SPEC-012: unified signed-member protocol + cbcl-router/cbcl-chat consolidation #9
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "feat/spec-012-signed-member-protocol"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
SPEC-012 — Unified Signed-Member Protocol (cbcl-router)
In-repo implementation of slices 0–4 (spec v0.5.2), adversarially reviewed to convergence. 294 tests green natively (no Docker).
What landed
inject-threadbyte-hack), lease/fencing + redispatch/sweep/cap/heartbeat, no-handler, OBS-002/003.Idempotency-Key→(keyid,content-digest) binding, RFC 9457 Problem Details, rate-limit + headers, producer authorization, OBS-004.untrusted-externalprovenance, payload bounds.Build
Native macOS/arm64 fixed via a
rebar.configenacl override (drop hardcoded-arch x86_64, pkg-config libsodium, downgrade the OTP-28 clang function-pointer error to a warning). Linux/CI entries reproduced verbatim — CI untouched.Review
8 adversarial review rounds (design ×3, slice-1, slice-2 ×2, final integration ×2). Notable blockers found + fixed: the bare-payload replay regression (→ signed envelope), the fence-omission exactly-once hole, the dispatch-time authz revocation gap, the missing lease heartbeat, and the HTTP-ingress producer-authorization gap. A final high-effort code review additionally caught + fixed a heartbeat sender-guard bug and a required-
expiresreplay window. Full ledger indocs/decisions/.Deferred / cross-repo (tracked)
hub_coreextraction,harkcollapse) — cross-repo, gated.demo.shRFC 9421 signing client; confirm the inherited SPEC-001/SPEC-003 CON-006 envelope format.⚠️ Tier-1 auth-core — a human security pass over the diff before merge is advised.
View command line instructions
Checkout
From your project repository, check out a new branch and test the changes.Merge
Merge the changes and update on Forgejo.Warning: The "Autodetect manual merge" setting is not enabled for this repository, you will have to mark this pull request as manually merged afterwards.