From 005752e0da7a4899ecd6ddd937d315b1927cf11c Mon Sep 17 00:00:00 2001 From: "Jonathan D.A. Jewell" <6759885+hyperpolymath@users.noreply.github.com> Date: Wed, 30 Sep 2026 11:16:30 +0100 Subject: [PATCH] =?UTF-8?q?docs(audit):=20erratum=20=E2=80=94=20/tmp/aerie?= =?UTF-8?q?.pid=20is=20no=20longer=20standard-compliant?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit The 2026-04-10 audit is a frozen snapshot, so its rows stay untouched. A dated erratum under the banner stops the aerie row ("standard-compliant predictable name") being cited as precedent now that the standard puts pid files under XDG_RUNTIME_DIR / XDG_STATE_HOME and never /tmp. Co-Authored-By: Claude Opus 5.5 Claude-Session: https://claude.ai/code/session_0136eszqrQ53Kj7aBH1D4rXK --- docs/compliance-audit-2026-04-10.adoc | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/docs/compliance-audit-2026-04-10.adoc b/docs/compliance-audit-2026-04-10.adoc index 6019d37..3ddd95f 100644 --- a/docs/compliance-audit-2026-04-10.adoc +++ b/docs/compliance-audit-2026-04-10.adoc @@ -21,6 +21,14 @@ see its "`Discrepancy 1`" section) * `+docs/branch-protection-remediation-2026-04-10.adoc+` — estate-wide ruleset remediation that followed the scaffolder work +*Erratum (2026-09-30), added without altering the frozen rows below:* +the aerie row calls `+/tmp/aerie.pid+` "`standard-compliant`". That was +true of the 2026-04-10 standard only. Under the current +`+standards/launcher-standard_praxis.deed+`, a PID file in `+/tmp+` (or +`+$TMPDIR+`) is *non-compliant* — a predictable name in a world-writable +directory lets another user choose which PID `+stop+` kills (CWE-377). +Do not cite this row as precedent. + Of the 11 launchers audited here, 6 have since been migrated to scaffolder management (aerie, burble, game-server-admin, nqc, panll, project-wharf — plus stapeln, which the audit did not cover because