From the round-2 review of #265.
Where: scripts/fleet/build_site_audit.py utc(), and step 1's revisions.json layout in the update skill.
utc() calls .astimezone(timezone.utc), which reads a naive time as the machine's local zone. On a PDT machine, 2026-09-21T08:37:02 becomes 15:37:02Z, silently. check_cards.pin_time() reads a naive time as UTC. Step 1's layout gives commit_date only as "<ISO>".
Fix: refuse a commit date with no offset. Say in step 1 that it is the committer date with its offset.
From the round-2 review of #265.
Where:
scripts/fleet/build_site_audit.pyutc(), and step 1'srevisions.jsonlayout in the update skill.utc()calls.astimezone(timezone.utc), which reads a naive time as the machine's local zone. On a PDT machine,2026-09-21T08:37:02becomes15:37:02Z, silently.check_cards.pin_time()reads a naive time as UTC. Step 1's layout givescommit_dateonly as"<ISO>".Fix: refuse a commit date with no offset. Say in step 1 that it is the committer date with its offset.