Files
intotheeast-com/docs
m038andClaude Opus 4.8 9295914238 docs: capture history-rewrite-under-live-git-sync + secrets-audit tooling
Update the git-sync secret-exposure solution doc with today's operational
lesson: untracking an already-committed secret under a live bidirectional
sync. Covers the direction:both force-push-revert trap, the freeze-every-
server-first sequence, audit-before-reset (authoritative secret in env/),
the stale origin/main ref + sparse-checkout gotchas, and the ignore:-field
mechanism.

Add Makefile targets that supported the fix:
- remote-secrets-audit: secret-safe (existence + size + git ls-files, never
  contents) audit of config/ vs env/<host>/config secret locations
- remote-content-status: also show the .gitignore diff git-sync regenerates

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
2026-07-05 19:25:32 +02:00
..
2026-06-21 12:51:42 +02:00

docs/

If you're Mischa

Doing something operational?guides/

Checking project status?working/

Design or architecture decisions?reference/


If you're Claude

Always-loaded project rulesCLAUDE.md (repo root)

Active specs and plansworking/specs/ and working/plans/

Stable factsreference/

Raw research inputresearch/