Commit graph

2 commits

Author SHA1 Message Date
Sirius DevOps
22b3a0062a
docs: add PROTOCOL.md and retire the stale audit writeup
Some checks are pending
ci / test (pull_request) Waiting to run
Wire format lives in docs/PROTOCOL.md so the handshake, invite, and
frames can be read without the Rust. Threat model points at it. The
in-house audit notes are a finding-status table, not a third-party
audit. SDK README no longer claims the legacy concat invite signature
is what we encode.
2026-09-11 13:15:51 -04:00
Sirius DevOps
dfa4ea8f39
docs: security audit of 2b42864 (report only)
All checks were successful
ci / test (pull_request) Successful in 2m57s
Evidence-backed audit at docs/SECURITY_AUDIT.md. No src/ changes.
2026-09-10 18:54:40 -04:00