membus board¶
Polyharness parity P1. Epic spec: codex-harness-mirror/docs/POLYHARNESS-PARITY-SPEC.md (councilled 2026-07-10).
| ID | Item | Status |
|---|---|---|
| MB-1 | Scope catalog + deterministic UUIDv5 projectIds | ✅ done (422a128) |
| MB-2 | Per-harness write allowlists (client enforcement, exit 3) | ✅ done (422a128) |
| MB-3 | Provenance metadata on every write | ✅ done (422a128) |
| MB-4 | send / recall / scopes / health CLI | ✅ done (422a128) |
| MB-5 | Server-side gate: per-scope project rows + project-bound API keys + keyring | ✅ done (provisioned live 2026-07-10) |
| MB-6 | Fleet deploy: exe + keyring on all 4 PCs, live cross-machine round-trip | ✅ done (2026-07-10, after Wi-Fi drift fix) |
| MB-7 | Codex review + fixes (host allowlist, strict key custody, transport hardening) | ✅ done (0e674f2) |
| MB-8 | CI on org home-ci runner (SHA-pinned, secret-grep gate) | ✅ done — first green run 2026-07-10 (35d3eb1) |
| MB-9 | Doc-set: README + threat model + plain + technical docs | ✅ done |
| MB-10 | /council-code-review full gate (seats: Codex chair + Gemini + gemma4 + house councils; Grok seat not run) | ✅ done — findings applied (exit-code propagation, git-grep gate, shell comment); Kerr: don't pre-mark done |
| MB-11 | Stryker.NET mutation pass (testing mandate layer 2) | ✅ done |
| MB-12 | Per-harness key custody (separate keyrings per harness) — P6 guardrail | ⬜ deferred to P6 |
| MB-13 | TLS for Bearer traffic — P6 | ⬜ deferred to P6 |