Workaround for wp-graphql#4298: a public query for a non-public post's URI caches a null response with no post:<id> tag in X-GraphQL-Keys, so publishing the post can never invalidate it — the query stays a HIT on stale null until TTL.
Tracks nodes that are resolved but not returned, without touching the security model (responses stay null; only the cache tag is added):
graphql_resolve_uri— when NodeResolver found nothing, re-query with non-public statuses and feed the match through the post loader (its visibility gate still nulls it out).graphql_dataloader_pre_get_model— capture the IDs the loader filters out.