--- title: Extend fetchguard into a guarded outbound http.Client (replaces Apparatus RequestSender) date: 2026-09-28 priority: high area: summercms.go/fetchguard --- fetchguard today is a guarded HTTPS GET fetcher. Extend it into a guarded `http.Client` (or a client constructor) that supports POST, PUT, multipart file upload and bearer auth, keeping the dial-time private/reserved IP rejection. - Replaces `Golem15\Apparatus\Classes\RequestSender` (see `.planning/notes/apparatus-dissolved-into-framework.md`). - Consumers: feedback `G15OfficeClient` (JSON POST + multipart), golem `AIService`-style adapters (Anthropic/OpenAI-compatible) and the Discogs client. - Needed before Phase 14 (INTG-01, INTG-02, feedback).