Live-Site Sweep · acquisto.biz · Lanes A + B
A read-only spider across the live navigation, database, 100 crons, the ticket board, page governance, and anon security. UPDATE 7/4 ~12:34 am CT: all six items approved by Shattique and EXECUTED — green checks below carry the outcome; details in 04-SESSION-LOG-2026-07-03pm.md.
The anon key ships in every page's JS (by design — it's meant to be public). But pure_memory, pure_board, and prompt_queue carry public SELECT policies, so anyone with that key can read our entire second-brain — I pulled live_backend (project ref, your email, architecture notes) and open ticket bodies in seconds from outside.
SECURITY DEFINER RPC that returns only safe columns (no internal notes); revoke public SELECT on pure_memory + prompt_queue entirely (service-role only). No page breaks — the chat board display already calls an RPC. This is a Lane-B/Shattique change; I've scoped the exact policy diff.pure_memory.security.rls_lockdown_reversal. prompt_queue deferred (lane wire) under the leak-guard tripwire. Canon written.pure-release-settle errors every run: column "version" does not exist inserting into pure_release_retro. So release retros aren't being logged, and the failure log is noisy — which hides real failures.
The pages_linkcheck cron runs daily and flags them, but nothing acts on the result. 29 live pages (plus 39 parked, which don't matter) have link_health ≠ ok — dead hrefs users can hit.
mcp_linkcheck_digest(), cron jobid 106, daily 6:30am CT, deduped LC-* ticket). Finding corrected: the 29 were never-scanned (null), not failed — zero confirmed broken links today; the digest now catches real ones.477 open items across mixed lane labels — A, B, lane-b, Code, ? — and 100 items sit in review with no lane at all. The easiesthardest startup ranking can't sort what it can't classify.
lane-bB, backfill ? from assignee) once, then a daily board-triage cron that flags stale/no-lane/no-effort items into the brief.undo.prev_lane; board-triage cron live (jobid 107); first ticket BT-19F2D963105 (96 no-lane · 147 no-effort) filed to Mike.pure_pages not in pure_nav_modules auto-nominate into a review queue. Extends boneyard_orphan_scan.security.rls_exposure — anon gets definer-RPC reads only; never raw SELECT on pure_memory / pure_board / prompt_queue. (CLAUDE.md canon.)routine.orphan_sweep — the two-way navpagesshell sweep as a standing routine (both directions: dead links AND unlinked pages AND separate shells).security.rls_exposure + routine.orphan_sweep stored in pure_memory and written into CLAUDE.md standing instructions.Zero dead nav links across all 96 routes · strictness ratchet backlog = 0 (governance current) · audit_log is hash-chained · 100 crons all active incl. boneyard orphan-scan, pages register/linkcheck/ratchet, design-system autobuild · Text + Email consoles live and shell-mounted · PurePipeline registered in pure_components.
Read-only sweep · nothing executed · prepared by Lane A for Mike's approval · 7/3/26 late