chore: sync public mirror from internal - #803
Conversation
|
You have reached your Codex usage limits for code reviews. You can see your limits in the Codex usage dashboard. |
PR SummaryHigh Risk Overview Web handler tests are updated so workspace-scoped token scenarios explicitly put the hosted workspace on Reviewed by Cursor Bugbot for commit aeac003. Bugbot is set up for automated code reviews on this repo. Configure here. |
There was a problem hiding this comment.
Cursor Bugbot has reviewed your changes using high effort and found 2 potential issues.
Bugbot Autofix prepared fixes for both issues found in the latest run.
- ✅ Fixed: Workspace header precedence mismatch
- Restored Node A2A push handling to prefer
x-evalops-workspace-idoverx-workspace-idand added regression coverage for conflicting headers.
- Restored Node A2A push handling to prefer
- ✅ Fixed: Rust drops payload workspace binding
- Reinstated Rust workspace-scoped token binding against the payload-derived workspace context and added a mismatch regression test.
You can send follow-ups to the cloud agent here.
Reviewed by Cursor Bugbot for commit 569cf4a. Configure here.
6feacbb to
aeac003
Compare

Summary
evalops/maestro-internalevalops/maestroas a generated public mirror of the private source of truthc66741381c81eee913436ece1e31e7d74599e8277bda477e930232512499927a5ce708a26de58df03file(s) to copy/update and0stale file(s) to delete0Source-of-truth status
Public Mirror Drift Audit
@evalops/maestrohttps://github.com/evalops/maestro-internal@main (c66741381c81)https://github.com/evalops/maestro@main (7bda477e9302)30public_projection_has_driftSample Changed Paths
Guidance
Let internal main generate and merge the public sync PR before relying on public main.
Drift sample
Public-only commits since last generated sync
Validation
sync-public-release-mirrorworkflow inpublic-treemodeTest Plan
sync-public-release-mirrorworkflow inpublic-treemoderequire-internal-prcheck confirms internal source PR lineageStaged Rollout
evalops/maestro-internal@c66741381c81eee913436ece1e31e7d74599e827, including existing hidden/evaluation surfaces, and keeps public package parity behind the established public-source-provenance gate.Supersedes
c66741381c81eee913436ece1e31e7d74599e827