rdmsm4x-changelog-20260827-0455-devsite-nocontext-navigation
dev.dataroo.net shared navigation and #nocontext status
Added one dependency-free navigation shell and a privacy-safe
aggregate _nocontext status surface across the protected
development dashboard, while keeping public authentication and intake
routing unchanged.
Scope
- Primary host:
rdmsm4x. - Supporting publisher host:
rdmbair15m5(the existing minute-by-minute monitor publisher only). - Production service:
dev.dataroo.net, served from/Users/richh/dataroo.net/wiki. _nocontextwas read only. No packet was moved, routed, archived, renamed, copied, accepted, or transferred.
Exact state changed
/Users/richh/dev/scripts/gen_site.py— live generator now renders the canonical menu, the aggregate Context intake panel, safedata/status.jsonfields, and the common post-pass./Users/richh/dev/scripts/dr_export.py— live dependency-free, marker-delimited portable shell injector and aggregate status reader./Users/richh/dev/scripts/publish_site.zsh— reinstalled from the verified source but content remained unchanged at SHA-256a78712ecce25c85e37d88917c22dc45ced29d12525556ff59d2111b3cef14d91./Users/richh/dataroo.net/wiki— 20 generated pages rebuilt and 18 independently authored pages received the portable shell; 38 active pages total./Users/richh/dev/_worktrees/codex-devsite-nocontext-nav-20260827— durable branch source and nine focused tests./Users/richh/.agent-coordination/checkins/codex-rdmsm4x-devsite-nocontext-nav-20260827.json— one-writer ownership and lifecycle record./Users/richh/Library/Mobile Documents/com~apple~CloudDocs/Codex/projects/AGENTS.md principles/PROJECTS.md— Production milestone, privacy boundary, verification evidence, commits, and rollback locations.rdmbair15m5:/Users/richh/.agent-coordination/publish_monitor.zsh— version 1.0.1 runs the canonical rdmsm4x normalizer after each successful monitor upload so its independent publisher cannot erase the shell./Users/richh/dev/LLM/Claude/changelogs/rdmbair15m5-changelog-20260827-0455-devsite-monitor-shell-hook.md— canonical copy of the supporting-host record.
Source and commits
- Branch:
work/devsite-nocontext-nav-20260827. - Worktree:
/Users/richh/dev/_worktrees/codex-devsite-nocontext-nav-20260827. - Commits:
3f1cd63(Add shared navigation and nocontext dashboard status) and689c09c(Preserve site shell after monitor publishes). - Verified live SHA-256:
gen_site.pya6caa26afbf46ba57fbeec26b5d25f6ef77297384d7f15c9cea27a9905882c08;dr_export.py07726f7841de4ead502f38ec3565a4f5a712a3556e5c189792d84fc83f16292c;publish_site.zsha78712ecce25c85e37d88917c22dc45ced29d12525556ff59d2111b3cef14d91. - The live scripts repository was already materially dirty and these runtime files were already untracked. No unrelated file was staged, committed, cleaned, or rewritten.
Commands and verification evidence
- Ran
python3 -m unittest discover -s tests -v: nine of nine focused tests passed. - Ran Python bytecode compilation and
zsh -nfor both publisher scripts: passed. - Generated an isolated staged copy first, then audited all 38 active pages: one nav, one status badge, and one export block per page.
- Proved the site-wide injection is idempotent: second pass reported 18 unchanged and 20 skipped with zero active-page hash deltas.
- Compared the 17 stable hand-authored live pages to the pre-change backup after removing only the nav marker block: zero content deltas. The changing monitor page is covered by its tested post-publish contract and a real subsequent supervisor cycle.
- Live aggregate status:
pending; 14 fragments; 39 pointers; 14 pending; zero receipts; zero acceptances; zero transfers; one source packet; zero parse errors. Published output contains none of the protected root path, packet name, or handoff filename sentinels. - Exact-deliverable Gitleaks scan covered about 923.87 KB and found no
leaks. A broader repository scan found two pre-existing unrelated
findings in
cf_bulk_import.pyand an old fleet deployment log; neither file was touched. - Browser verification passed on desktop and a 390 by 844 mobile
viewport for the generated dashboard and an independently authored
Tyrell page. Badge navigation reached
#nocontext, the live monitor retained the same five links, and browser console errors/warnings were empty. - HTTP checks: local root/Tyrell/monitor returned 200; tailnet root/Tyrell/monitor returned 200; public root/Tyrell/monitor returned 401, preserving the existing authentication boundary.
Backups and undo
- Full rdmsm4x rollback:
/Users/richh/dev/_backups/devsite-nocontext-nav-20260827-044352(92 MB; all 86 pre-change wiki files plus the three source files). The backed-up source hashes match the recorded pre-change hashes. - Supporting-host rollback:
rdmbair15m5:/Users/richh/.agent-coordination/backups/devsite-nav-20260827-0449/publish_monitor.zsh, SHA-256844dd8337dafa5b1e084cc0c3e5f6a1d27e8f32aed7a465dd0da5b8482a2b2e1. - To undo completely, restore the three source files and wiki tree from the rdmsm4x backup, restore the remote publisher from its supporting-host backup, then allow or trigger the existing publishers. No database migration or external account change is involved.
Outstanding owner action
- Choose whether to merge the branch locally, push it for review, or keep the branch/worktree as-is. No Git remote was changed.
- The rdmbair15m5 file changelog was copied to that host from SSH. Its Apple Notes entry remains pending because the approved Notes tool refuses background/SSH sessions; it must be replayed once from an Aqua Terminal session on rdmbair15m5.