Skip to content

docs: write the interim no-apply-mainnet rule into deployments/ - #81

Merged
mattglory merged 2 commits into
mainfrom
docs-no-apply-mainnet-rule
Oct 3, 2026
Merged

mattglory merged 2 commits into
mainfrom
docs-no-apply-mainnet-rule

Conversation

@mattglory

Copy link
Copy Markdown
Owner

Summary

Hillary's #75 review proposed this rule explicitly and asked for a yes/no. Yes — writing it where it has to actually be seen: deployments/README.md, not a row in CONTRACT_INVENTORY.md someone has to already know to check.

What it says

  • The rule: never clarinet deployments apply --mainnet, with or without -d.
  • Why: the D5/D6 finding (57-contract plan, 26 from contracts/test/, including the five undeployed audit-track successor names it would permanently occupy).
  • What to do instead: -p <path> with an explicit, reviewed plan; prefer the scripts/ path.
  • What's already in the directory, including the archived gen-1 plan.

Deliberately not touched here

CONTRACT_INVENTORY.md's D5/D6 rows — #75 is still open on those exact lines, pending Hillary's re-review. Cross-linking this README from there is a one-line follow-up once #75 lands, not worth conflicting with it now.

Verification

Docs-only. Suite 258 passed / 1 expected fail (259), clarinet check 211/0 — both unchanged.

🤖 Generated with Claude Code

Hillary's #75 review proposed this rule explicitly and asked for a yes/no.
Yes -- writing it where it has to be seen: the directory itself, not just
a table row in CONTRACT_INVENTORY.md someone has to already know to read.

States the rule, why (D5/D6, the 57-contract/26-test-file plan, the five
undeployed successor names it would permanently occupy), what to do
instead (-p <path>, never bare --mainnet or -d against an auto-generated
plan), and what's already in this directory including the archived gen-1
plan.

Deliberately does not touch CONTRACT_INVENTORY.md's D5/D6 rows here --
#75 is still open on those exact lines with Hillary's pending re-review;
cross-linking this file from there is a one-line follow-up once #75
lands, not worth conflicting with it now.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
@vercel

vercel Bot commented Oct 1, 2026 •

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated
web Ready Ready Preview Oct 3, 2026 3:04pm UTC

Request Review

@unixwhisperer unixwhisperer left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Content's correct — matches the D5/D6 evidence and the mechanism (Clarinet.toml regenerating the plan fresh, not a stale plan file) that we already nailed down across #74/#75/#76. Good call putting the rule in deployments/README.md where it's actually in the way, rather than a row someone has to know to go look for.

One non-blocking note: the "Dependency Audit" check is currently red, but that run is from 2026-10-01T00:04 — before #80 (the Next.js critical RCE fix) merged at 01:20 the same day. It's the same stale pre-existing-vuln failure #80 was tracked against, not anything this PR introduced. Should clear once the branch is updated against current main; flagging so it isn't mistaken for a real blocker before merge.

Approving.

@mattglory
mattglory merged commit 9d4b241 into main Oct 3, 2026
6 of 7 checks passed
@mattglory
mattglory deleted the docs-no-apply-mainnet-rule branch October 3, 2026 15:07

This branch was successfully deployed

1 active deployment
Preview — 4f7cdd66 Deployed Oct 3, 2026 by vercel[bot]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants