin-only inspection of ruleset 21899500 configuration and repo tag history to determine (a) how v0.1.1 was cut, and (b) whether any sanctioned tag-cut path exists today.
  • REQ-002: Restore exactly one sanctioned path — either a narrowly-scoped bypass actor (release workflow / Trusted Publishing) added to 21899500, or a documented admin-executed tag-cut procedure recorded in GOVERNANCE.md. Ad-hoc rule disabling is forbidden; the rule stays enforced for everyone else.

Acceptance criteria

  • AC-001: The v0.1.1 route is documented (or explicitly marked unprovable) in GOVERNANCE.md with the inspection evidence.
  • AC-002: A dry-run of the v0.1.2 tag-cut step succeeds via the sanctioned path without disabling 21899500, and the result is recorded in the release evidence ledger.

Non-goals

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    priority:p0Required for the next shared product proofstatus:readyScope and acceptance criteria are ready for development

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions