Skip to content

Consume saved review intents through bounded authenticated HTTPS - #844

Open
tdurieux wants to merge 1 commit into
codex/review-service-capabilitiesfrom
codex/review-intent-client
Open

tdurieux wants to merge 1 commit into
codex/review-service-capabilitiesfrom
codex/review-intent-client

Conversation

@tdurieux

Copy link
Copy Markdown
Owner

Add an unwired HTTPS client that consumes a saved review-side artifact intent using a configured service credential and an explicit retry ID. It accepts only a matching, bounded v1 policy response; rejects redirects, cookies, malformed data and expired scope; and limits concurrent requests, response size and elapsed time. Owner authentication, consent, binding exchange and activation remain separate work.

Validation: 712 full-suite tests pass with 50 opt-in/environment-dependent cases pending; TypeScript and targeted lint pass. Twelve targeted cases include real trusted/untrusted TLS, cancellation, credential expiry, slow-stream deadlines and 100 fresh local TLS requests (median 12 ms, p95 15 ms).

This PR is stacked on #843. Neither branch is deployed or activated.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant