The record can nowstop the wrong code.
Decisions can carry deterministic constraints. Sentry checks those constraints against source changes before they merge.
What shipped
forbid_import,forbid_pattern, andrequire_pattern- pull-request diff enforcement and full-tree certification
- SARIF results for GitHub Code Scanning
- explicit eligible, ineligible, and unclassified coverage
- a standalone, checksum-verified Sentry GitHub Action
Retrieval still tells an agent what was decided. Sentry closes the next gap: it can now prevent machine-checkable violations from passing a green merge gate.