# Changelog

> **This is the PUBLIC form of this artifact. Findings are listed in full, but the details of SECURITY findings — which rule fired, in which file, on which line, and how to fix it — are deliberately withheld, and any secret-scanner results are excluded entirely. Where detail is absent here it was REMOVED FOR PUBLICATION; it is not missing from the analysis. The complete artifact is available from the repository owner.**

## Score

- CAI 42 → 52 (+9.7)

## Lenses

- Code Health 89 → 89 (+0.0)
- Architecture 69 → 69 (+0.0)
- Maturity 60 → 60 (-0.3)
- Readiness 46 → 43 (-2.8)
- Security 26 → 52 (+26.7)
- Performance 68 → 68 (+0.0)

## Resolved (7)

- High: security finding (details withheld)
- High: security finding (details withheld)
- Off-boarding risk: anonymized user #1
- Test reliability not included
- Typo in class name: 'Devired' is used instead of 'Derived'.
- Typo in class name: 'Handleres' is used instead of 'Handlers'.
- Typo in class name: 'Pipline' is used instead of 'Pipeline'.

## New (6)

- Flaky test: Mediator.Net.Test::Mediator.Net.Test.TestCommandHandlers.TestInheritanceCombinedHandler.Mediator.Net.Test.TestCommandHandlers.TestInheritanceCombinedHandler.TestCombinedCommandForChild
- Flaky test: Mediator.Net.Test::Mediator.Net.Test.TestCommandHandlers.TestInheritanceCombinedHandler.Mediator.Net.Test.TestCommandHandlers.TestInheritanceCombinedHandler.TestCombinedCommandForParent
- High: security finding (details withheld)
- High: security finding (details withheld)
- Off-boarding risk: anonymized user #1
- The README is a single file with no architecture or design documentation (no markdown files), so any architectural decisions, container integration details, or middleware ordering guidance are not present in the visible text and cannot be confirmed from this document alone. (README.md)

## API surface

- Unchanged — 2 HTTP endpoints
