feat(review): add durable authenticated publisher bridge - #475
feat(review): add durable authenticated publisher bridge#475andrei-hasna wants to merge 5 commits into
Conversation
f50d7f3 to
f69adb2
Compare
Agent: Herminia
f69adb2 to
06009ef
Compare
|
[REVIEW] NO_GO — #475 @ f50d7f3 — lens: correctness+security+gates, reviewer unresolved-account001 (1 of 1) Exact candidate read
Setup and declared gates
Blocking P0/P1 findings
Non-blocking follow-ups
Disposition |
Agent: unresolved-account001
|
[REVIEW-FIX] #475 — pushed 2f3c9aa Focused remediation by unresolved-account001:
Verification before push:
The earlier |
Agent: unresolved-account001
Agent: unresolved-account001
|
[REVIEW-FIX] Follow-up c39eb9c closes the direct redirect regression in the publisher transport fix. reqwest 0.12.28 preserves Authorization on a same-host, same-port HTTPS-to-HTTP redirect; the publisher client now disables redirects and an async regression proves the original 3xx is returned after exactly one request. The staged shield scan, staged redacted gitleaks scan, cached diff check, and one-commit pre-push redacted gitleaks scan all exited 0. |
Agent: unresolved-account001
|
[REVIEW-FIX] Required Linux lint job 91425475329 exposed a Bazel/Cargo parity failure after the argument comments were fixed: the app-server target aborted with 12 unresolved-reqwest errors even though Cargo declares reqwest. Commit 03c2cd3 adds the existing @crates reqwest target to the app-server Bazel macro. This is the second and final remediation cycle. Staged shield, staged redacted gitleaks, cached diff, and the one-commit pre-push redacted gitleaks scan all exited 0. |
|
[REVIEW] NO_GO — #475 @ 03c2cd3 — lens: correctness+security+gates, reviewer unresolved-account001 (1 of 1) Focused final disposition after the bounded two remediation cycles. I re-read only the named blockers, their fixes, direct regressions, and the authoritative current-head gates. No third fix cycle is permitted. What I ran and read
Authoritative forge checks read on 03c2cd3
Blocking P0/P1 finding
Earlier P1 findings fixed and focused-verified
Non-blocking follow-ups
Disposition: leave the PR open. Do not merge this current head while this attributed NO_GO remains live. |
|
[DISPOSITION] LEAVE OPEN — bounded-review cap reached; escalate, do not fix. Owner: I was asked to give this a disposition and explicitly not to attempt a third fix. I did not push anything. Recording what is actually open at head Correction to the framing this pass started fromThis PR was described to me as having zero reviews. It does not. Comment 5153823734 (2026-08-01T22:48:45Z) is a properly formatted Owning task Is CI red because of the PR, or was the base already red?Base is the exact commit
Seven of ten are green on the exact base commit. This PR is the cause. Base main is not clean either (4 failures of its own), but that is a separate problem and I did not touch it. The one that nearly produced a wrong answer
Same job name, two independent defects. Merging this would not fix the base's 4, and it adds 3 more. Open findings at head
|
Why
The structured review flow had no durable, authenticated bridge between the exact candidate a reviewer saw and the external check that automation could consume. This adds a fail-closed path whose invariant is an immutable
codewith-review-envelope-v1derived from a clean local Git checkout rather than caller prose, authorship, or comments.Todos task:
6e1204ef-62e7-43d9-acfa-73faa8ad6a5eAcceptance scope:
codewith-review-envelope-v1What changed
Agent:trailer from GitNO_GOVerification
cargo fmt --allgit diff --cached --checkshield review: no security issuesgitleaksscan of the exact commit: no leaksNeed help on this PR? Tag
@codesmith-botwith what you need. Autofix is disabled.