fix(storage): separate query string from path in SigV4 signing#72
Merged
designcode merged 1 commit intomainfrom Mar 11, 2026
Merged
fix(storage): separate query string from path in SigV4 signing#72designcode merged 1 commit intomainfrom
designcode merged 1 commit intomainfrom
Conversation
Greptile SummaryThis PR fixes a SigV4 signing bug where query-string parameters were being concatenated onto the Key changes:
Confidence Score: 4/5
Important Files Changed
Last reviewed commit: a4270ae |
d80452e to
32e3f18
Compare
tahakhan
approved these changes
Mar 11, 2026
|
🎉 This PR is included in version 2.15.5 🎉 The release is available on: Your semantic-release bot 📦🚀 |
|
🎉 This PR is included in version 1.4.0 🎉 The release is available on: Your semantic-release bot 📦🚀 |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Note
Medium Risk
Touches SigV4 signing used for credential-based authentication; mistakes could break request auth for any endpoints that use query params. Scope is small and covered by updated integration expectations around rename behavior.
Overview
Fixes AWS SigV4 signing in
shared/http-client.tsby signingurl.pathnameas the requestpathand passing query parameters via a dedicatedqueryobject (instead of includingurl.searchin the path), and exportsgenerateSignatureHeadersfor reuse/testing.Updates storage
updateObjectintegration tests to expect renames (and rename+access updates) to succeed, and adds cleanup steps to rename objects back so subsequent tests remain stable.Written by Cursor Bugbot for commit 32e3f18. This will update automatically on new commits. Configure here.