Skip to content

docs(profile): truth-pass org README to Traverse v0.11.0 - #22

Closed
enricopiovesan wants to merge 19 commits into
mainfrom
ceo/v0.11.0-profile-truth-pass
Closed

enricopiovesan wants to merge 19 commits into
mainfrom
ceo/v0.11.0-profile-truth-pass

Conversation

@enricopiovesan

Copy link
Copy Markdown
Contributor

Summary

Org profile README truth-pass after Traverse v0.11.0: published crates / npm traverse-embedder-web@0.11.0, 149 approved specs.

Governing Spec

  • no-spec-needed (org profile marketing copy)

Validation

  • crates.io lockstep packages at 0.11.0
  • npm traverse-embedder-web@0.11.0
  • approved-specs.json count 149 on traverse main

enricopiovesan and others added 19 commits July 3, 2026 10:37
…atterns, compatibility policy, exception process, CLA, issue/PR templates, shared CI gate script, AI-agent hardening rules
…esets

- GOVERNANCE.md (single-owner model), TRADEMARK.md, NOTICE
- CODE_OF_CONDUCT.md, SECURITY.md, SUPPORT.md org-wide defaults
- Reusable workflows: CLA gate (central signatures), governance baseline
- Weekly org compliance audit workflow + script
- Canonical baseline branch ruleset + apply/rollout scripts
- Workflow templates for new repos; CHANGELOG with versioning policy
- Self-compliance: CLAUDE.md, .governance-version, caller workflows, CODEOWNERS, dependabot
- docs/owner-setup.md for owner-only manual steps

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
* Governance v1.0.1: fix reusable governance gate and rollout script

- reusable-governance verifies spec gate wiring instead of executing it bare
- bash 3.2 portability for org scripts
- rollout PRs declare governing specs and link a tracking issue

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>

* Reference reusable workflows at the default branch, not a moving v1 tag

Release tags stay as content pin points; gate logic deploys on merge.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>

* Rollout PR bodies carry the org-wide hygiene section superset

Summary / Governing Spec / Project Item / Definition of Done / Validation
satisfies both traverse's and reference-apps' pr-hygiene gates.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>

* Drop CODEOWNERS requirement — solo-maintainer, agent-driven mode

No human-approval ceremony: gates are automated checks only. CODEOWNERS
removed from the baseline gate, audit, rollout, and this repo.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>

* Add required-checks ruleset so auto-merge waits for the gates

Requires observed contexts 'baseline / governance-baseline' and 'cla / cla'.
Apply only after the caller workflows land on every default branch.
apply_rulesets.sh now applies all ruleset JSONs (or one via -f).

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>

---------

Co-authored-by: Enrico Piovesan <enricopiovesan@Enricos-Mac-mini-6.local>
Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
- Degrade gracefully while CLA_ASSISTANT_PAT is unset: allowlisted authors
  pass with a warning; external authors still fail closed.
- Allowlist the owner's coding-agent identities (claude, cursoragent) and
  the owner's unlinked machine-local git identity.

Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
…ked (#6)

Lawyer review, LLC, and trademark registration deferred by owner decision
until traction (revenue, sustained external contributors, or acquisition
interest). CLA PAT, signatures branch, required-checks ruleset, and v1 tag
cleanup marked done.

Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
Revisit when the first collaborator gets org access.

Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
)

- ai-agent-hardening.md: single canonical agent doc, no versions in
  prose, no state snapshots, .claudeignore required, lazy-read map,
  PR-body superset, lean ladder and claim-before-code org-wide
- baseline gate warns (non-blocking) on violations; blocking in next major
- rollout adds starter .claudeignore; self-compliance for this repo
A coordination-only AGENTS.md that declares CLAUDE.md canonical is
compliant regardless of size; warn only when neither file defers.
Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 7.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](actions/checkout@v4...v7)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-version: '7'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 7.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](actions/checkout@v4...v7)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-version: '7'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
#14)

Prevents the cla.yml-not-on-base-branch deadlock that blocked
claude-skills' governance rollout PR.
The org profile was a thin three-line blurb listing five repos. Expand it to
represent the project: product framing ("define once, run anywhere" / agent
proposes, runtime decides), an at-a-glance table of all seven repos with real
state (v0.10.0, 134 specs, 6 crates on crates.io, 46 registry capabilities
across 24 domains, reference apps on 7 targets), the platform reach (5 embedder
SDKs), and why it matters for AI-era development. Drops the inaccurate "cloud"
target claim (cloud/edge are roadmap, matching the traverse README).

Co-authored-by: Claude Sonnet 5 <noreply@anthropic.com>
Truth-pass against live sources: crates.io 0.10.2, approved-specs.json
148, catalog.json 83/186/148 across 31 domains, ~732 commits on main.
* docs(profile): npm traverse-embedder-web@0.10.2 aligned

Org profile platform reach now names the published npm version so
it cannot be read as still lagging on a separate web track.

* chore: re-trigger governance check

---------

Co-authored-by: Enrico Piovesan <enrico@traverse-framework.com>
Bump published crate/npm versions and approved-spec count to match the
v0.11.0 cut (149 specs on main).
@enricopiovesan

Copy link
Copy Markdown
Contributor Author

Wrong base (main). Reopening against bootstrap-governance — the org profile default branch.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant