28f2ea86e2
Fixes the two live E2E blockers @ctaylor86 found on PR #77189 (macOS 26.3.1, OpenSSL 3.6.3): - retry the PKCS#12 export with -legacy when security import rejects the OpenSSL 3 default format ('MAC verification failed during PKCS12 import') - trust the self-signed root for the codeSign policy (security add-trusted-cert -r trustRoot -p codeSign) — an imported-but-untrusted cert is invisible to find-identity -v and unusable by codesign - gate success on find-identity -v -p codesigning (postcondition), and use the same -v probe for idempotency so an untrusted leftover cert is repaired instead of reported as done Tests rewritten as stateful fakes (valid only after import+trust), plus new coverage for the -legacy retry, trust failure, postcondition gate, and the untrusted-cert repair path; sabotage-verified (reverting to the name-in-output probe fails 4 tests). Docs: manual fallback now includes the Trust step.
Website
This website is built using Docusaurus, a modern static website generator.
Installation
yarn
Local Development
yarn start
This command starts a local development server and opens up a browser window. Most changes are reflected live without having to restart the server.
Build
yarn build
This command generates static content into the build directory and can be served using any static contents hosting service.
Deployment
Using SSH:
USE_SSH=true yarn deploy
Not using SSH:
GIT_USER=<Your GitHub username> yarn deploy
If you are using GitHub pages for hosting, this command is a convenient way to build the website and push to the gh-pages branch.
Diagram Linting
CI runs ascii-guard to lint docs for ASCII box diagrams. Use Mermaid (````mermaid`) or plain lists/tables instead of ASCII boxes to avoid CI failures.