zscripts-token-savers/tests
KellyMichels 827ad41ea6 docs(security): security notes, and a twin for every root .md
Defers to the org policy for how to report and covers what is particular to a
repository that is a sanitised mirror: the most valuable report here is not a
crash, it is something REAL that should not be here - a credential, an internal
hostname, an operator path, an identifier naming a private project. Mail those
rather than filing an issue, because a public issue about a leaked secret
publishes it a second time.

It also says what the automated check is and is not. The sanitisation suite is
a DENYLIST: it proves the absence of known patterns, not the absence of
secrets. Green tests are why a human report is still worth sending.

And the ordinary warning for what these actually are - automation that
archives a tree, uploads it, rebuilds containers and restarts services. Read
before running, nothing here is a sandbox, the config is yours to replace.

TWINS ARE NOW DISCOVERED, NOT LISTED. PAIRS was hand-kept and two files had
outgrown it: ELEVATOR_PITCH.md and TOKEN_SAVINGS.md had no twin at all. Adding
a document and remembering to add it to a list are two acts, and the second is
the one that gets skipped.

The Pester test had the same shape in reverse - it scraped PAIRS out of the
generator's source, so it could only prove the list was self-consistent and a
document nobody listed was invisible to it. It now asks the REPOSITORY what
markdown it has. Proven by deleting SECURITY.txt and watching two tests fail.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
2026-09-11 22:40:03 -05:00
..
fixtures test: add Pester suite for ZHelpers pure logic + ZCONFIG seam (phases 1-2) (#27) 2026-07-26 12:20:32 -05:00
ArgumentParsing.Tests.ps1 perf(tests): run each child-process invocation once (#77) 2026-09-10 15:12:22 -05:00
Checksums.Tests.ps1 chore: point repo URLs at evomedia-net/evo.* (#44) 2026-08-09 11:31:43 -05:00
DeployTag.Tests.ps1 chore(mirror): mirror tagOnDeploy and the zstart gitPull fix, and stop publishing current product names (#72) 2026-09-08 13:40:45 -05:00
Invoke-Coverage.ps1 test(coverage): run the Pester suite with code coverage (#47) 2026-08-13 16:26:19 -05:00
NewProjectArchive.Tests.ps1 chore: point repo URLs at evomedia-net/evo.* (#44) 2026-08-09 11:31:43 -05:00
PlainTextTwins.Tests.ps1 docs(security): security notes, and a twin for every root .md 2026-09-11 22:40:03 -05:00
sanitization-patterns.psd1 chore(mirror): mirror tagOnDeploy and the zstart gitPull fix, and stop publishing current product names (#72) 2026-09-08 13:40:45 -05:00
Sanitization.Tests.ps1 chore(mirror): mirror tagOnDeploy and the zstart gitPull fix, and stop publishing current product names (#72) 2026-09-08 13:40:45 -05:00
StartGitPull.Tests.ps1 chore(mirror): mirror tagOnDeploy and the zstart gitPull fix, and stop publishing current product names (#72) 2026-09-08 13:40:45 -05:00
VerifyPlan.Tests.ps1 chore(mirror): mirror tagOnDeploy and the zstart gitPull fix, and stop publishing current product names (#72) 2026-09-08 13:40:45 -05:00
ZHelpers.Tests.ps1 chore: point repo URLs at evomedia-net/evo.* (#44) 2026-08-09 11:31:43 -05:00