Skip to content

test(release): Standard Code Beta 工程门、packaged smoke 与安全矩阵 #140

Description

@Qiyuanqiii

范围决策(2026-08-27):#140 只认证 Standard Code 的 pre-release/Beta 工程门、packaged smoke、安全/恢复矩阵和证据生产能力。完整人工产品资格矩阵已移入 #123,作为品牌冻结后的正式签名与 Store 候选发布门。本 Issue 的关闭不表示 #123 或 Stable Release 已完成。

目标

证明默认 Standard Code Beta 具备可复核的安全执行底座、可复现 portable candidate、零参数启动 smoke、固定四语言 oracle、真实安全/恢复矩阵以及 delivery truth contract。Beta 必须继续标记为 Pre-release,不宣称已完成正式平台兼容认证。

已交付证据

Beta 工程门

  • 全仓 Go ordinary/race/vet/govulncheck/module 门通过。
  • React、strict TypeScript、OpenAPI、Vite、npm audit 通过。
  • portable ZIP/EXE 可复现且绑定 source、manifest 与候选 SHA-256。
  • 默认 EXE 零参数启动、重开和固定四语言 toolchain oracle 通过。
  • Local Sandbox/Docker 的 40 项安全拒绝与恢复矩阵具有真实 packaged evidence。
  • 无 skip/waiver、静默 Full Access、host execution 或 unexecuted-as-pass。
  • delivery truth contract 能追溯 Diff、测试、Checkpoint、Artifacts 与 receipts。
  • Full Access、Debug、Full CDP 保持高级默认关闭能力。
  • Beta/Pre-release 与正式签名、Store 和 Stable qualification 边界已写入 release(windows): 交付 Microsoft Store 包与开箱即用单 EXE #123。

延后到 #123 的正式资格矩阵

  • 四语言在每个 ready Local/Docker backend 上的人工 Desktop 完整闭环。
  • Windows 10/11 × 100%/200% DPI × 中文 IME、键盘/焦点/a11y。
  • 中文、空格、长路径、CRLF、dirty、untracked、binary、并发编辑的完整产品矩阵。
  • 在最终签名/Store 候选上生成 standard_code_product_e2e.v1 并与安全报告、SBOM、attestation 和发布 hash 聚合。

非目标

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    desktopDesktop client and Windows distributionenhancementNew feature or requestgithub_actionsPull requests that update GitHub Actions codegoPull requests that update go codejavascriptPull requests that update javascript codesandboxSandbox, container, and execution isolationsecuritySecurity boundary or high-risk capabilitystandard-codeSafe default coding loop, Workspace Access, Local Sandbox, and Standard Code UX高难度

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions