Commit Graph

21 Commits

Author SHA1 Message Date
Siavash Sameni
940ad0c655 Add full system audit reports and Telegram Mini App debug handoff
- Three-stream audit (security / logic / performance) with 35+ findings
  derived from actual source code, each with file:line and remediation
- Audit Index cross-references criticals across streams into prioritized
  fix tiers: immediately / before soft launch / before public launch
- Telegram Mini App debug handoff documenting what was implemented and
  all remaining work items with exact file lists and test commands
- Updated architecture, data model, auth API, and registration flow docs
  to reflect Telegram auth, TON wallet, and email verification additions

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
2026-05-24 17:20:08 +04:00
Siavash Sameni
2533bedb91 Update Telegram auth verification report 2026-05-24 16:15:40 +04:00
Siavash Sameni
fa7234cbe1 Document Telegram first-class auth 2026-05-24 16:12:46 +04:00
Siavash Sameni
7651d69811 Document telegram-native task 5 foundation 2026-05-24 13:19:54 +04:00
Siavash Sameni
6a451040d9 Complete task 4 backend security architecture docs 2026-05-24 11:31:40 +04:00
Siavash Sameni
4cf5c49274 docs(audit): align documentation with post-remediation backend reality
- Update data model enums to match backend models
- Update API reference auth requirements
- Add dispute module references and warning blocks
- Add 2026-05-24 audit remediation callout to Overview
- Generate task breakdowns and audit artifacts
- Add doc alignment report (.taskmaster/reports/)
2026-05-24 11:16:29 +04:00
Siavash Sameni
b824ca0435 Document payment verification and trezor safekeeping 2026-05-24 11:12:17 +04:00
Siavash Sameni
1a2b9f1f5d docs: refresh taskmaster roadmap share 2026-05-24 09:54:04 +04:00
Siavash Sameni
5188cba9e2 docs: add telegram roadmap and refresh share page 2026-05-24 09:30:35 +04:00
Siavash Sameni
28ff0642b2 added agents.md 2026-05-24 09:22:34 +04:00
Siavash Sameni
4ef9838383 docs: ignore vercel project metadata 2026-05-24 09:13:59 +04:00
Siavash Sameni
b84abb4d75 docs: add vercel taskmaster share site 2026-05-24 09:13:34 +04:00
Siavash Sameni
393bb17c2e docs: add latest audit to taskmaster 2026-05-24 09:09:55 +04:00
Siavash Sameni
a37b1b1446 docs: fix taskmaster file storage config 2026-05-24 09:08:20 +04:00
Siavash Sameni
825add6487 docs: add taskmaster prd task queue 2026-05-24 08:57:38 +04:00
Siavash Sameni
10a6c2fa53 docs: add backend security refactor assessment 2026-05-24 08:43:01 +04:00
Siavash Sameni
fbc13c5128 docs: add payment remediation and request network PRDs 2026-05-24 08:24:02 +04:00
Siavash Sameni
b2acce2ac1 chore: ignore obsidian workspace directory 2026-05-24 08:14:49 +04:00
Siavash Sameni
09ef02c314 fix: repair Mermaid diagram syntax errors and add PRD task plan 2026-05-24 08:07:25 +04:00
Siavash Sameni
5b93b2d23e docs: add comprehensive logical audit report
Adds a full cross-document audit covering:
- Data Models (broken refs, ghost states, missing constraints)
- API Reference (unauthenticated endpoints, field mismatches, missing pagination)
- Architecture (fictitious deps, statelessness claims vs reality)
- Flows (race conditions, missing failure paths, auth bypasses)
- Security (passkey stubs, JWT storage, webhook verification)

32 findings organized by severity with recommended fixes.
2026-05-24 08:03:20 +04:00
moojttaba
0da235ae27 Initial commit: nick docs 2026-05-23 20:35:34 +03:30