Second target consumer named: MS AI Security plugin, an ingestion pipeline over Microsoft Learn content that includes user-generated Q&A (learn.microsoft.com/answers, plus ingested MSDN/Stack Overflow). This is the high-untrust case where the contract is load-bearing, not hygiene. New design principle 4.7: disposition scales with source trust (pinned changelog = WARN; open UGC = quarantine/hard-fail on high severity). Day-1 rationale: architectural controls are cheap to design in, expensive to retrofit (consumer 1 is proving that at its A13). Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01HPAmFyEVWbwvmSNVdXTu4d |
||
|---|---|---|
| .. | ||
| BRIEF.md | ||