Sample reports
Real audit runs, every finding traceable to a public issue
No fabricated demos. Each report below is a real run of the suite, rendered from the same data filed as public GitHub issues — open any link to verify the evidence yourself. We seed the gallery with this repo's own self-audit; more real runs are added as they ship.
Why these are real, not staged
Evidence-bound
Every finding cites a concrete artifact (file:line, a config value) and links the GitHub issue where it lives.
Adversarially verified
No P0/P1 survives unless independent skeptics fail to refute it — ≥2 of 3, or it is dropped.
Publicly checkable
The scorecard, the not-applicable calls with reasons, and the cross-audit dedup all trace to one master tracker.