the error register
NIKA-SEC-005
SSRF block — a nika:fetch/nika:notify URL resolves to a loopback/private/link-local/metadata target (always-on engine floor · independent of permits:). A typed refusal, one of 96 the registry names: stable code, spec category, the transient flag the retry machinery reads. The engine stamps this page's address on the finding itself. Route on the code, never on prose. Machines read the catalog.
- security_errorcategorya security policy refused the effect
- stablea retry cannot helpfix the file, not the timing
- 5of 9 in NIKA-SECprev / next walk the registry
- 96registered codesthe normative floor · versioned
hear it from the binary
nika explain NIKA-SEC-005 answers offline with the failure, the fix shape and this page's address: the same text the check finding carries. A code is a contract: never renamed, never repurposed, safe to route on in on_codes and retry policy.
cross-references
the family it sits in
the NIKA-SEC codes
9 codesBreak a file on purpose in the playground and watch the code arrive typed. The boundary teaches the security family. Read the spec →