myc

Self-custodial remote signer for Radroots apps
git clone https://radroots.dev/git/myc.git
Log | Files | Refs | README | LICENSE

commit 6661f7ef67d3a97b337a038bf6b80a64b369705f
parent b8071bd9c7da8d1f40c9217aea4e4b92ad67b4b1
Author: triesap <tyson@radroots.org>
Date:   Sat, 22 Aug 2026 06:33:50 +0000

docs: clarify operations deadline clock

Diffstat:
MREADME | 3++-
Mcontracts/services_hardening/tcp_operations.v1.json | 1-
2 files changed, 2 insertions(+), 2 deletions(-)

diff --git a/README b/README @@ -100,7 +100,8 @@ source-locked service-host server. It exposes exactly HTTP/1.1 `GET /livez`, `GET /readyz`, and `GET /metrics`; every other method, path, or query is unrouteable. The two Prometheus families are the cached phase and cached readiness bit with only the closed phase label. Requests perform no SQLite, -filesystem, provider, relay, credential, DNS, clock, or fresh-probe work. +filesystem, provider, relay, credential, DNS, or fresh-probe work; the shared +transport still reads its monotonic deadline clock. Detailed status, configuration, paths, identities, connection/audit data, and all mutations remain on the permissioned Unix-admin surface. The listener is disabled unless the validated configuration explicitly enables and binds it, diff --git a/contracts/services_hardening/tcp_operations.v1.json b/contracts/services_hardening/tcp_operations.v1.json @@ -26,7 +26,6 @@ "relay", "credential", "dns", - "clock", "fresh_probe" ], "local_only": [