A blocked update now tells you why

Until now, an update that would break your portal was invisible until it broke it. The admin tab said "update available", the platform tried to take it, and the only evidence that something was wrong lived in the logs of a pod that never came up — the hardest possible place to look.

The verification gate is now wired end to end. One command takes the exact set of modules your portal runs — rebuilt at the versions you actually have — and compiles, renders, and tests every one of them inside the candidate image, before that image is ever offered to your instance. The outcome is one of exactly three honest answers:

The verdict is recorded on the platform's update policy, next to the version it is about. The admin Updates tab shows it where the decision is made: a verified build reads as verified, and a breaking one reads "cannot update to this version — these modules do not compile or test against it", with the module list right there. In English and German, like the rest of the portal.

Every verdict also names precisely what it checked: each module's resolved commit and a fingerprint of its content, plus the digest of the image it ran against — so "verified" always means this set against that build, not a rough approximation of either.

Reconnecting…
The server was updated. Reloading the page to pick up the latest version.