the error register
NIKA-SEC-008
data-as-code sink · a nika:fetch resolved URL path names a code-bearing class (serialized-executable · script/interpreter · executable binary/module · the closed NEP-0006 list) and the task declares no inert: door · the read hides an execution sink (F-O7 · NEP-0006). A typed refusal, one of 96 the registry names: stable code, spec category, the transient flag the retry machinery reads. The engine stamps this page's address on the finding itself. Route on the code, never on prose. Machines read the catalog.
- security_errorcategorya security policy refused the effect
- stablea retry cannot helpfix the file, not the timing
- 8of 9 in NIKA-SECprev / next walk the registry
- 96registered codesthe normative floor · versioned
hear it from the binary
nika explain NIKA-SEC-008 answers offline with the failure, the fix shape and this page's address: the same text the check finding carries. A code is a contract: never renamed, never repurposed, safe to route on in on_codes and retry policy.
cross-references
the family it sits in
the NIKA-SEC codes
9 codesBreak a file on purpose in the playground and watch the code arrive typed. The boundary teaches the security family. Read the spec →