Expand description
The committed target configuration, parsed strictly and written from authored text, typed by the domain that owns each answer. Comparisons continue to use the landing record alone.
SATISFIES project-profile:the-target-configuration-is-typed-by-domain
Modules§
- floors
- The single owner of configuration policy judgments and their method sources.
- migrate
- The one bounded migration of a schema 1 configuration into the schema 2 domains, over the authored text, so every comment survives.
Structs§
- Bot
- The
setup.bottable. - Capabilities
- The
capabilitiestable: the optional products the target requests. - Config
- Per-target answers; an omitted table uses its compiled defaults.
- Git
- The
gittable: the Git workflow parameters. - Github
- The
protection.githubtable. - Gitlab
- The
protection.gitlabtable. - Plan
- Resolved landing input, including every key a preview would write.
- Profile
- The
profiletable: what the project is. - Project
- The
projecttable: identity. - Protection
- The
protectiontable. - Release
- The
profile.releasetable. - Security
- The
securitytable. - Setup
- The
setuptable.
Constants§
- CONFIG_
PATH - The committed input, relative to the target root.
- LINE_
PREFIX_ DEFAULT - The compiled release-line prefix, used where nothing else answers.
- LOCAL_
GITHUB_ BYPASS - The one GitHub ruleset bypass local integration owns.
- REQUEST_
RULES - The rules the trunk ruleset carries: the request and the check it must carry, which a recorded bypass actor may be excused from.
- RESPONSE_
DEFAULT - The compiled response stance, used where nothing else answers: the policy promises no window at all.
- SAFETY_
RULES - The rules the safety ruleset carries, in the order the setup writes them.
- SCHEMA_
VERSION - The configuration schema this binary writes. Schema 1 reads through
the one migration in
migrate. - TRUNK_
DEFAULT - The compiled trunk, used where neither a configuration nor a record answers.
Functions§
- canonical_
contact - The canonical form of a security contact, or why it is refused.
- canonical_
response - The canonical form of a response stance, or why it is refused.
- line_
prefix_ of - The release-line prefix for callers without a setup context.
- load
- Read the optional file; content errors refuse instead of falling back.
- pending
- Only explicit class P answers can be pending; comparisons still use the record.
- rewrite_
key - Change one landing parameter while preserving comments and table ordering.
- trunk_
of - The trunk accessor for callers without a setup context.
- write
- Write the authored template with TOML-escaped scalar substitutions.