Skip to content

Bound managed Jev requests and align the individual usage contract - #253

Merged
Coding-Dev-Tools merged 115 commits into
mainfrom
codex/jev-individual-access-20261004
Oct 8, 2026
Merged

Coding-Dev-Tools merged 115 commits into
mainfrom
codex/jev-individual-access-20261004

Conversation

@Coding-Dev-Tools

@Coding-Dev-Tools Coding-Dev-Tools commented Oct 4, 2026 •

Copy link
Copy Markdown
Owner

Change

Restricts managed Jev to fixed, bounded support, contradiction, command and completion workflows. Custom questions and route planning fail locally before client selection or credential access. Per-call consent, classification, credential-bound origin and an absolute request deadline remain required. Questions count individually; explicit opaque request keys identify a lost-reply retry without an automatic client retry.

The transport bounds HTTP 429 body and chunk-framing reads by the same deadline, preserves only allowlisted allowance/protection reasons, and retains control URL path prefixes. This PR incorporates the merged #252 consent, offline-review and deterministic-planner fixes, and is now based on main. Its current immutable offline evidence and guide/figure consumers point to source commit 522def372c45a26d46bc7a05829964ae0240f3a9. The retained v142 client JSON and measurements are unchanged; its checksum sidecar now resolves the correct adjacent filename.

Verification

  • Current reviewed head: b5ce84a9551387af8e9aa01846e7a2e7e050457f. Exact-head CI, CodeQL, and automated review provide the current acceptance results.
  • The qualified offline runtime passed 8,135 tests with 24 skips and all eight documented offline evaluation gates. Ruff, Pyright, commercial-manifest, CSP, MCP-contract and diff checks passed. The published-source pin reconciliation then passed 131 affected checks.
  • The checksum regression failed before repair and passes afterward. All 49 affected integrity/evidence/documentation checks and a real sha256sum --check passed; the historical digest and CRLF are preserved. No runtime source changed in this final two-file repair.

Release boundary

Managed availability remains not_yet_available pending separate private Cloud identity, admission/idempotency, rolling-limit and capacity acceptance. The documented per-individual limits are 100 questions/hour, 1,000/five hours and 2,000/24 hours. The public offline fixtures establish deterministic client behavior and artifact integrity; private-service qualification and activation remain separate.

Integrate current main, keep managed fixed reviews independent from BYOK-only planning, validate payload bytes before credential lookup, retain opt-in compact previews, and correct selected-report labels and integration docs. Regenerate immutable source-bound evidence and shipped contracts.
Restore canonical v149 integrity, guard Latest promotion after uploads, and bind fresh immutable offline evidence. Preserve external Ask/UI fixes and qualify offline provider and workspace fixtures.
Use the actual connector-created source commit for the benchmark guide and figure links. Fifty affected evidence and documentation checks pass; the runtime tree is unchanged from the qualified offline repair.
… repair

Preserve both public parent histories and external Ask/UI work. Retain consent, purpose, origin and absolute-deadline boundaries; bind fresh immutable source evidence and qualify all offline acceptance gates.
Use the actual published source identity in all eight guide consumers. The qualified offline runtime tree is unchanged; 131 affected evidence and documentation checks pass.
Record the reviewed PR252 squash checkpoint as a second parent. Main has exactly the incorporated cc1f2c0 tree; retain the fully qualified PR253 tree unchanged so the remaining review is scoped to managed transport and its evidence.
@Coding-Dev-Tools
Coding-Dev-Tools changed the base branch from codex/jev-pro-team-pr-20261003-final to main October 8, 2026 03:18
@Coding-Dev-Tools
Coding-Dev-Tools marked this pull request as ready for review October 8, 2026 03:18
@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Oct 8, 2026 •

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review ✅ Completed 2026-10-08T03:26:57.134775Z b5ce84a New commits
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 4351c3128f

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread docs/benchmark-evidence/offline-fixtures-v142-client-9449d94b7e80.json.sha256 Outdated
Correct only the sidecar basename, retaining the original digest, CRLF and historical JSON bytes. The regression preserves the advertised payload identity; 49 affected tests and a real sha256sum check pass.
@Coding-Dev-Tools
Coding-Dev-Tools merged commit 619f498 into main Oct 8, 2026
30 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant