Both matrices are the stated review checklist for this area, so a stale claim
in them is a real defect.
- stream-abuse-matrix: "correction #1", row A8 and follow-up #1 claimed the
async enforcer reads the raw users.max_streams column and is "dormant on a
default install". That was fixed earlier on this branch by resolving
SessionManager.EffectiveLimits (the same group-merged policy synchronous
admission uses); all three now describe the shipped behaviour. Added rows for
the ABS authenticated file route, the ABS public track and the public RSS
feed file route.
- playback-paths matrix: added ABS to the serving/monitoring/kill tables, marked
VERIFY-4 resolved with the served-at-driven transcode grace, recorded
integrated BytesServed and the deliberately distinct server-observed
LastServedAt, and documented the kill-list endpoints, Unrevoke, the tombstone
and the publish-failure fail-safe.
- Restated as explicitly deferred rather than implied: multi-replica
enforcement (VERIFY-3) and the transcode-node ghost-record sweep. Both need
the monitoring write side restructured and deserve their own change.
Part of the stream monitoring & kill-switch epic.