rdmsm4x-changelog-20260924-0150-eastcoastscience-net-main-page
rdmsm4x-changelog-20260924-0150-eastcoastscience-net-main-page
eastcoastscience.net main page replaced with a status-backed product page (RTTy, HyperCPU, HyperTune on the Mac App Store track; ten products in development), deployed to Cloudflare Pages production; credential-bearing transcript mirrors no longer uploaded.
- When: 2026-09-24 01:17 – 2026-09-24 01:50:42 EDT (rdmsm4x), lane S2 (claude-laneS2@rdmsm4x), lead claude@rdmsm4x/c13f617a, TASK-20260923-03.
- Scope: one repo, rdmsm4x:~/dev/sites/eastcoastscience.net; one Cloudflare Pages production deployment. No other host, repo or setting touched.
- Files: src/data/catalog.json (new), src/templates/home.html (new), src/templates/layout.html, src/assets/css/style.css, scripts/build.js, tests/e2e/tier5_adversarial_hardening.test.js, generated dist/ pages, docs/UPDATE-20260924.md, SESSION-STATE.md. Commits 4bc65cf, c9b1f0a (local main, 2 ahead of fleet/main a50372e, not pushed).
- Deploy: wrangler pages deploy dist --project-name=eastcoastscience-net --branch=main (API token read from ~/.secrets/global.env at runtime, name only). Deployment d4f388c7, 01:44:52 EDT, canonical production, aliases eastcoastscience.net and www.
- Verification: production alias serves the new site.webmanifest (sha256 matches the build; previous deployment served the old one); Access 302 and site 401 gates intact; local wrangler pages dev on 127.0.0.1 served / byte-identical to dist/index.html through the middleware. The Access-gated page itself was not read by the agent (no agent identity for that Access app) — open https://eastcoastscience.net/ to see it.
- Counts: tests 375 -> 384 (runner) and 59 -> 59 (adversarial), 0 failures; dist 2,827 -> 1,678 files.
- Tickets filed: SEC-20260924-01 (Pages middleware trusts an unverified Cf-Access-Jwt-Assertion header on *.pages.dev), ISSUE-20260924-04 (HyperCPU/HyperTune support and privacy URLs unreachable).
- Undo: Cloudflare Pages rollback to deployment dca97e79, or git revert 4bc65cf and redeploy (that re-uploads the transcript folders).
- Owner actions: none required for the page. Support/privacy pages for HyperCPU and HyperTune need a home (eastcoastscience.com per sites/CLAUDE.md; hypercpu.app is unregistered). Deleting old Pages deployments that may hold transcripts is the owner's call.