Skip to content

test: pin SECURITY.md's supported-versions table to the shipped version - #19

Merged
CaffeinatedCoder merged 2 commits into
mainfrom
test/security-policy-consistency
Aug 16, 2026
Merged

CaffeinatedCoder merged 2 commits into
mainfrom
test/security-policy-consistency

Conversation

@CaffeinatedCoder

Copy link
Copy Markdown
Owner

Why

SECURITY.md promises fixes for "the latest released minor version" and tabulates which line that is. Nothing tied the table to Directory.Build.props, so it is exactly the line a version bump forgets — the sibling repository shipped 6.2.0 with its table still saying 6.1.x. Here it happens to be right (5.0.x, shipping 5.0.3). "Prefer a test to a convention."

What

SecurityPolicyConsistencyTests asserts that the single | x.y.x | ✅ | row is the shipped major.minor, and that the | < x.y | ❌ | row meets it at the same minor (so no range is left described by neither). One row added to the convention-tests table in CLAUDE.md.

Verified (verify-the-guard)

  • Passes against the current table.
  • Fails with the supported row changed to 5.1.x ("SECURITY.md lists 5.1.x as the supported line, but Directory.Build.props ships 5.0.3").
  • Fails with the unsupported row changed to < 4.0.
  • Passes again once restored; ClaudeMdConsistencyTests passes with the new table row.

🤖 Generated with Claude Code

SECURITY.md promises fixes for "the latest released minor version" and
tabulates which line that is. Nothing tied the table to
Directory.Build.props: a release that bumps the version and forgets the
table leaves the policy pointing a reporter at a line that no longer
receives fixes. The sibling repository (CodoMetis.ValueRanges) shipped
6.2.0 with the table still saying 6.1.x; here it happens to be right.

SecurityPolicyConsistencyTests asserts that the single '| x.y.x | ✅ |'
row is the shipped major.minor and that the '| < x.y | ❌ |' row meets it
at the same minor.

Verified: passes against the current table (5.0.x, shipping 5.0.3); fails
with the table changed to 5.1.x; fails with the unsupported row changed to
'< 4.0'; passes again once restored. ClaudeMdConsistencyTests passes with
the new table row.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
@CaffeinatedCoder
CaffeinatedCoder merged commit 30b644e into main Aug 16, 2026
9 checks passed
@CaffeinatedCoder
CaffeinatedCoder deleted the test/security-policy-consistency branch August 16, 2026 13:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant