Outcomes
- • That PR that merged on a 3-commit-old review? That stops.
- • Bad PRs get caught before CI spins up and you pay for it
- • Works with whatever review tool you already use — CodeRabbit, Greptile, CodeQL, or your own
What is included
Repo safety design
- • Single contract file structure and versioning rules
- • Risk tiers by path and required checks mapping
- • Docs-drift rules for workflow and policy changes
Gates and proof requirements
- • Preflight policy gate workflow pattern
- • Current-head SHA enforcement rules
- • Evidence manifests for UI and critical flows
Step-by-step workflows
- • Rerun requester dedupe by sha marker
- • Auto-resolve bot-only threads after a clean rerun
- • Harness-gap loop: when something breaks that checks should have caught, write a test so it cannot happen again