- CI green.
- Manifest validation and static inspection tests pass.
- CI inspection artifact explicitly shows bounded capability assumptions.
- Receipt / Manifest fingerprint tests pass.
- No new arbitrary command execution, persistence, credential access or uncontrolled networking capability is introduced.
- Update
CHANGELOG.md,pyproject.tomlandCITATION.cff. - Review
SECURITY.md,docs/BENCHMARKS.mdanddocs/ROADMAP.md.
Release notes should describe defensive telemetry scenarios, not evasive capability.