dotfiles

Security Release Checklist

Use this checklist before cutting any new release (e.g., v0.x.x) to ensure supply-chain integrity.

1. Supply Chain & Installer

2. Secrets & Leak Prevention

3. Platform Safety

4. Toolchain

5. MCP (Model Context Protocol) Hardening

Run dot mcp --strict --json to validate all MCP server configurations and capture an audit artifact.

6. Release Attestation

7. Final Verification