• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

nledez / tun-manager / 32471121965
100%

Build:
DEFAULT BRANCH: main
Ran 21 Aug 2026 10:08AM UTC
Jobs 1
Files 42
Run time 1min
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

21 Aug 2026 10:03AM UTC coverage: 99.894% (+1.2%) from 98.682%
32471121965

push

github

nledez
docs: a defence filed as a risk is a defence nobody misses

Four of the eight paragraphs under "Residual risks, accepted knowingly"
were not risks. They described what this program checks -- that it starts
no process but wg-quick, that reading the user's configuration ends, that
nothing out of a file is drawn as it is -- filed under a heading that says
the opposite. Somebody scanning the section learned the wrong thing, and
worse: a defence written down as a risk is one whose removal reads as an
improvement.

They now have their own section, with the reason for having one at all --
so that a defence which disappears is a paragraph that stops being true,
rather than nothing at all. It gains the rule about settings never
quietly stopping: keys that moved are refused by name, a refresh interval
below the floor is raised and doctor says so, a .conf whose name is not a
usable tunnel name is skipped and the log pane names the file.

What is left under residual risks is what an attacker actually gains, and
each entry now says so. The status socket entry gains the part that was
missing: a client can ask for a probe, which makes a root process send
packets -- bounded by naming a tunnel rather than an address, and floored
at one round every two seconds. The pin entry says what replacing it buys
somebody. The demo exemption is stated as an exemption rather than as a
property of the demo.

Two entries the phase-5 note asked for are not here, because the risks are
gone: the refresh interval has a floor and the configuration cannot be
made to hang or to read a file out loud.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>

3767 of 3771 relevant lines covered (99.89%)

36.18 hits per line

Coverage Regressions

Lines Coverage ∆ File
1
99.76
0.03% internal/feed/server.go
Jobs
ID Job ID Ran Files Coverage
1 32471121965.1 21 Aug 2026 10:08AM UTC 42
99.89
GitHub Action Run
Source Files on build 32471121965
  • Tree
  • List 42
  • Changed 30
  • Source Changed 0
  • Coverage Changed 30
Coverage ∆ File Lines Relevant Covered Missed Hits/Line
  • Back to Repo
  • d5aef2c5 on github
  • Prev Build on main (#32252714141)
  • Next Build on main (#32473279806)
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE TRIAL · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc