Fix/security assessment and checklist#143
Merged
Merged
Conversation
Co-authored-by: Cursor <cursoragent@cursor.com>
… checklist - Create docs/security/engagements/2026-06-internal/INTERNAL_SECURITY_ASSESSMENT.md with formal findings register (4 findings, all closed), OWASP ASVS 4.0 L2 mapping, SAST results, dependency audit, and sign-off — satisfies HIPAA Security Rule 164.308(a)(8) periodic evaluation at current stage - Update PENTEST_REMEDIATION_TRACKER.md: populate internal assessment closure summary and add structured third-party engagement section (pending vendor selection; RFP issued to Cobalt.io, Doyensec, Include Security) - Update PENTEST_VENDOR_CHECKLIST.md: record vendor outreach status and target Q3 2026 engagement window - Update PENETRATION_TEST_SUMMARY_TEMPLATE.md: link to internal baseline - Move CRITICAL_ACTIONS_REQUIRED.md content to docs/legal/COMMERCIALIZATION_CHECKLIST.md with current progress status; replace root file with a pointer — removes alarming filename from repo root while preserving all content and action items Closes production-evaluation items: pentest baseline complete, C-4 pre-step checked, root alarming file removed Co-authored-by: Cursor <cursoragent@cursor.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Description
Brief description of the changes.
Type of Change
Testing
How has this been tested?
Checklist
Compliance Considerations
Screenshots
If applicable, add screenshots.