docs: Common remediation wave ADRs + re-score Common scorecard (v1.218.0) - #230
Merged
Merged
Conversation
…R template ADR-130 records the IDataSourceEngine strategy and its source-scanning gate; ADR-131 records the opt-in same-origin API proxy (Common backlog #26). Adds docs-src/adr/_template.md (not rendered) and points the index at it (#34), and records route-level WASM lazy loading as evaluated and not adopted (#23). Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_017byBPNgj3XbVVfRSpp8Xgj
…18.0) Evidence at MMCA.Common f93bc6e2. Maturity 96.6% (317/328, unchanged), Implementation 86.0% (705/820, from 86.1%). Score changes: #20 Design System 4/9 -> 4/8 (41 !important in shared layout CSS, duplicated brand hex, no Common inline-style guard), #24 Forms 4/8 -> 4/9 (shared password rule + parity Theory, resource-keyed auth errors, confirm-before-revoke), #27 i18n 4/9 -> 4/8 (no time-zone handling, 15-code ErrorResources, English-only default emails). Backlog: closes #24 as a category plus the #1, #11, #13, #18, #20, #23, #30, #33, #34 and FR-7 items that shipped in v1.218.0; #20 and #27 enter the implementation band (15 rows, 33 points); TD-08 stays in progress pending consumer adoption. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Walked every executable step against the published pack (isolated template hive): generate, build (0 warnings), 131/131 tests, migrations, fixup, next-feature and add-module paths all hold on framework v1.218.0. Stamp moves to Templates 1.12.0 / v1.218.0 (Common backlog #33). Two drift fixes: the migrations note covers --database postgresql and names the Sqlite/PostgreSQL project and context, and GetOrderAsync uses Orders/{id}/details. Step 5 runtime claims were not re-run (need SQL and the AppHost). Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_017byBPNgj3XbVVfRSpp8Xgj
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Two commits for the MMCA.Common v1.218.0 remediation wave:
docs-src/adr/_template.md.mainf93bc6e2 (v1.218.0), plus the reconciled RemediationBacklog.Scorecard
!importantin shared layout CSS, brand hex defined twice (BrandColors.cs:13,app.css:63), no Common inline-style guardPasswordComplexity.cs:52pinned byPasswordRuleParityTests.cs:36; resource-keyed auth errors; confirm-before-revokeSessions.razor.cs:117,176NotificationList.razor:69), 15-codeErrorResources.resx, English-only default emailspwsh Tools/Scripts/scorecard-indices.ps1exits 0 on the written table and backlog.Backlog
Docs regenerated with
npm run build(no dead cross-links). Merging publishes the pages.🤖 Generated with Claude Code