risk-nexus/tools
tegwick ba3b3f686d RISK-WP-0005-T01: read the fix records, and two findings moved
fix_tracker.py resolves fix_tracking against the owning repo's workplan
file — the ADR-001 source of truth — and uses the file's last commit date
as the honest answer to 'has this moved', independent of whether the
register looked. Archived workplans are searched too, so a finished fix
that was filed away does not read as missing.

First run, three findings it should have known about:

RISK-F-0005 — AUDIT-WP-0008-T04 has read done since 2026-08-18. The fix
this finding asked for has landed and the register spent three days not
knowing. Now mitigated, embargo lifted, disclosure public. Not fixed:
that needs a probe, and T05's adversarial evidence artifact still reads
wait.

RISK-F-0002 — both tracked records were closed before the finding was
filed: WARDEN-WP-0007 archived 2026-07-08, FLEX-WP-0007 finished
2026-06-29, against a finding of 2026-08-18 that names FLEX-WP-0007 as
the blocker. Routed as a question, not a conclusion.

Four findings carry no fix tracking at all, which the report now says out
loud rather than leaving as an empty field.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
2026-08-21 08:29:38 +02:00
..
__pycache__ Waits attach to any record, not just findings 2026-08-20 23:18:52 +02:00
fix_tracker.py RISK-WP-0005-T01: read the fix records, and two findings moved 2026-08-21 08:29:38 +02:00
inbox_check.py RISK-WP-0004: five of six tasks done; the executor is the operator's call 2026-08-20 08:49:23 +02:00
record_check.py Work the register due list, and add the one-check-per-sitting rule 2026-08-20 12:03:12 +02:00
register_check.py RISK-WP-0005-T01: read the fix records, and two findings moved 2026-08-21 08:29:38 +02:00
register_index.py Waits outlive statuses 2026-08-20 22:45:36 +02:00
register_lib.py Waits attach to any record, not just findings 2026-08-20 23:18:52 +02:00