Skip to content

docs: handoff brief for the remaining payment-audit work - #72

Open
keithfawcett wants to merge 2 commits into
mainfrom
docs/audit-handoff
Open

docs: handoff brief for the remaining payment-audit work#72
keithfawcett wants to merge 2 commits into
mainfrom
docs/audit-handoff

Conversation

@keithfawcett

Copy link
Copy Markdown
Contributor

A self-contained handoff (docs/audit-remaining-work.md) so a fresh agent can pick up the three deferred items from the payment/subscription audit without re-deriving context:

Plus the ground truth a new agent needs: prod facts (app-role/RLS live, manual payout rail, funding flag off), commands, branch conventions, the 12 shipped audit PRs, and the two post-merge actions (#62 migrate, #63 job-run + backlog check).

Everything the audit surfaced beyond these three has shipped as PRs #60#71 (all reviewed; the second batch's Codex findings were fixed on their branches).

🤖 Generated with Claude Code

keithfawcett and others added 2 commits August 8, 2026 16:56
Self-contained brief for a fresh agent to pick up the three deferred items:
the direct-Connect transfer double-pay (durable-intent restructure, with the
funding executor as the reference and the deterministic-key shortcut warning),
the rest of the funding-pipeline races, and export portability. Includes the
ground truth (prod facts, manual-payout context, commands, branch conventions)
and the 12 shipped audit PRs + post-merge actions.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Turns the handoff brief into a status record: what each item was, what
actually shipped, and — the part that is still open — the staging
exercises that have to pass before either money path is trusted.

Item A (#10, PR #73): planner/executor split with a durable payout intent
and a frozen commission set. Item B (#12, PR #75): the three funding
races plus a live-Stripe backstop for missed refund/reversal webhooks.
Item C (#8, PR #74): the three missing tables, per-table primary keys, a
portable SQL dump, and two array round-trip bugs the test found.

No code left on any of the three; the remaining work is the staging
checklists in docs/direct-connect-payouts.md and section H of the funding
staging runbook, plus the two post-merge prod actions for #62 and #63.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant