Skip to content

Updating main from develop#369

Merged
mattaereal merged 65 commits intomainfrom
develop
Feb 10, 2026
Merged

Updating main from develop#369
mattaereal merged 65 commits intomainfrom
develop

Conversation

@mattaereal
Copy link
Collaborator

No description provided.

scode2277 and others added 30 commits November 14, 2025 23:11
* upgrade the travel guide

* upgrade tldr travel guide

* update travel guide
* Update overview.mdx

* Update overview.mdx

* Update overview.mdx

* Update overview.mdx

* Update certified-partners.mdx

* Update overview.mdx

* Update overview.mdx
* Update overview.mdx

* Update overview.mdx

* Update overview.mdx

* Update overview.mdx

* Update certified-partners.mdx

* Update overview.mdx

* Update overview.mdx

* Update certified-partners.mdx

* Update certified-partners.mdx
* fix: update README.md for clarity and consistency in incident management playbooks

* refactor: enhance transaction verification documentation for clarity and security protocols

- Streamlined address verification steps and clarified requirements for test transactions.
- Updated security protocols for large transfers, including anti-social-engineering measures.
- Improved formatting and consistency throughout the document for better readability.

* feat: add Treasury Operations guide for large cryptocurrency transfers

- Introduced a new section in the vocs.config.ts for Treasury Operations, including a guide on transaction verification for large transfers.
- Created a comprehensive documentation file for Treasury Transaction Verification, detailing security protocols, verification steps, and best practices for handling significant cryptocurrency movements.
- Updated fetched-tags.json to include relevant tags for the new guide.

* refactor: update transaction verification documentation for clarity and best practices

- Revised sections on deposit address selection for both institutional custody and self-custody multisigs, emphasizing the importance of using established addresses.
- Enhanced address verification protocols, including detailed steps for verifying multisig configurations.
- Clarified critical instructions for address confirmation during transactions, ensuring security against phishing and address poisoning.
- Improved overall formatting and consistency for better readability.

* refactor: improve transaction verification documentation and fix tag path

- Enhanced clarity and formatting throughout the transaction verification guide, including detailed steps for address verification and test transactions.
- Updated the tag path in fetched-tags.json to reflect the correct directory structure for the transaction verification documentation.
- Added additional best practices for security during large cryptocurrency transfers, ensuring comprehensive coverage of verification protocols.

* feat: add new section for Custodial Inventory & Controls in Treasury Operations

- Introduced a new item in the Treasury Operations guide, linking to the Custodial Inventory & Controls documentation for enhanced resource accessibility.

* fix: update Ethereum confirmation requirements in transaction verification documentation

- Changed the confirmation requirement for Ethereum from 12 confirmations (~2.5 minutes) to 2 epochs (~12.8 minutes) for improved accuracy.

* refactor: enhance Treasury Operations documentation with impact assessments and operational classifications

- Added sections on financial, operational, and regulatory impacts for account unavailability.
- Updated impact classification table to include regulatory considerations and adjusted financial exposure metrics.
- Revised operational assessment notes to reflect changes in account value thresholds and approval requirements for transactions.

* chore: add spacing for improved readability in Treasury Operations documentation

- Added extra line breaks in the classification registration and documentation section to enhance visual clarity and separation of content.

* feat: expand Treasury Operations documentation with Zero Trust Architecture and security monitoring guidelines

- Added a new section on Zero Trust Architecture alternatives, detailing bastion host and cloud workspace isolation approaches for enhanced security.
- Introduced security monitoring and logging recommendations for organizations managing critical accounts, emphasizing the use of SIEM and audit logs for effective oversight.

* refactor: streamline security monitoring section in Treasury Operations documentation

- Removed redundant header for the Security Monitoring & Logging section to improve clarity and flow.
- Maintained focus on centralized security monitoring recommendations for critical and high impact accounts.

* feat: add DeFi Risk Assessment reference to Treasury Operations documentation

- Included a link to the DeFi Risk Assessment Guide for recommended procedures related to DeFi interactions.
- Enhanced the documentation to provide clearer guidance for security measures in decentralized finance contexts.

* feat: introduce Custodial Treasury Security framework in documentation

- Added a new section titled "Custodial Treasury Security: Inventory & Controls Framework" to enhance guidance on custodial account management.
- Included tags and contributor information for better resource categorization and attribution.
- Integrated components for improved documentation structure and user engagement.

* refactor: update Zero Trust Architecture section in Treasury Operations documentation

- Revised the description of Zero Trust architecture to emphasize continuous verification of users, devices, and context.
- Enhanced clarity in the bastion host and cloud workspace isolation approaches, including specific security measures and risk reduction strategies.
- Improved overall readability and consistency in the documentation.

* feat: update Treasury Operations documentation with guide link and contributor details

- Reintroduced the "Guide: Large Cryptocurrency Transfers" link in the Treasury Operations configuration for better resource accessibility.
- Added a new contributor role for review in the transaction verification documentation to enhance attribution.
- Updated fetched-tags.json to include relevant tags for the custodial inventory and transaction verification sections.

* feat: enhance Treasury Operations documentation with detailed controls for account classifications

- Updated the impact and operational classification table to include comprehensive controls for each account type, emphasizing security measures and specific requirements.
- Added detailed descriptions for low, medium, and high-risk accounts, including transaction limits, monitoring, and approval processes.
- Revised device security and access protocols to strengthen custody access and ensure compliance with best practices.

* feat: update Treasury Operations configuration and documentation

- Modified the link for "Custodial Inventory & Controls" to point to the new classification page.
- Added new entries for "Registration Documents" and "Enhanced Controls for High-Risk Accounts" in the Treasury Operations configuration.
- Deleted the outdated "Custodial Treasury Security: Inventory & Controls Framework" documentation to streamline resources and improve clarity.

* feat: enhance Treasury Operations documentation with custody/MPC policy thresholds and engine rules

- Added a new section detailing custody/MPC policy thresholds, including approver requirements and suggested thresholds for various treasury operations.
- Introduced core rule elements for custody policy engines, outlining transaction rules and actions.
- Expanded on the definitions of policy scope to clarify operational contexts and approval processes.

* feat: update fetched-tags.json for Treasury Operations classifications

- Modified existing classification paths and added new entries for "Classification" and "Enhanced Controls" under Treasury Operations.
- Improved categorization of tags to better reflect operational roles and risk management strategies.

* Update docs/pages/treasury-operations/enhanced-controls.mdx

Co-authored-by: Elliot <34463580+ElliotFriedman@users.noreply.github.com>

* Update docs/pages/treasury-operations/transaction-verification.mdx

Co-authored-by: Elliot <34463580+ElliotFriedman@users.noreply.github.com>

* Update contributors and enhance documentation attribution

- Added Elliot Friedman as a contributor in contributors.json.
- Updated contributor lists in transaction verification, enhanced controls, and classification documentation to include Elliot Friedman for improved attribution.

* Update contributors.json to standardize job titles and descriptions

- Changed job titles and descriptions for contributors to singular form for consistency.
- Added missing details for Elliot Friedman, including website and company information.

* added overview.mdx

* feat: add Overview section to Treasury Operations configuration and tags

- Introduced a new "Overview" entry in the Treasury Operations configuration with a corresponding link.
- Updated fetched-tags.json to include classification for the new Overview section, enhancing categorization for Treasury Ops documentation.

* fix merge

---------

Co-authored-by: Elliot <34463580+ElliotFriedman@users.noreply.github.com>
* Add Multisig for Protocols section to vocs.config.ts

- Introduced a new section for Multisig, including links to Overview, Signing & Verification, Private Key & Seed Phrase Management, and Tools & Resources.
- Enhanced navigation structure to improve user access to multisig-related content.

* Enhance Multisig for Protocols section in vocs.config.ts

- Updated navigation links to reflect new structure for the Multisig section.
- Added detailed subsections including General Rules, Multisig Administration, and For Signers with specific links for better user guidance.
- Improved overall organization to facilitate easier access to multisig-related content.

* Update Multisig for Protocols documentation and navigation links

- Enhanced the Multisig for Protocols section by adding detailed subsections and improving navigation links for better user experience.
- Updated links in various documents to ensure consistency and accessibility, including links to related topics such as Emergency Procedures, General Rules, and Hardware Wallet Setup.
- Added frontmatter tags and contributor information to relevant documents for better categorization and attribution.

* Update links in Multisig for Protocols documentation for consistency

- Corrected links in offboarding, ongoing management, planning and classification, and setup and configuration documents to ensure they point to the correct sections.
- Enhanced clarity and accessibility of documentation by standardizing link formats.

* Fix formatting of "Eternal Safe" references in Multisig documentation

- Updated the formatting of "Safe{Wallet}" to "Safe\{Wallet\}" for consistency across the backup infrastructure and signing when UI is down documentation.
- Ensured uniformity in documentation presentation to enhance clarity.

* Fix formatting issues in Multisig documentation

- Updated the financial exposure thresholds in the planning and classification section to use escape characters for less than and greater than symbols for improved clarity.
- Ensured consistent formatting across the documentation to enhance readability and maintain standards.

* Update image links in Multisig for Protocols documentation

- Replaced local image paths with direct links to hosted images for better accessibility and consistency across the documentation.
- Removed obsolete image files to streamline the asset management.

* Add contributors to contributors.json

- Added new contributor profiles for Isaac Patka, Geoffrey Arone, Louis Marquenet, and Pablo Sabbatella, including their roles, company affiliations, and social media links.
- Enhanced the contributors.json file to reflect the expanded contributor base and improve attribution in documentation.

* Update prohibited practices section in seed phrase security documentation

- Reformatted the list of prohibited practices for better clarity and emphasis.
- Ensured consistent presentation of security guidelines to enhance user understanding.

* Update Multisig documentation to replace 'Training Checklist' with 'Implementation Checklist'

- Changed references in the vocs.config.ts, general-rules.mdx, and overview.mdx files to reflect the new 'Implementation Checklist' terminology.
- Deleted the outdated 'training-checklist.mdx' file to streamline documentation and avoid confusion.

* Remove GitHub and Twitter links for contributors in contributors.json

- Updated the profiles of Geoffrey Arone, Louis Marquenet, and Pablo Sabbatella to set their GitHub and Twitter links to null, reflecting a change in their social media presence.
- Ensured the contributors.json file remains accurate and up-to-date for proper attribution in documentation.

* Remove Emergency Contacts section from Multisig for Protocols overview documentation

- Deleted the Emergency Contacts subsection to streamline the content and focus on essential information.
- Ensured the overview remains concise and relevant for users seeking guidance on multisig operations.

* Revise Quick Start section in Multisig for Protocols overview documentation

- Updated the Quick Start section to provide clearer guidance for new users, including direct links to relevant subsections for setup, signing, and emergency procedures.
- Enhanced the structure to improve navigation and accessibility of essential information for multisig operations.

* Update minimum security standards link in Multisig for Protocols overview documentation

- Revised the reference to minimum security standards to include a direct link for better accessibility.
- Ensured clarity in the core principles section to enhance user understanding of security requirements.

* Reorder use case table in planning and classification section of Multisig documentation

- Adjusted the order of entries in the use case table for better logical flow and readability.
- Ensured that the table maintains clarity in presenting impact, operational needs, and standard thresholds for multisig operations.

* Standardize formatting for regular reviews in the planning and classification section of Multisig documentation. Ensured consistent presentation to enhance clarity and readability for users.

* Update link in setup and configuration section of Multisig documentation to direct users to the Registration & Documentation page for improved navigation and clarity.

* Update multisig documentation to streamline the update template section by replacing the detailed template with a direct link to the new template location in the Registration & Documentation page, enhancing user navigation and clarity.

* Remove regular reviews section from the planning and classification documentation in the multisig for protocols guide to streamline content and focus on essential classification guidance.

* Clarify standard threshold for Protocol Parameters in the multisig planning and classification documentation by specifying higher thresholds for upgrades (7/9+), enhancing guidance for users on operational assessments.

* Fix punctuation in timelock configuration documentation for multisig protocols to enhance clarity and readability.

* Refactor multisig documentation to consolidate seed phrase security guidance

- Removed the 'Seed Phrase Security' page and integrated its content into the 'Private Key Management' section for improved clarity and accessibility.
- Updated links across various documentation pages to reflect the new structure, ensuring users are directed to the consolidated guidance on seed phrase and private key management.
- Enhanced the overall organization of multisig protocols documentation to streamline user navigation and understanding.

* Update documentation to replace 'Private Key Management' references with 'Seed Phrase Management'

- Renamed all instances of 'Private Key & Seed Phrase Management' to 'Seed Phrase Management' across various documentation pages for consistency and clarity.
- Removed the 'private-key-management.mdx' file as its content has been integrated into the updated structure, streamlining the documentation for wallet security.
- Updated links in the multisig protocols documentation to direct users to the new seed phrase management guidance.

* Enhance multisig documentation by adding steps for publishing verified signatures

- Included additional steps for users to publish verified signatures on Etherscan, improving the clarity of the verification process.
- Emphasized the importance of entering plain text messages and ensuring the signature includes the 0x prefix for successful verification.

* Update multisig documentation to include additional reviewer for clarity

- Added 'pinalikefruit' as a reviewer alongside 'dickson' in multiple documentation pages to enhance the review process and ensure comprehensive oversight.
- This change applies to various sections including administration, backup infrastructure, communication setup, and more, improving the collaborative aspect of documentation maintenance.

* Refactor multisig documentation to update backup infrastructure references

- Removed the 'Backup Infrastructure' section and replaced it with 'Backup Signing & Infrastructure' across multiple documentation pages for clarity and consistency.
- Deleted the outdated 'backup-infrastructure.mdx' and 'signing-when-ui-is-down.mdx' files, consolidating their content into the new structure.
- Updated links and checklist items to reflect the new terminology, ensuring users have access to the most relevant and accurate information regarding backup procedures.

* Refactor multisig documentation to remove 'Ongoing Management' section

- Deleted the 'Ongoing Management' page and integrated its content into the 'Registration & Documentation' section for improved clarity and organization.
- Updated references across multiple documentation pages to reflect this change, ensuring users have access to consolidated management procedures.
- Enhanced the overall structure of the documentation to streamline user navigation and understanding.

* Update multisig documentation to replace 'Timelock Configuration' references with 'Use Case Specific Requirements → Timelock Configuration'

- Removed direct links to the 'Timelock Configuration' page and updated them to point to the relevant section within 'Use Case Specific Requirements' for better context and navigation.
- Enhanced clarity by adding a dedicated 'Timelock Configuration' section within the 'Use Case Specific Requirements' page, providing detailed guidance on its implementation and considerations.
- Updated multiple documentation pages to reflect these changes, ensuring consistency and improved user experience.

* Refactor multisig documentation to streamline overview section

- Removed duplicate 'Registration & Documentation' entry for clarity and conciseness.
- Deleted the 'Backup Signing & Infrastructure' link to simplify the overview and focus on essential topics.
- Updated the structure of the overview section to enhance user navigation and understanding of multisig protocols.

* Update multisig documentation for improved clarity and navigation

- Removed empty 'Overview' entries in the table of contents for 'Multisig Administration' and 'For Signers' sections to enhance readability.
- Updated links in various sections to provide clearer references, such as changing 'Section 2.3' to 'Signer Rotation' and 'Section 2.1' to 'Thresholds & Configuration'.
- Streamlined documentation by ensuring consistent terminology and improving user guidance throughout the multisig protocols.

* Refactor multisig documentation to remove outdated sections and improve navigation

- Deleted the 'Overview' entries from the 'Multisig Administration' and 'For Signers' sections to enhance clarity and streamline the table of contents.
- Removed the 'administration.mdx' and 'for-signers.mdx' files, consolidating their content into more relevant sections for better user guidance.
- Updated the fetched tags to reflect the removal of these sections, ensuring accurate tagging across the documentation.

* Update multisig documentation to include additional contributor and improve clarity

- Added 'dickson' as a contributor to multiple documentation pages to enhance collaborative oversight.
- Updated various sections to reflect this change, ensuring comprehensive contributor representation.
- Made minor adjustments to improve clarity in the text, such as changing "this guide" to "this page" for consistency across documentation.

* Update multisig documentation to standardize terminology and improve clarity

- Replaced instances of "ex." with "eg." for consistency in examples across multiple documentation pages.
- Made minor adjustments to enhance clarity in the text, ensuring a more uniform presentation of information related to multisig protocols.

* Enhance multisig documentation with additional resources and security guidance

- Added a note regarding the maintenance status of local/alternative UIs, emphasizing their use as emergency options.
- Included links to the Safe Android app and its availability on major app stores for user convenience.
- Expanded the section on network explorers by providing a broader list of options for transaction exploration, improving user access to resources.
- Introduced a new guideline recommending the use of a separate browser or profile for signing to enhance security during transaction verification.

* Update multisig documentation to enhance verification processes and remove outdated references

- Introduced new sections for 'Safe Multisig: Step-by-Step Verification' and 'Squads Multisig: Step-by-Step Verification' to provide detailed guidance on transaction verification.
- Updated links throughout the documentation to replace references to the deleted 'Transaction Verification & Signing' page, ensuring users have access to current verification resources.
- Enhanced clarity by adding key definitions related to EVM transaction verification and emphasizing best practices for multisig signing processes.
- Removed outdated content and streamlined references to improve navigation and user experience across the documentation.

* Refactor multisig documentation to remove outdated 'General Rules' references and enhance security guidance

- Deleted the 'General Rules' page and replaced references throughout the documentation with links to 'Secure Multisig Best Practices' for improved clarity and consistency.
- Updated various sections to ensure all links point to the new best practices resource, enhancing user access to current security guidelines.
- Streamlined documentation by removing redundant content and ensuring all references align with the latest security protocols.

* Enhance multisig documentation with updated access options and improved formatting

- Reformatted import statements for consistency and readability.
- Added access options for 'Eternal Safe' and 'Squads Public Client' with GitHub links for user convenience.
- Improved clarity by adjusting formatting in various sections, including the use of italics for emphasis.
- Updated fetched tags to include relevant categories for new documentation sections, ensuring accurate tagging and improved resource organization.

* Update multisig documentation to include development flags for enhanced clarity

- Added 'dev: true' flags to various sections and items in the multisig documentation to indicate development status.
- Updated links for 'Safe Multisig' and 'Squads Multisig' verification processes to reflect their development status.
- Enhanced the 'Multisig for Protocols' section by marking all items as development-related, improving clarity for users regarding the current state of the documentation.

* Enhance multisig documentation with comprehensive signing guidelines and verification processes

- Added detailed signing guidelines emphasizing the use of hardware wallets, secure environments, and communication protocols among signers.
- Expanded sections on transaction verification for both SOL and USDS transfers, including step-by-step instructions and example interpretations of instruction data.
- Improved clarity by restructuring content and adding links to relevant transaction simulation tools and resources.
- Updated the signing process documentation to reinforce best practices and ensure signers are well-informed before executing transactions.

* Refine travel security guidelines in multisig documentation

- Updated the travel considerations section to improve clarity by removing emoji indicators and presenting the information in a straightforward list format.
- Enhanced the organization of what to bring and what not to bring, ensuring users have clear and concise travel security recommendations.

* Enhance multisig documentation with improved image formatting and descriptions

- Centered the image for the Eternal Safe network selection and added a descriptive caption to enhance user understanding.
- Improved visual presentation of the setup instructions for better clarity and engagement.

* remove wallet-security stuff back to develop

* Adding back multisig content in wallet security

* Update seed phrase management documentation with a direct link to EthCC swag for seed splitting guidance

* Update hardware wallet terminology in multisig verification documentation

* Add link to Classification Matrix for threshold selection in multisig best practices

* Remove unnecessary line break in seed phrase management documentation

* Update wallet security documentation to include new sections on Safe Multisig verification and Seed Phrase Management, while removing the Private Key Management link.

* Refactor wallet security documentation by consolidating recommended tools for multisig verification, replacing detailed tool descriptions with a link to the Tools & Resources page.

* Add Lido Safe TX Hashes Calculation tool to wallet security resources

* Update hardware wallet setup references and consolidate documentation for multisig protocols

* Update wallet security documentation to replace hardware wallet setup link with intermediates & medium funds section, enhancing resource organization.

* Remove recommended devices section from intermediates & medium funds documentation to streamline content and focus on initial setup guidelines.
The doc was pointing to the old Safe{Wallet} application & not to Safe{Mobile}.
…ication details (#304)

- Introduced a new certification for DevOps & Infrastructure in vocs.config.ts and overview.mdx.
- Updated descriptions for existing certifications in overview.mdx for clarity.
- Added new controls related to incident response and workspace security in their respective markdown files.
- Enhanced security measures with additional controls for device supply chain and insider threat management in workspace security documentation.
* fix: update Node.js requirement to v22+ for vocs compatibility

vocs >=1.2.0 requires Node.js 22+ due to usage of globSync from node:fs.
Updated devcontainer Dockerfile and CONTRIBUTING.md accordingly.

See: https://github.com/wevm/vocs/blob/main/package.json

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>

* shorten comments

* fix: update Node.js version in contributing.mdx

---------

Co-authored-by: Claude Opus 4.5 <noreply@anthropic.com>
* restructuring opsec domain

* finalise the opsec revamp

* Updating tags!

* Removing build errors by vite on deadlinks

* fix import paths + deadlinks

---------

Co-authored-by: Matías Aereal Aeón <388605+mattaereal@users.noreply.github.com>
Co-authored-by: Sara Russo <sararusso984@gmail.com>
* add tags color generator

* adding missing tags, colors and styling for tags + fix broken link

---------

Co-authored-by: Matías Aereal Aeón <388605+mattaereal@users.noreply.github.com>
* Update contributor roles and descriptions in contributors.json

- Changed roles for Dickson Wu and Isaac Patka from "contributor" to "steward".
- Enhanced descriptions to reflect their stewardship responsibilities, providing clearer attribution in documentation.

* Update contributor description for Safe Harbor in contributors.json

- Revised the description for the Safe Harbor contributor to clarify their role as "Steward of Safe Harbor & Steward of SEAL Certs," enhancing the accuracy of contributor attributions.
making the page with proper heading + table of content (#311)

making the deadlinks error just a warning (#312)

Revert "Add DevOps & Infrastructure certification and enhance existing certif…" (#317)

This reverts commit 1148af5.

Fix node version requirement for local testing (#318)

* fix: update Node.js requirement to v22+ for vocs compatibility

vocs >=1.2.0 requires Node.js 22+ due to usage of globSync from node:fs.
Updated devcontainer Dockerfile and CONTRIBUTING.md accordingly.

See: https://github.com/wevm/vocs/blob/main/package.json

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>

* shorten comments

* fix: update Node.js version in contributing.mdx

---------

Co-authored-by: Claude Opus 4.5 <noreply@anthropic.com>

Restructuring opsec domain (#299)

* restructuring opsec domain

* finalise the opsec revamp

* Updating tags!

* Removing build errors by vite on deadlinks

* fix import paths + deadlinks

---------

Co-authored-by: Matías Aereal Aeón <388605+mattaereal@users.noreply.github.com>
Co-authored-by: Sara Russo <sararusso984@gmail.com>

Restore automated tag colors and fix broken link (#310)

* add tags color generator

* adding missing tags, colors and styling for tags + fix broken link

---------

Co-authored-by: Matías Aereal Aeón <388605+mattaereal@users.noreply.github.com>

Add Isaac and Dickson as stewards (#316)

* Update contributor roles and descriptions in contributors.json

- Changed roles for Dickson Wu and Isaac Patka from "contributor" to "steward".
- Enhanced descriptions to reflect their stewardship responsibilities, providing clearer attribution in documentation.

* Update contributor description for Safe Harbor in contributors.json

- Revised the description for the Safe Harbor contributor to clarify their role as "Steward of Safe Harbor & Steward of SEAL Certs," enhancing the accuracy of contributor attributions.

clarify CAA use further

minor content structure

further work after discussion with maintainer

making the page with proper heading + table of content (#311)

making the deadlinks error just a warning (#312)

Revert "Add DevOps & Infrastructure certification and enhance existing certif…" (#317)

This reverts commit 1148af5.

Fix node version requirement for local testing (#318)

* fix: update Node.js requirement to v22+ for vocs compatibility

vocs >=1.2.0 requires Node.js 22+ due to usage of globSync from node:fs.
Updated devcontainer Dockerfile and CONTRIBUTING.md accordingly.

See: https://github.com/wevm/vocs/blob/main/package.json

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>

* shorten comments

* fix: update Node.js version in contributing.mdx

---------

Co-authored-by: Claude Opus 4.5 <noreply@anthropic.com>

Restore automated tag colors and fix broken link (#310)

* add tags color generator

* adding missing tags, colors and styling for tags + fix broken link

---------

Co-authored-by: Matías Aereal Aeón <388605+mattaereal@users.noreply.github.com>

Add Isaac and Dickson as stewards (#316)

* Update contributor roles and descriptions in contributors.json

- Changed roles for Dickson Wu and Isaac Patka from "contributor" to "steward".
- Enhanced descriptions to reflect their stewardship responsibilities, providing clearer attribution in documentation.

* Update contributor description for Safe Harbor in contributors.json

- Revised the description for the Safe Harbor contributor to clarify their role as "Steward of Safe Harbor & Steward of SEAL Certs," enhancing the accuracy of contributor attributions.
* adding CF function to create a branch-aware robot.txt

* making robots.txt on main be aligned with the SEAL's one

* taking out comments from robots.txt on develop
…337)

Bumps the npm_and_yarn group with 1 update in the / directory: [hono](https://github.com/honojs/hono).


Updates `hono` from 4.10.7 to 4.11.4
- [Release notes](https://github.com/honojs/hono/releases)
- [Commits](honojs/hono@v4.10.7...v4.11.4)

---
updated-dependencies:
- dependency-name: hono
  dependency-version: 4.11.4
  dependency-type: indirect
  dependency-group: npm_and_yarn
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
* Add meta descriptions to every page for SEO enhancement

* adding meta description guidance in the contributing.mdx + CONTRIBUTING.md files

* Tweaked some of the descriptions, so that they are all under 160 chars
Added some more detailed guidance and examples on good description writing to CONTRIBUTING.mdx
Disclaimer - Claude wrote, I reviewed.

* - Improved, more detailed titles for pages, staying under 60 char limit to avoid Google truncation
- Added guidance and examples for good title writing to contributing.mdx
- Add orgname suffix to page titles:
- \"| Security Alliance\" for titles ≤41 chars
- \"| SEAL\" for longer titles (keeping total ≤60 chars)

---------

Co-authored-by: smagdali <stefan@whitelabel.org>
* Add independent transaction verification requirement

* Update sfc-multisig-ops.mdx

* Improve formatting of transaction verification description

Reformat description for independent transaction verification requirement for better readability.

* Update sfc-multisig-ops.mdx
* first draft

smtp dane

* further work after discussion with maintainer

---------

Co-authored-by: Matías Aereal Aeón <388605+mattaereal@users.noreply.github.com>
Bumps the npm_and_yarn group with 1 update in the / directory: [react-router](https://github.com/remix-run/react-router/tree/HEAD/packages/react-router).


Updates `react-router` from 7.10.0 to 7.12.0
- [Release notes](https://github.com/remix-run/react-router/releases)
- [Changelog](https://github.com/remix-run/react-router/blob/main/packages/react-router/CHANGELOG.md)
- [Commits](https://github.com/remix-run/react-router/commits/react-router@7.12.0/packages/react-router)

---
updated-dependencies:
- dependency-name: react-router
  dependency-version: 7.12.0
  dependency-type: indirect
  dependency-group: npm_and_yarn
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
* Add overview of all fw + links to go directly to the overview of that fw

* Create component to make the overview of each fws branch-aware + added linking to all the overiew pages

* remove comments from the component
* adding custom 404 + its style file

* renaming css vars
DicksonWu654 and others added 6 commits February 9, 2026 16:36
* Enhance multisig operations documentation with clarity and detail updates

- Revised descriptions for various controls to improve clarity, including accountability, documentation maintenance, and risk assessment.
- Added emphasis on regular reviews, training, and testing of emergency procedures.
- Clarified independent transaction verification requirements, ensuring each signer verifies transaction details through separate interfaces before signing.
- Streamlined documentation by removing duplicate entries and enhancing overall organization for better user navigation.

* Refactor multisig operations documentation for clarity and detail

- Revised control descriptions to enhance clarity, including accountability, documentation maintenance, and risk assessment.
- Introduced baselines for multisig registry, classification, and exception approval processes to standardize expectations.
- Streamlined content by removing duplicate entries and improving organization for better user navigation.

* Enhance control card and Excel export functionality with baseline requirements

- Added a new section in the ControlCard component to display baseline requirements if available, improving user visibility of essential criteria.
- Introduced styling for baseline requirements in control.css to enhance presentation and clarity.
- Updated the Excel export functionality to include baseline requirements in the exported data, ensuring comprehensive reporting.
- Adjusted column widths in the Excel export to accommodate new data, enhancing overall usability.

* Enhance certification components with partial state support

- Introduced a new "partial" control state in the CertSection and ControlCard components to improve tracking of partially implemented controls.
- Updated SectionProgress to visually represent the partial state in progress bars, enhancing user feedback on control statuses.
- Modified Excel export functionality to include the partial state in data exports, ensuring comprehensive reporting.
- Added new CSS styles for the partial state to maintain visual consistency across the application.

* Enhance domain management documentation with detailed control descriptions

- Updated control descriptions for domain security, inventory, and compliance to improve clarity and detail.
- Introduced baseline requirements for accountability, risk classification, and registrar security to standardize expectations.
- Streamlined content organization for better user navigation and understanding of domain management practices.
* Enhance multisig operations documentation with clarity and detail updates

- Revised descriptions for various controls to improve clarity, including accountability, documentation maintenance, and risk assessment.
- Added emphasis on regular reviews, training, and testing of emergency procedures.
- Clarified independent transaction verification requirements, ensuring each signer verifies transaction details through separate interfaces before signing.
- Streamlined documentation by removing duplicate entries and enhancing overall organization for better user navigation.

* Refactor multisig operations documentation for clarity and detail

- Revised control descriptions to enhance clarity, including accountability, documentation maintenance, and risk assessment.
- Introduced baselines for multisig registry, classification, and exception approval processes to standardize expectations.
- Streamlined content by removing duplicate entries and improving organization for better user navigation.

* Enhance control card and Excel export functionality with baseline requirements

- Added a new section in the ControlCard component to display baseline requirements if available, improving user visibility of essential criteria.
- Introduced styling for baseline requirements in control.css to enhance presentation and clarity.
- Updated the Excel export functionality to include baseline requirements in the exported data, ensuring comprehensive reporting.
- Adjusted column widths in the Excel export to accommodate new data, enhancing overall usability.

* Enhance certification components with partial state support

- Introduced a new "partial" control state in the CertSection and ControlCard components to improve tracking of partially implemented controls.
- Updated SectionProgress to visually represent the partial state in progress bars, enhancing user feedback on control statuses.
- Modified Excel export functionality to include the partial state in data exports, ensuring comprehensive reporting.
- Added new CSS styles for the partial state to maintain visual consistency across the application.

* Update SFC Treasury Operations documentation for enhanced clarity and detail

- Revised control descriptions to improve clarity, including accountability, custody architecture, risk classification, and transaction security.
- Introduced new baselines for treasury wallet documentation, ensuring comprehensive coverage of wallet configurations and security measures.
- Streamlined content organization to enhance user navigation and understanding of treasury operations and risk management practices.
* Enhance multisig operations documentation with clarity and detail updates

- Revised descriptions for various controls to improve clarity, including accountability, documentation maintenance, and risk assessment.
- Added emphasis on regular reviews, training, and testing of emergency procedures.
- Clarified independent transaction verification requirements, ensuring each signer verifies transaction details through separate interfaces before signing.
- Streamlined documentation by removing duplicate entries and enhancing overall organization for better user navigation.

* Refactor multisig operations documentation for clarity and detail

- Revised control descriptions to enhance clarity, including accountability, documentation maintenance, and risk assessment.
- Introduced baselines for multisig registry, classification, and exception approval processes to standardize expectations.
- Streamlined content by removing duplicate entries and improving organization for better user navigation.

* Enhance control card and Excel export functionality with baseline requirements

- Added a new section in the ControlCard component to display baseline requirements if available, improving user visibility of essential criteria.
- Introduced styling for baseline requirements in control.css to enhance presentation and clarity.
- Updated the Excel export functionality to include baseline requirements in the exported data, ensuring comprehensive reporting.
- Adjusted column widths in the Excel export to accommodate new data, enhancing overall usability.

* Enhance certification components with partial state support

- Introduced a new "partial" control state in the CertSection and ControlCard components to improve tracking of partially implemented controls.
- Updated SectionProgress to visually represent the partial state in progress bars, enhancing user feedback on control statuses.
- Modified Excel export functionality to include the partial state in data exports, ensuring comprehensive reporting.
- Added new CSS styles for the partial state to maintain visual consistency across the application.

* Update workspace security documentation with enhanced control descriptions and baseline requirements

- Revised control descriptions for workspace security policies, accountability, and asset inventory to improve clarity and detail.
- Introduced baseline requirements for each control, ensuring comprehensive coverage of security expectations.
- Added new controls for system and data classification, enhancing the overall security framework.
- Streamlined content organization for better user navigation and understanding of security practices.

* Update sfc-workspace-security.mdx
* Enhance multisig operations documentation with clarity and detail updates

- Revised descriptions for various controls to improve clarity, including accountability, documentation maintenance, and risk assessment.
- Added emphasis on regular reviews, training, and testing of emergency procedures.
- Clarified independent transaction verification requirements, ensuring each signer verifies transaction details through separate interfaces before signing.
- Streamlined documentation by removing duplicate entries and enhancing overall organization for better user navigation.

* Refactor multisig operations documentation for clarity and detail

- Revised control descriptions to enhance clarity, including accountability, documentation maintenance, and risk assessment.
- Introduced baselines for multisig registry, classification, and exception approval processes to standardize expectations.
- Streamlined content by removing duplicate entries and improving organization for better user navigation.

* Enhance control card and Excel export functionality with baseline requirements

- Added a new section in the ControlCard component to display baseline requirements if available, improving user visibility of essential criteria.
- Introduced styling for baseline requirements in control.css to enhance presentation and clarity.
- Updated the Excel export functionality to include baseline requirements in the exported data, ensuring comprehensive reporting.
- Adjusted column widths in the Excel export to accommodate new data, enhancing overall usability.

* Enhance certification components with partial state support

- Introduced a new "partial" control state in the CertSection and ControlCard components to improve tracking of partially implemented controls.
- Updated SectionProgress to visually represent the partial state in progress bars, enhancing user feedback on control statuses.
- Modified Excel export functionality to include the partial state in data exports, ensuring comprehensive reporting.
- Added new CSS styles for the partial state to maintain visual consistency across the application.

* Update SFC DevOps & Infrastructure certification documentation

- Revised the title and added a description to enhance clarity and context for the certification.
- Updated control descriptions to improve specificity, including accountability for security, documented policies, and development environment isolation.
- Enhanced the Source Code Management section by introducing security controls and requirements for repository access, secret scanning, and external contributor reviews.
- Expanded the CI/CD Pipeline Security section with detailed security controls for pipeline management and secrets handling.
- Improved overall organization and clarity of the certification documentation to facilitate better understanding and compliance.
* feat: add printable checklist generator for SFC certifications

- New utils/generate-printable-checklists.js script that reads cert MDX files
  and generates print-optimized HTML checklists
- 3-column CSS layout with smart section chunking (splits at midpoint if >6 controls)
- Runs as postdocs:build hook, outputs to docs/dist/printable/
- Includes print button, org/owner/date fields, and notes area per section

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>

* feat: add Print button to certification pages

- Add Print button to CertList component linking to printable HTML
- Style print button to match existing Import/Export buttons
- Fix output path to docs/public/printable/ for vocs compatibility
- Move generate-printables before vocs build for production support
- Add docs/public/printable/ to gitignore (generated files)

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>

* fix: add input sanitization to printable checklist generator

- Escape title/subtitle for XSS prevention
- Sanitize certName for safe URL/filename use
- Filter invalid control objects
- Coerce text input to String in escapeHtml

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>

* feat: add print stylesheet for main pages

Per reviewer feedback, adds @media print styles so cmd-p on main
pages produces clean output:
- Hides nav, sidebar, banner, footer, action buttons
- Full-width content with print margins
- White background, black text
- Shows URLs after external links
- Prevents awkward page breaks

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>

* Enhance print stylesheet for cert pages

- Hide additional vocs chrome elements (gutterTop, curtains, search)
- Hide cert interactive elements (progress bars, toggles, inputs)
- Force sections to expand when printing
- Clean control card styling with subtle separators
- Prevent page breaks inside control cards
- Reduce padding for better content density

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>

* Addresses PR review feedback from @DicksonWu654 to fix dark mode

* Update utils/generate-printable-checklists.js

Co-authored-by: Dickson Wu <33645481+DicksonWu654@users.noreply.github.com>

* Update utils/generate-printable-checklists.js

Co-authored-by: Dickson Wu <33645481+DicksonWu654@users.noreply.github.com>

* Update docs/styles.css

Co-authored-by: Dickson Wu <33645481+DicksonWu654@users.noreply.github.com>

* Update utils/generate-printable-checklists.js

Co-authored-by: Dickson Wu <33645481+DicksonWu654@users.noreply.github.com>

* Update utils/generate-printable-checklists.js

Co-authored-by: Dickson Wu <33645481+DicksonWu654@users.noreply.github.com>

* Update utils/generate-printable-checklists.js

Co-authored-by: Dickson Wu <33645481+DicksonWu654@users.noreply.github.com>

* Revert "Update docs/styles.css"

This reverts commit af5379f.

* reset: revert styles.css to pre-dark-fix state for clean suggestion application

* Update docs/styles.css

Co-authored-by: Dickson Wu <33645481+DicksonWu654@users.noreply.github.com>

* Update docs/styles.css

Co-authored-by: Dickson Wu <33645481+DicksonWu654@users.noreply.github.com>

* fix: add missing color-scheme root declaration for print

Adds the first and most critical review suggestion that was missed:
force color-scheme: light only !important on :root for print media.

This ensures browsers render print preview in light mode regardless
of user's system theme preference.

Co-authored-by: Dickson Wu <33645481+DicksonWu654@users.noreply.github.com>

* fix: harden printable checklist generator

- Apply sanitizeCertName() to output file path (not just URL)
- Add type validation for control.title from YAML frontmatter
- Move generate-printables from docs:dev to docs:build only

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>

* Remove resolving conflicts leftover by github in styles.css

* Refactor styles for vocs_Outline_nav

Remove padding from vocs_Outline_nav and adjust styles.

---------

Co-authored-by: Claude Opus 4.5 <noreply@anthropic.com>
Co-authored-by: Dickson Wu <33645481+DicksonWu654@users.noreply.github.com>
Co-authored-by: Matías Aereal Aeón <388605+mattaereal@users.noreply.github.com>
@cloudflare-workers-and-pages
Copy link

cloudflare-workers-and-pages bot commented Feb 9, 2026

Deploying frameworks with  Cloudflare Pages  Cloudflare Pages

Latest commit: 7f7c21c
Status: ✅  Deploy successful!
Preview URL: https://60f3d8da.frameworks-573.pages.dev
Branch Preview URL: https://develop.frameworks-573.pages.dev

View logs

@github-actions
Copy link

github-actions bot commented Feb 9, 2026

Hi @mattaereal,

Following typos were found in the pull request:

  • 📄 docs/pages:
 1. docs/pages/certs/sfc-treasury-ops.mdx:207:9 - Unknown word (Unbonding)
 2. docs/pages/opsec/google/overview.mdx:146:76 - Unknown word (Reauthentication)
 3. docs/pages/opsec/google/overview.mdx:146:112 - Unknown word (reauthentication)
 4. docs/pages/opsec/google/overview.mdx:148:12 - Unknown word (Reauthentication)
 5. docs/pages/safe-harbor/on-chain-adoption-guide.mdx:124:89 - Unknown word (CAIP)
 6. docs/pages/safe-harbor/on-chain-adoption-guide.mdx:129:118 - Unknown word (equivilant) fix: (equivalent)
 7. docs/pages/safe-harbor/scope-terms.mdx:51:14 - Unknown word (CAIP)
 8. docs/pages/safe-harbor/scope-terms.mdx:53:9 - Unknown word (CAIP)

ℹ️ Here's how to fix them:

  • Fix typos: Open the relevant files and fix any identified typos.
  • Update wordlist: If a flagged word is actually a project-specific term add it to wordlist.txt in the project root.
    Each word should be listed on a separate line.
  • 🚧 Remember:
    • When adding new words it MUST NOT have any spaces or special characters within or around it.
    • wordlist is NOT case sensitive.
    • If code variables are flagged, wrap them in backticks instead of adding them to the wordlist. This way they are treated as code and won’t bloat the wordlist with project-specific identifiers.

Copy link
Collaborator

@DicksonWu654 DicksonWu654 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

lgtm

@security-alliance security-alliance deleted a comment from github-actions bot Feb 9, 2026
@security-alliance security-alliance deleted a comment from github-actions bot Feb 9, 2026
@vercel
Copy link

vercel bot commented Feb 9, 2026

Deployment failed with the following error:

Creating the Deployment Timed Out.

@scode2277
Copy link
Collaborator

scode2277 commented Feb 10, 2026

Looking at the preview deployment, I've noted some tags had no color both in the pages and in the filter (after guides merge) -> https://3b038d1e.frameworks-573.pages.dev/guides/account_management/github.
I've added it here #370, so let's merge that one before of this @mattaereal

scode2277 and others added 3 commits February 10, 2026 11:23
Renamed:
- tools-&-resources → tools-and-resources
- for-beginners-&-small-balances → for-beginners-and-small-balances
- intermediates-&-medium-funds → intermediates-and-medium-funds

Ampersands in URLs require XML escaping in sitemaps and can cause
issues with some systems. Using 'and' is cleaner and more compatible.

Added 301 redirects from old URLs to preserve any existing links.
* add sitemap generator postbuild

* Update sitemap-generator.js

* fix dir search in the script

* Update vocs.config.ts to match new urls

---------

Co-authored-by: Matías Aereal Aeón <388605+mattaereal@users.noreply.github.com>
@mattaereal mattaereal merged commit c3f7adc into main Feb 10, 2026
3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.