Skip to content

Exchange owner consent codes for immutable pending bindings - #848

Open
tdurieux wants to merge 1 commit into
codex/review-consent-uifrom
codex/review-completion-exchange
Open

tdurieux wants to merge 1 commit into
codex/review-consent-uifrom
codex/review-completion-exchange

Conversation

@tdurieux

Copy link
Copy Markdown
Owner

Confirmed artifact consent needs a one-time exchange before review can attach a scoped binding. This adds short-lived recoverable completion codes and atomically records a pending binding, the client request key and an immutable receipt. Exact retries recover the original receipt, including after expiry. Wrong clients, changed requests, spent codes and stale ownership cannot create another binding.

Validation: 22 MongoDB consent/exchange tests pass, including concurrent exchange, transaction rollback, key rotation and legacy-record rejection. The combined consent/HTTP run passed 31 cases with one optional benchmark skipped before two extra database cases were added and passed. The standard suite passes 737 cases with 73 environment-dependent cases pending. TypeScript, lint and the frontend build pass. CI runs the database suite and retains a 100-replay performance report.

Stacks on #847. These methods remain unwired. Bindings are pending and grant no access; service HTTP authentication, browser completion POSTs, callback handling and activation remain unfinished. No live provider or database changes are included.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant