Founder ruling 2026-09-02: physical server-room access 100% human required — logged, approved, signed off. Branch protection lands immediately after this commit. Also excludes .gitea/ from the doc-pointer scan (framework dir, not docs). https://projects.knownelement.com/issues/345
991 B
991 B
Ticket
What changed / why
Access-control checklist (tick ONLY what applies)
- This PR touches badge roster / unlock policy / door-adjacent code
- If yes: scope is the SERVER-ROOM DOOR ONLY (no other locks in the house — founder ruling 2026-09-02)
- If yes: founder-approved Redmine ticket referenced above
- No webhook URLs, tokens, or badge credentials in the diff (secrets live in /etc/default/doorman, 0600, on the host)
Verification
bash scripts/test.shgreenbash tests/shellcheck.shcleanbash scripts/check-rules.shPASS
Sign-off
- Approver 1 (name / date):
- Approver 2 (name / date):
Physical server-room access is 100% human-gated. Agents may author and push PR branches; only humans approve and merge.