Incident response
September 7, 2026 ยท View on GitHub
Owners: release owners listed in release/config.toml. Severity: critical
(remote code, signing-key compromise, cookie exfiltration),
high (proxy abuse, store compromise), medium (flaky gate, store lag).
- Pause the affected promotion (website alias or store submission; there is no updater rollout to pause) without rebuilding under the same version.
- Preserve logs, digests, and evidence; revoke test credentials.
- Follow
docs/rollback-runbook.mdfor the affected channel only. - Record actions and missing automation in the incident record for the affected channel.