903 B
903 B
Scoped Gitea Token for Pokerole Project
Status: Ready
Priority: Tier 1 - Security
Time: 15 minutes
Depends: Vaultwarden operational
Last Updated: 2026-02-16
Overview
Create scoped Gitea API token limited to Pokerole repos only. Replace master token with defense-in-depth boundary enforcement.
Problem
Pokerole project currently uses master Gitea token with "honor system" scoping. Iron Wall principle: enforce technically, not socially.
Actions
- Create new Gitea token scoped to 4 Pokerole repos only
- Store in Vaultwarden
- Update
pokerole-project/misc-docs/SESSION-START-PROMPT.md - Test Claudius access (Pokerole repos ONLY)
- Remove master token reference
Success Criteria
- ✅ Scoped token created and stored
- ✅ Claudius isolated from Firefrost infrastructure
- ✅ Defense in depth enforced
Fire + Frost + Foundation 💙🔥❄️