-
README.mdhas no private paths, provider keys, or personal gateway URLs. -
README.mdhas an Attribution section crediting external sources. -
LICENSEcopyright holder is specific (not generic "contributors"). -
CODE_OF_CONDUCT.mdexists. -
.github/ISSUE_TEMPLATE/includes bug, feature, and plagiarism report templates. -
.github/PULL_REQUEST_TEMPLATE.mdincludes originality declaration. -
.github/workflows/ci.ymlexists and passes. -
.github/CODEOWNERSis set. -
codex-mcp.example.tomluses placeholders only. -
.envis not tracked. -
node_modules/,dist/, logs, and archives are not tracked. -
npm run buildpasses. -
npm run testpasses. -
npm run eval:contractsandnpm run eval:fixturespass. - A real 10-pair pilot has complete external premium usage/cost JSONL, or release notes explicitly state that no savings/non-inferiority claim is authorized.
- Any “cost-saving without quality loss” claim is backed by a passing
npm run eval:formalresult, not worker-call ratios alone. -
npm run smokepasses. -
npm pack --dry-runcontains only intended files. - CI workflow is added with a token that has GitHub
workflowscope. - GitHub repository description and topics are set.
- First release notes mention current limitations and network credential requirements.
- Any token pasted during setup has been revoked and replaced.
- No code in the release is copied from other projects without attribution.