-
Notifications
You must be signed in to change notification settings - Fork 2
Tighten v1 security invariants and define the trusted-computer boundary #4
Copy link
Copy link
Open
Labels
area: securitySecurity invariants, hardening, and security-sensitive boundaries.Security invariants, hardening, and security-sensitive boundaries.documentationImprovements or additions to documentationImprovements or additions to documentationgate: adversarial reviewResolve, merge, or explicitly defer before the next full adversarial review.Resolve, merge, or explicitly defer before the next full adversarial review.
Description
Activity
Metadata
Metadata
Assignees
Labels
area: securitySecurity invariants, hardening, and security-sensitive boundaries.Security invariants, hardening, and security-sensitive boundaries.documentationImprovements or additions to documentationImprovements or additions to documentationgate: adversarial reviewResolve, merge, or explicitly defer before the next full adversarial review.Resolve, merge, or explicitly defer before the next full adversarial review.
The v1 security documentation needs one literal, consistent trusted-computer and secret-output contract.
Required contract:
bitcoin-cli/Bitcoin Core and relevant configuration trusted for the operation;Implemented and reviewed in PR #59. Reviewed head
580b8f8passed its focused/CI checks, but currentreviewability-v1has advanced and GitHub now reports the historical documentation head conflicted. Keep this issue open until #59 receives its one final mechanical refresh after the runtime/security stack settles, reconciling the final wording with #23 and the restore behavior in #57/#80/#81. Rerun normal CI and the review-thread audit on that refreshed tip.