Skip to content

Release default log redaction and explicit plaintext diagnostic gate #25

Description

@philipgreat

Cross-runtime tracking: https://github.com/teaql/teaql-conformance/issues/58. Implementation was tracked centrally; this owning-repository issue retrospectively links that work before release. Default SQL/audit log projections must redact sensitive values before default, custom, buffer and file destinations. Only exact TEAQL_ALLOW_SENSITIVE_PLAINTEXT_LOGS=I_UNDERSTAND_SENSITIVE_DATA_MAY_BE_WRITTEN_TO_DISK enables plaintext diagnostics, with a warning; credentials remain masked. Execution values must remain unchanged. Acceptance: privacy boundary tests and real SQLite CRUD/failure canaries; all local examples; consistent versions and release notes; CI; public artifact resolution verified separately. Java/Rust require signed tags on main. No claim is made for unrelated application or third-party driver logging. Release evidence will be added here.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions