security: reconstruct exact HTTP method strings on current integer-policy stack - #184
security: reconstruct exact HTTP method strings on current integer-policy stack#184seonghobae wants to merge 13 commits into
Conversation
|
Important Review skippedDraft detected. Please check the settings in the CodeRabbit UI or the ⚙️ Run configurationConfiguration used: Organization UI Review profile: CHILL Plan: Pro Plus Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
|
Closing this stale Draft as superseded by #196. Predecessor #178 is now merged on protected main as |
Purpose
Reconstruct issue #124 and historical PR #161 as the HTTP-method-string successor to scalar-integer candidate #178. Historical #161 checks/reviews/approvals/base identity and predecessor-head evidence do not transfer.
Fresh stack identity
main:1d2e19049354115776804c66b9366fad2ea5b6c5;security/reconstruct-policy-integer-values-a7fe3a(security: reconstruct scalar integer sealing on current protected main #178);65485ee196699ecb5a8451621d188afdd8731bf6;aca7d0f7b99cdc7f10be711cddc9f686c459088f;365a38820474b4e8a5325b02dbdf3aa1a6f24a37;65485ee...;The predecessor moved after #184's prior validation. Therefore the old #184 exact-head CI is historical evidence only for the old base snapshot; it is not accepted integrated-tree evidence against live #178 head
aca7d0f.... Keep this PR Draft. Do not churn the clean head merely to retrigger review; reconcile only after #178 reaches an accepted stable identity or protected integration makes the reconstruction target unambiguous.TDD / source contract preserved by the unique delta
The existing regression requires policy construction to reject non-exact
strsubclasses before subclass-controlledstrip(),upper(), or comma-separatedsplit()can enter trusted HTTP-method normalization. Runtime method authorization also rejects a hostile string subclass instead of dynamically normalizing it.Historical source-GREEN CI
31517277056passed on9492bc95.... Historical documentation-parity RED onfe107000...proved the then-current stack lacked guide/[Unreleased]parity. The narrow follow-up produced current #184 head365a388..., where historical CI31519709781succeeded. Those runs establish the unique delta's development history only; none transfers across the now-changed live predecessor.The intended contract preserves ordinary exact strings, existing comma-separated operator syntax, uppercase canonicalization, RFC 9110 token validation, default/deny-all sets, unconditional
CONNECTdenial, scalar integer sealing, and the explicit no-Python-sandbox boundary.Required reconciliation / acceptance
ContextualWisdomLab/.github#897or freshly verified successor), then require the actual immutable-pinnedDependency reviewaction to execute and succeed on the accepted security: reconstruct exact HTTP method strings on current integer-policy stack #184 tree; aggregate wrapper green with a skipped action is non-passing.Progresses #124. Historical #161 remains superseded evidence only. No self-approval, Admin merge, bypass, auto-merge, EgressWeave-local dependency-review substitute, or duplicate policy writer.