Files
awoooi/docs/security/GITEA-REPO-INVENTORY-SNAPSHOT.md

36 lines
2.0 KiB
Markdown
Raw Blame History

This file contains ambiguous Unicode characters
This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.
# Gitea Repo 全量盤點快照
| 項目 | 值 |
|------|----|
| 狀態 | `partial` |
| Gitea base URL | `http://192.168.0.110:3001` |
| Org/User | `wooo` |
| GitHub owner 候選 | `owenhytsai` |
| 查詢模式 | `user` |
| 查詢字串 | `` |
| 可見性範圍 | `public_only` |
| 是否提供 token | `False` |
| HTTP status | `200` |
| Repo 數量 | `2` |
| 阻塞原因 | 未提供 token結果只代表公開可見 repoprivate/internal repos 仍需只讀 token 或管理匯出 |
| S4.5 export request | `docs/security/GITEA-AUTHENTICATED-INVENTORY-EXPORT-REQUEST.md` |
| S4.6 import acceptance | `docs/security/GITEA-AUTHENTICATED-INVENTORY-IMPORT-ACCEPTANCE.md` |
| S4.7 coverage attestation | `docs/security/GITEA-INVENTORY-COVERAGE-ATTESTATION.md` |
## Repo 清單
| Gitea repo | GitHub 候選 | default branch | private | archived |
|------------|------------------|----------------|---------|----------|
| `wooo/awoooi` | `owenhytsai/awoooi` | `main` | `False` | `False` |
| `wooo/ewoooc` | `owenhytsai/ewoooc` | `main` | `False` | `False` |
> 注意:本檔由 read-only Gitea inventory 工具產生,不包含 API token 或 remote URL 帳密。
S4.5 已將 authenticated inventory / redacted admin export 的欄位、拒收規則與 coverage gap 驗收文件化;本 snapshot 仍是 `partial`,不得視為 server-side 全量。
S4.6 已將後續脫敏 payload 的驗收、拒收與隔離規則文件化;目前尚未收到 payload`gitea_repo_inventory_v1.status` 仍不得標記為 `ok`。
S4.7 已將 owner coverage attestation 文件化;目前尚未收到 owner attestationpublic-only 2 repos、本機 Gitea unique 4 repos、org/user endpoint 與 110 internal adjacent source 的 scope 仍不得視為已完成。
2026-06-04 P1 refresh 注意:本檔由工具重產時會覆蓋人工治理註記;後續需把 generator output 與治理補註分層,或在重產後固定補回 S4.5 / S4.6 / S4.7 狀態,避免 AwoooP 只看到 public-only list 而漏掉 owner response gate。