spec: shadow-input-assembler - #273
Conversation
Deploying ystack with
|
| Latest commit: |
d5f55b6
|
| Status: | ✅ Deploy successful! |
| Preview URL: | https://3bd7c003.fabrica-6yx.pages.dev |
| Branch Preview URL: | https://ystack-spec-shadow-input-ass.fabrica-6yx.pages.dev |
Codex reviewer (cross-vendor, read-only)Reviewed-head: f08a096 Posted verbatim by The spec's own estimated implementation size conflicts with the declared standard review-size path. This should be corrected before accepting the artifact because it affects the next PR's gate conditions. Review comment:
|
Codex reviewer (cross-vendor, read-only)Reviewed-head: a9bee0e Posted verbatim by The spec has blocking ambiguity and compliance gaps that would guide the next implementation into an over-budget PR, incoherent environment evidence, or undefined non-default profile behavior. These should be resolved before accepting the artifact. Full review comments:
|
…e claim; default profile only)
Codex reviewer (cross-vendor, read-only)Reviewed-head: d868624 Posted verbatim by The change adds only the spec artifact, with the intent hash matching the current intent and no discrete correctness issue found in the documented requirements or design. |
Codex reviewer (cross-vendor, read-only)Reviewed-head: 8a2059b Posted verbatim by The spec would allow misleading non-default profile inputs and excludes supported SHA-256 Git repositories, both conflicting with the stated intent for a real default-profile assembler. Full review comments:
|
…st; derive the hash algorithm)
Codex reviewer (cross-vendor, read-only)Reviewed-head: 7e651ad Posted verbatim by The spec leaves two validation gaps that can produce inputs inconsistent with the claimed provenance or with what the materializer will accept. These should be corrected before the artifact is accepted. Full review comments:
|
Codex reviewer (cross-vendor, read-only)Reviewed-head: fddd7ce Posted verbatim by The spec omits checks needed to keep the assembler from producing driver-rejected inputs and from accepting a resolved profile that disagrees with a pinned default-profile document. These are actionable correctness gaps in the proposed implementation contract. Full review comments:
|
… bind the producer config digest)
Codex reviewer (cross-vendor, read-only)Reviewed-head: bd16743 Posted verbatim by The spec promises source-refusal parity with the materializer but omits materializer checks that still cause downstream refusal for valid bare repositories. That leaves the planned component unable to meet its own stated behavior. Review comment:
|
…e the tree-content boundary)
Codex reviewer (cross-vendor, read-only)Reviewed-head: ab23595 Posted verbatim by The spec would direct the implementation toward a CI-red test in the repository's current shallow checkout and leaves a materializer refusal path outside the assembler despite the stated boundary. Full review comments:
|
…ard; clean-entry re-exec copied from the materializer)
Codex reviewer (cross-vendor, read-only)Reviewed-head: ae0dc27 Posted verbatim by The spec misclassifies a security-control scope as routine and contains shell-entry and cleanup requirements that would leave the planned component bypassable or hard to retry in specific failure modes. Full review comments:
|
…ranch; run_root trap cleanup)
Codex reviewer (cross-vendor, read-only)Reviewed-head: 332ed10 Posted verbatim by The spec has two correctness gaps that can lead the implementation to emit the wrong refusal class or fail its retry guarantee under normal trapped signals. Full review comments:
|
…; trap armed before scratch exists)
Codex reviewer (cross-vendor, read-only)Reviewed-head: e46f4ff Posted verbatim by The spec leaves a retry-breaking partial-output case in the final write path despite adding requirements around cleanup and retryability. This should be fixed before using the spec as the implementation contract. Review comment:
|
… rename after all checks)
Codex reviewer (cross-vendor, read-only)Reviewed-head: 4ef1728 Posted verbatim by The spec contains actionable design issues that would bake incorrect cleanup behavior and misleading error classification into the implementation and tests. Full review comments:
|
Codex reviewer (cross-vendor, read-only)Reviewed-head: d5f55b6 Posted verbatim by The change only adds the shadow input assembler spec, and its hash link, risk classification, pinned profile digests, and described scope are consistent with the surrounding repository rules and referenced files. I did not find a discrete correctness issue that should block this patch. |
|
Merging under operator decision OD-1 (#275): Codex review clean at Reviewed-head |
* plan: shadow-input-assembler High-risk plan for the merged spec (G2, PR #273). Records spec-blob ab212e8 in frontmatter, names the seven files the implementation changes with line estimates and the accepted-exception size range, orders the work tests-first with each step mapped to the spec's requirements, and states the proof commands and expected outputs. Tracks #262 Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com> * plan: shadow-input-assembler (size exception for this artifact PR) * plan: shadow-input-assembler (usage checks before jq; trap spares committed outputs) * plan: shadow-input-assembler (physical source check; refusal-class negatives; zero shellcheck directives) * plan: shadow-input-assembler (propose the widened review-size exception; line-drift note) * plan: shadow-input-assembler (output-cap proof made honest; directive-free bootstrap copy; pass-helper output) * plan: shadow-input-assembler (span 348-360 everywhere; measured claim padding; source dir is E_TARGET) * plan: shadow-input-assembler (round 6: shell-wrapped proof; valid E_LIMIT padding) --------- Co-authored-by: ci <ci@example.com> Co-authored-by: Claude Fable 5.1 <noreply@anthropic.com>
Tracks #262
G2 spec for the merged intent (G1, PR #266), written to the operator's DR-1 decision (option 2: the assembler takes a resolved profile as input and validates it; it resolves nothing). Frontmatter records intent-blob 61218c3c9b3554f4a86c58fd3a7311d9e818f3b6 and risk: high (the assembler now embodies security controls: verbatim source-purity predicates, a clean shell entry, byte pins on the default profile, read-only guards; the intake had proposed routine, the spec supersedes it per REVIEW.md). Merging this PR accepts both. It does not close the intake issue.
This PR adds only
work/shadow-input-assembler/spec.md.