Block a user
[Security] Upgrade React Router past RSC CSRF advisory
Codex State: progress
Summary
- Confirmed GovOPlaN uses client-side routing and does not expose React Router RSC/action handlers covered by GHSA-qwww-vcr4-c8h2.
- Migrated Core and every…
[Design review] Rework Mail server, envelope, credential, and policy structure
[Design review] Rework Mail server, envelope, credential, and policy structure
Codex State: done
Summary
- Kept the accepted profile -> protocol server -> reusable credential hierarchy unchanged.
- Editing profile metadata, SMTP/IMAP servers, and attached credentials…
[Feature] Activate and restore effective Views for workflow instances and steps
Codex State: progress
Summary
- Workflow revisions can pin an exact View revision and step nodes can request a narrowing surface overlay.
- Views resolves Workflow context through a Core…
[Feature] Add scoped Workflow templates, reuse, and governed start triggers
Codex State: progress
Summary
- Definitions now distinguish immutable execution mode from instance start origin (
user,api,schedule,event, parent/dependency, retry/replay, and…
[Feature] Persist, edit, and execute reusable workflow definition graphs
Codex State: progress
Summary
- Added revision-pinned
guided,automated, andhybridexecution modes, with start origin tracked independently. - Implemented durable capability action…
[Design review] Rework Mail server, envelope, credential, and policy structure
Codex State: ready
Summary
- The current envelope/server/reusable-credential split is accepted for now. Remaining work is the creation/editing workflow and UI presentation: make server…
[Task] Select the first trusted Postbox encryption and hand-over policy profile
Codex State: ready
Summary
- Product defaults confirmed: new function incumbents receive authorized message history. Use a 2-of-3 administrative recovery quorum with managed-device…
Organizations: fix admin settings 500 and decide global vs tenant governance model
Codex State: note
Summary
- Decision confirmed: concrete organization hierarchies are tenant-owned and may be created/upgraded from versioned system templates; tenants do not inherit one…
[Decision] Define campaign behavior when expected attachments are missing
Codex State: note
Summary
- Decision confirmed: no attachment rule means no attachment is expected; required-and-missing blocks; optional-and-missing warns. Policy may tighten this…
Decide campaign sub-object resource access explanation scope
Codex State: note
Summary
- Decision confirmed: apply independent access explanations to the full campaign sub-object inventory, delivered incrementally. Initial priority remains…
[Feature] Implement campaign ownership transfer as a two-step process
Codex State: note
Summary
- Decision confirmed: campaign ownership transfer follows the generic delegated acceptance, expiry, and administrative recovery/quorum model in Core #276.
[Feature] Establish generic ownership transfer and recovery-authority workflow
Codex State: note
Summary
- Decision confirmed: group acceptance authority is explicitly delegated, transfer offers expire, and administrative recovery requires assured authority plus…
[Design review] Rework Mail server, envelope, credential, and policy structure
Codex State: ready
Summary
- The current envelope/server/reusable-credential split is accepted for now.
- Remaining work is the creation/editing workflow and UI presentation: make server…
Organizations: fix admin settings 500 and decide global vs tenant governance model
Codex State: note
Summary
- Decision confirmed: concrete organization hierarchies are tenant-owned and may be created/upgraded from versioned system templates; tenants do not inherit one…
[Feature] Implement campaign ownership transfer as a two-step process
Codex State: note
Summary
- Decision confirmed: campaign ownership transfer follows the generic delegated acceptance, expiry, and administrative recovery/quorum model in Core #276.
[Decision] Define campaign behavior when expected attachments are missing
Codex State: note
Summary
- Decision confirmed: no attachment rule means no attachment is expected; required-and-missing blocks; optional-and-missing warns.
- Policy may tighten this…
[Task] Select the first trusted Postbox encryption and hand-over policy profile
Codex State: ready
Summary
- Product defaults confirmed: new function incumbents receive authorized message history.
- Use a 2-of-3 administrative recovery quorum with managed-device…
Decide campaign sub-object resource access explanation scope
Codex State: note
Summary
- Decision confirmed: apply independent access explanations to the full campaign sub-object inventory, delivered incrementally.
- Initial priority remains…
[Feature] Establish generic ownership transfer and recovery-authority workflow
Codex State: note
Summary
- Decision confirmed: group acceptance authority is explicitly delegated, transfer offers expire, and administrative recovery requires assured authority plus…