# Vibe-Coded Product Audit — 18-Check Working Record

Source guide route: /journal/vibe-coded-app-audit-guide

Use this as an audit record, not a scorecard. Mark **Pass / Fail / Partial / Not tested / Blocked / N/A** and attach evidence.

| # | Check | State | Environment | Role | Evidence | Owner | Next action | Retest |
|---:|---|---|---|---|---|---|---|---|
| 01 | Scope and authority |  |  |  |  |  |  |  |
| 02 | Repo, release and environment identity |  |  |  |  |  |  |  |
| 03 | Product map and screen jobs |  |  |  |  |  |  |  |
| 04 | Accounts, auth, roles and permissions |  |  |  |  |  |  |  |
| 05 | Data persistence and migrations |  |  |  |  |  |  |  |
| 06 | Feature state and completeness |  |  |  |  |  |  |  |
| 07 | First run and activation |  |  |  |  |  |  |  |
| 08 | Critical end-to-end journeys |  |  |  |  |  |  |  |
| 09 | States, feedback and recovery |  |  |  |  |  |  |  |
| 10 | Accessibility and responsive context |  |  |  |  |  |  |  |
| 11 | APIs, integrations and contracts |  |  |  |  |  |  |  |
| 12 | Observability, incidents and support |  |  |  |  |  |  |  |
| 13 | Database and query health |  |  |  |  |  |  |  |
| 14 | Network, caching and payloads |  |  |  |  |  |  |  |
| 15 | Runtime, main thread and memory |  |  |  |  |  |  |  |
| 16 | Security, privacy and isolation |  |  |  |  |  |  |  |
| 17 | Commercial assumptions and retention |  |  |  |  |  |  |  |
| 18 | Regression, release and change control |  |  |  |  |  |  |  |

## Finding record

```text
ID:
Check:
Feature / route:
Role:
Environment:
Severity:
Confidence:
Classification:
Expected:
Actual:
Reproduction:
Evidence:
Root cause / hypothesis:
Relevant files/routes/queries:
Minimal repair:
Acceptance test:
Regression test:
Rollback:
Dependencies / approval:
```

## Coverage states

- Verified pass
- Verified fail
- Partial
- Not tested
- Blocked
- Not applicable

## Completion note

Do not translate incomplete coverage into a green verdict. State denominators and remaining risk.
