SPDD spec alignment: add REASONS Norms/Entities, conflict-order analysis, and extension-field compliance fixture#49174
Conversation
Co-authored-by: pelikhan <4175913+pelikhan@users.noreply.github.com>
|
Warning threat detection engine error DetailsThe threat detection engine failed to produce results. Review the workflow run logs for details. ✅ Great work on the spec alignment! This PR strengthens conformance scanning and downstream maintenance by adding explicit The changes are well-structured:
Status: Ready for review and merge. All changes are focused on spec maturity without touching runtime code.
|
PR TriageCategory: docs - Risk: low - Score: 42/100
Recommended action: batch_review (batch: spec-docs-20260730) 7-file spec/compliance-doc alignment (+160/-6), draft, CI pending. Content-only spec edits with a new compliance fixture; no code paths touched. Batch with #49177 and #49171 for a single review session. Undraft and confirm CI before merge.
|
SPDD rotation flagged REASONS conformance gaps in key specs: missing explicit
Norms/Entitiessections, unclear conflict precedence in access-control extension fields, and weak compliance-spec discoverability. This PR adds explicit structure and cross-links so conformance scanning and downstream maintenance are less ambiguous.GitHub MCP access-control spec: REASONS structure + precedence analysis
## Normsand## Entitiessections.§4.4.8 Precedence and Conflict Resolution (Analysis)clarifying guard order forrepos→roles→blocked-users, with worked deny-path examples.Safe outputs spec: entity model + implementation checklist
## Entitiessection for core config/runtime artifacts.§6.0 Files Modified (Implementation Checklist)under GitHub operations for implementation traceability.AW harness spec: formalized entities + budget overrun failure mode
## Entitiesforharness.budget,harness.context,harness.steering, andharness.extensions.§7.1.1 Budget-Exceeded Failure Modeto make mid-turn budget exhaustion behavior explicit and cross-referenced from execution flow.Compliance docs discoverability and anchor precision
specs/awf-config-sources-compliance/README.mdwith concrete section-anchor links toawf-config-sources-spec.md.pkg/logger/README.mdto keep AW harness observability schema/docs aligned.New compliance fixture for extension fields
specs/github-mcp-access-control-compliance/blocked-users-min-integrity-extension-fields.yaml.