docs: repair scanner contribution guidance - #57
Conversation
|
🦞👀 Pull request received. I will update this pull request when review starts. ClawSweeper review completeClawSweeper finished reviewing this revision. The review result is being finalized. |
|
Codex review: needs real behavior proof before merge. Reviewed September 22, 2026, 5:31 AM ET / 09:31 UTC. ClawSweeper reviewWhat this changesRepairs contribution-guide links and documents how to register, sandbox, and test built-in scanner adapters. Merge readiness⛔ Blocked before merge - 2 items remain The documentation repair remains useful and is absent from the reviewed main branch. No introduced correctness or security defect was found; the related scanner-adoption proposal remains a separate decision. Priority: P3 Review scores
Verification
How this fits togetherClawScan connects security scanners to a common CLI through registered adapters. Contributor documentation explains how adapters preserve scanner evidence, declare dependencies, and use the Docker execution boundary. flowchart LR
A[Scanner contributor] --> B[Contribution guide]
B --> C[Custom profile evaluation]
C --> D[Built-in adoption discussion]
D --> E[Adapter registry and Docker dependencies]
E --> F[Fixture tests and scanner documentation]
Before merge
Agent review detailsSecurityNone. Review metricsNone. Technical reviewBest possible solution: Keep one accurate adapter contribution section linked from the contribution guide, with custom-profile evaluation preceding built-in adoption. Do we have a high-confidence way to reproduce the issue? Not applicable to runtime reproduction: source inspection verifies the missing main-branch heading and obsolete contribution links. Is this the best way to solve the issue? Yes. Updating the existing guide and linking the existing benchmark instructions is a narrow repair that avoids a competing documentation path. AGENTS.md: found and applied where relevant. Codex review notes: model internal, reasoning medium; reviewed against ca811e0e73ce. LabelsLabel changes:
Label justifications:
EvidenceWhat I checked:
Likely related people:
Rank-up movesOptional improvements that raise the rating; they are not merge blockers.
Rating scale
Overall follows the weaker of proof and patch quality. Workflow
|
The contribution guide linked to three removed pages and a scanner-adapter heading that did not exist. Remove the redundant links, point ClawHub research to the current benchmark guide, and document the existing adapter registry, evidence, Docker, and fixture-test contracts at the advertised heading.
This repairs the documentation gap noted in #53 without changing the scanner-adoption proposal or its product decision. Independent Codex review is clean through P2. The generated docs site is validated before merge.