Proof Portal

Project overview

Omarchy

ProbeLabsviewing a historical run

A proof layer — requirements, tests and verified fixes — for two of Omarchy's subsystems: the application menu (launcher scripts, QML model, JSONC config, search and selection) and the lock screen (lock scripts, QML, PAM authentication). Scope is deliberately limited to those components of omacom/omarchy; the rest of the distribution is not covered.

Viewing historical run ce925cbSep 24, 2026, 11:06 PMquattroBack to current
All requirements
RequirementSTK-REQ-260912-XJ5DStakeholderReview

The user shall lock the session on demand.

This requirement changed after its last recorded review, so approval is stale. Automated checks pass and 1/1 obligations are satisfied.
PriorityshallTypeguaranteeCategoryfunctionalComponentlockAssuranceCFindingsnone open

Specification

The requirement exactly as authored — its complete prose text and, where present, the formal FRETish sentence it compiles to.

Description

The user shall lock the session on demand. The system shall lock the session before suspend. The session shall unlock only after a successful password or fingerprint authentication.

Rationale & tags

Why this requirement exists, and how it is categorised.

A session left unlocked exposes the user's data. Suspend without a secure lock is the highest-risk case because the machine sleeps unattended.

Verification & provenance

How this requirement was checked: the review trail, edit history, and the machine-analysis status terms (each ⓘ explains what it means).

Assurance levelC
Formalizationnone
Strategyinformal

Review

Status
in_review
Reviewer
Kimi Dogfood · AI agent
Reviewed
Sep 12, 2026, 23:50 UTC

History

Created
Sep 12, 2026, 19:42 UTC · Kimi Dogfood · AI agent
Modified
Sep 23, 2026, 17:08 UTC · Kimi Dogfood · AI agent

Change history

Every recorded revision of this requirement's source file — newest first, each with its commit message and the diff for that change.

Obligations

What this requirement must witness to be considered satisfied — the required evidence, and the tests that discharge each one.

3 obligations · 2 discharged · 1 not yet witnessed

Browse the catalogue

Evidence tagged via <REQ> is witnessed by a requirement that satisfies this one — normal for stakeholder / aggregate requirements, which are proven through the requirements that refine them.

Discharged

Happy-path behavior with valid inputs.

Discharging evidence0/0 required witnessed
  • nominalrecommendedpresent
    Covered by 1 test
Discharged

Behavior when operations fail or dependencies are unavailable.

Discharging evidence1/1 required witnessed
Not yet witnessed

Behavior at limits, thresholds, and edge-of-range values.

Discharging evidence0/0 required witnessed

    Acceptance criteria

    Stakeholder conditions for satisfaction, traced to the derived requirements and evidence that discharge them.

    Stakeholder-authored conditions defining when the requirement is satisfied, traced to derived requirements / evidence.

    Its place

    How this requirement connects — what proves it, what it affects, and what it rests on. Authored links only here; automatically derived links come from the audit index.

    Loading graph…

    Trace evidence

    The concrete artifacts linked to this requirement — implementing code, verifying tests, documents, and the findings raised against it.

    No findings affect this requirement

    Nothing was flagged against this requirement in the pinned run.

    Impact

    Blast radius — authored trace links only (automatically derived links come from the audit index and aren't shown here).

    If you change this

    Requirements
    20
    Files
    0
    Tests
    10
    At-risk contracts
    0

    Tests to re-run (10)

    • sleep-lock-test.shtest/shell.d/sleep-lock-test.sh
    • hyprland-session-locked-test.shtest/shell.d/hyprland-session-locked-test.sh
    • lock-stranded-recovery-test.shtest/shell.d/lock-stranded-recovery-test.sh
    • update-lock-test.shtest/shell.d/update-lock-test.sh
    • apply-lock-test.shtest/shell.d/apply-lock-test.sh
    • system-lock-test.shtest/shell.d/system-lock-test.sh
    • lock-fingerprint-indicator-test.shtest/shell.d/lock-fingerprint-indicator-test.sh
    • lock-missing-pam-test.shtest/shell.d/lock-missing-pam-test.sh
    • lock-blank-fingerprint-test.shtest/shell.d/lock-blank-fingerprint-test.sh
    • lock-password-overflow-test.shtest/shell.d/lock-password-overflow-test.sh

    What this rests on

    Discussions

    Discuss this with the proof team. Nothing changes in your audit automatically — you open a request and a staff member records any outcome inside the thread.

    Sign in to discuss this with the proof team.Sign in