Our decision log · 2 September 2026
Leave two security-advisor warnings unfixed, on purpose
HeldA real decision from building Decize, written down before the outcome.
- The decision
- Accept that anonymous callers can execute two SECURITY DEFINER functions, and document why in the migration instead of revoking the grant.
- Why, at the time
- Revoking it breaks anonymous reads across nine tables that rely on those functions inside their own row-level security policies. The advisor flags the shape, not the consequence.
- What happened
- The grant stayed, the reads kept working, and the reasoning now sits in the migration where the next person to see the warning will find it.
- Lesson
- An advisory warning is an input to a decision, not a decision.
Every entry in this ledger is real and was checked against the commit or migration that carries it. Want to keep your own this way? Start with the free decision log template.