Skip to content

fix(gateway): harden provider redaction boundaries - #741

Merged
dmoliveira merged 2 commits into
mainfrom
fix/redaction-boundary-safety
Sep 6, 2026
Merged

dmoliveira merged 2 commits into
mainfrom
fix/redaction-boundary-safety

Conversation

@dmoliveira

Copy link
Copy Markdown
Owner

Summary

  • Reject detector-matching, blank, or oversized redaction tokens.
  • Charge positive replacement expansion and fail closed on residual detector matches.
  • Keep immutable provider traversal sticky and reject malformed provider roots.
  • Hash bounded audit session IDs without persisting raw values.

Validation Evidence

  • npm test (967 passing)
  • npm run lint
  • make validate
  • pre-commit run --all-files
  • git diff --check
  • Final static security review: no blocker findings.

@dmoliveira
dmoliveira merged commit 00858d2 into main Sep 6, 2026
3 checks passed
@dmoliveira
dmoliveira deleted the fix/redaction-boundary-safety branch September 6, 2026 04:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant