## RED H1: LayerPVE added to the auto-approved Layers
--- FAIL: TestPVE_NeverAutoApproved (0.04s)
    pve_test.go:36: a Proxmox set was auto-approved: &{ID:os-pve-20261006-140000 Layer:pve Fingerprint:22251aeab002291b ApprovedAt:2026-10-06 14:00:00 +0000 UTC ApprovedBy:auto PackagesJSON:[{"name":"pve-manager","version":"9.2.21","origin":"Proxmox"},{"name":"qemu-server","version":"9.0.9","origin":"Proxmox"}] Test:false CancelledAt: CancelReason:}
FAIL

## RED H2: the pve candidate keeps kernel names
--- FAIL: TestPVE_ApproveNeedsTwoHealthyNightsOnEveryRing0Box (0.04s)
    pve_test.go:61: release &{ID:os-pve-20261005-120000 Layer:pve Fingerprint:f3d69aa6894cd1d9 ApprovedAt:2026-10-05 12:00:00 +0000 UTC ApprovedBy:operator PackagesJSON:[{"name":"proxmox-kernel-helper","version":"9.0.6","origin":"Proxmox"},{"name":"pve-manager","version":"9.2.21","origin":"Proxmox"},{"name":"qemu-server","version":"9.0.9","origin":"Proxmox"}] Test:false CancelledAt: CancelReason:}
FAIL

## RED H3: the pve button without the Waiting condition
--- FAIL: TestSystemPage_PVEButtonOnlyWhenReady (0.06s)
    system_test.go:209: button shown after ONE night
FAIL

## RED H4: a pve approval bumps ring-1 boxes
--- FAIL: TestPVE_ApproveNeedsTwoHealthyNightsOnEveryRing0Box (0.04s)
    pve_test.go:64: a Proxmox approval must nudge no box (ring 1 takes it by a signed job): [cust1]
FAIL
