fix(core): protect canonical evidence runtime types - #63
Open
seonghobae wants to merge 12 commits into
Open
Conversation
|
Warning Review limit reachedNext included review available in 30 minutes. View limit detailsLimit details: You’ve used the included review currently available. You've used all free OSS reviews for now. Wait for the free limit to reset to keep reviewing this public repository. Review configuration: ⚙️ Run configurationConfiguration used: Organization UI Review profile: CHILL Plan: Pro Plus Run ID: 📒 Files selected for processing (6)
✨ Finishing Touches 💡 1🛠️ Fix failing CI checks 💡
📝 Generate docstrings
🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
seonghobae
marked this pull request as ready for review
August 21, 2026 12:08
seonghobae
marked this pull request as draft
August 22, 2026 02:05
seonghobae
marked this pull request as ready for review
August 22, 2026 02:08
Contributor
Author
|
@opencode-agent Please review the current unchanged head against protected |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Verified protected-main integrity defects
Protected
develop@9e3e4847510e1e612b48474ba42b177b8ed824dfallowed caller-controlled runtime subclasses to reach canonical immutable evidence serialization in high-value HRIS-kernel boundaries: Job Analysis identity/temporal/governance evidence andAuditOutboxEventidentity/chronology evidence. The branch repairs those Orgmetra-owned boundaries only; no dedicated-writer dependency repository is modified.RED → root-cause repairs
e10bd567e8cef1bc70e8e1f019c88c03170d1a41→ GREEN42973968c1e72edf93c6623d8199c17087b17961: exact built-indatetime/daterequired before canonical temporal rendering.e6fe8997e8ac73261f767cc5da70573e57602e3b→ GREEN3058ff9cd67354209cee820547aa37a278e73cdf: exact built-inUUID/datetimerequired before CloudEvent serialization/digest.36fe98150b3a71beb6e6b33c56f6c43376e6c973→ GREEN4a541a5093528116c0b25382a552c7f9138dd1d3: shared UUID validator now fails closed on subclasses across snapshot, Task, KSAO, FJA and Task–KSAO identity evidence.943c2dce2601edfa8b360e9de746bb73659a00af→ repair05d04db7b8420f6efe4a2d488044bea31200ceed: hostilestrsubclasses could forge allow-list membership while canonical JSON retained a differentstatus_code/origin_code, and hostileintsubclasses could forge ordinal/FJA bound comparisons while serializing an out-of-range number. Governance codes now require exact built-instr; ordinal and FJA numeric evidence requires exact built-inintbefore membership/comparison/serialization._ForgedLeveltest helper.7ae6331b68eb9af3faa6bace8b9ef11d037badc4adds the matching__lt__/__gt__behavior; only that addressed thread was resolved.Exact-current-head evidence
Current exact head:
9a1bbd3a12ba3e70a4e19eba8962263ce3146d52.Fresh live base:
develop@9e3e4847510e1e612b48474ba42b177b8ed824df.GitHub reports the PR open, non-draft and mergeable. Mergeability is not merge authorization.
Fresh exact-head evidence remains non-passing because required central
opencode-reviewandstrixchecks are terminal FAILURE. Other successful local/security/coverage checks do not override those required central failures, and predecessor/status/model-only evidence does not transfer.Current exact-head review state has 0 unresolved threads and no qualifying independent APPROVED review.
This section supersedes older wording that said current-head required evidence was terminal GREEN. That statement was stale and directly contradicted the live current-head check set.
Merge governance
This PR is not merge-ready. Keep it unmerged until the unchanged exact head has terminal GREEN evidence for every applicable local and required central gate plus qualifying independent non-author approval under the stricter Orgmetra commercial acceptance policy. Immediately before any merge, refetch exact head/base, formal reviews, unresolved threads, effective rules and the complete exact-head check set, then use expected-head protection.
Do not self-approve, bypass protection, weaken or relabel a failing central gate, or reuse predecessor evidence.