Commit 13bf05d
* fix(plugin-sharing): hold publicSharing.enabled at redemption, not only at mint
`ShareLinkService.resolveToken()` now reads the object's CURRENT
`publicSharing` block on every redemption and refuses when `enabled` is
not `true` — before the record probe, before the usage stamp, before any
sibling key inside the block is evaluated. Re-enabling the block restores
the same tokens (a standing policy, not a revocation). How a link was
minted buys it nothing at redemption: rows minted under a system context
or the `permissive` bypass on a switched-off object refuse the same way,
and an object with no block at all is the same switch at its default.
The refusal reuses the undifferentiated `null` a revoked / expired /
unknown / ineligible token already gets — no new error code, no new
response branch, no usage stamp (over HTTP the generic 404). The readable
reason goes to the server-side log at `warn`, where the eligibility
refusal already writes its own.
Tests: the standing-policy pins (fake engine and real driver), the
HTTP-seam shape, the log line, the bypass-minted path, and the reversal
register for the #13856 pins that asserted serving on a disabled block.
Changeset marked as a breaking runtime change in PR #13857's form.
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01AUF1NoViznQK32gqpK8wS8
* docs(permissions): re-anchor system-context row 37 after the share-link hunk shifted it
`check:system-context-census --fix` — pure line rot: the `permissive`
option's TSDoc grew five lines above the five `isSystem` read sites row 37
anchors in `share-link-service.ts`, so every anchor moved by exactly +5.
No site arrived or vanished (109 read sites, 145 anchors, unchanged).
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01AUF1NoViznQK32gqpK8wS8
* docs(permissions): regenerate system-context census after merging origin/main
`pnpm gen:system-context-census` on the merged tree (os-regen-merge.sh step 4):
main's side of the page was taken at merge, then row 37's anchors re-derived
from the merged `share-link-service.ts` (+5, the `permissive` TSDoc). No read
site arrived or vanished.
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01AUF1NoViznQK32gqpK8wS8
* docs(permissions): row 37 — the share-link bypass buys creation only; resolution is a standing policy
The "What you get" cell of the system-context ledger's row 37 still said
"link creation/resolution while the policy is off". Since the redemption
gate on `publicSharing.enabled`, a link minted under the system /
`permissive` bypass while the block is off does not resolve until the block
is enabled. Prose only; the five anchors are untouched (seat-approved
one-cell widening of the claim's file surface, 14033#issuecomment-5511082583).
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01AUF1NoViznQK32gqpK8wS8
* docs(permissions): regenerate system-context census after merging origin/main (round 0)
os-regen-merge.sh step 4 on the merged tree: main's side of the page was
taken at merge, the row-37 "What you get" cell re-applied (a hand edit no
generator reproduces), then `pnpm gen:system-context-census`. Anchors
unchanged; no read site arrived or vanished.
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01AUF1NoViznQK32gqpK8wS8
* docs(plugin-sharing): contract-review round 1 — three changeset lines, one permissive TSDoc clause, row 37 re-anchored
Prose only; the gate, the tests and the changeset level are untouched.
Changeset: the superseded #13856 reading is named; an object the engine
cannot return a schema for is `enabled: false` by `getPolicy`'s definition
and refuses at redemption (fail-closed, as `createLink`); the refusal logs
one `warn` per refused hit, not latched. `permissive` TSDoc: during a late
schema scan the option helps minting, not serving. The four added TSDoc
lines moved the five row-37 anchors, re-anchored by the census gate's own
`--fix`; the row-37 "What you get" cell is unchanged.
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01AUF1NoViznQK32gqpK8wS8
* docs(permissions): regenerate system-context census after merging origin/main (round 1)
os-regen-merge.sh step 4 on the merged tree: main's side of the page taken
at merge, the row-37 "What you get" cell re-applied (a hand edit no
generator reproduces), then `pnpm gen:system-context-census`. No read site
arrived or vanished.
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01AUF1NoViznQK32gqpK8wS8
---------
Co-authored-by: Claude <noreply@anthropic.com>
1 parent fb531df commit 13bf05d
5 files changed
Lines changed: 596 additions & 68 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
| 65 | + | |
| 66 | + | |
| 67 | + | |
| 68 | + | |
| 69 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
135 | 135 | | |
136 | 136 | | |
137 | 137 | | |
138 | | - | |
| 138 | + | |
139 | 139 | | |
140 | 140 | | |
141 | 141 | | |
| |||
Lines changed: 175 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
917 | 917 | | |
918 | 918 | | |
919 | 919 | | |
| 920 | + | |
| 921 | + | |
| 922 | + | |
| 923 | + | |
| 924 | + | |
| 925 | + | |
| 926 | + | |
| 927 | + | |
| 928 | + | |
| 929 | + | |
| 930 | + | |
| 931 | + | |
| 932 | + | |
| 933 | + | |
| 934 | + | |
| 935 | + | |
| 936 | + | |
| 937 | + | |
| 938 | + | |
| 939 | + | |
| 940 | + | |
| 941 | + | |
| 942 | + | |
| 943 | + | |
| 944 | + | |
| 945 | + | |
| 946 | + | |
| 947 | + | |
| 948 | + | |
| 949 | + | |
| 950 | + | |
| 951 | + | |
| 952 | + | |
| 953 | + | |
| 954 | + | |
| 955 | + | |
| 956 | + | |
| 957 | + | |
| 958 | + | |
| 959 | + | |
| 960 | + | |
| 961 | + | |
| 962 | + | |
| 963 | + | |
| 964 | + | |
| 965 | + | |
| 966 | + | |
| 967 | + | |
| 968 | + | |
| 969 | + | |
| 970 | + | |
| 971 | + | |
| 972 | + | |
| 973 | + | |
| 974 | + | |
| 975 | + | |
| 976 | + | |
| 977 | + | |
| 978 | + | |
| 979 | + | |
| 980 | + | |
| 981 | + | |
| 982 | + | |
| 983 | + | |
| 984 | + | |
| 985 | + | |
| 986 | + | |
| 987 | + | |
| 988 | + | |
| 989 | + | |
| 990 | + | |
| 991 | + | |
| 992 | + | |
| 993 | + | |
| 994 | + | |
| 995 | + | |
| 996 | + | |
| 997 | + | |
| 998 | + | |
| 999 | + | |
| 1000 | + | |
| 1001 | + | |
| 1002 | + | |
| 1003 | + | |
| 1004 | + | |
| 1005 | + | |
| 1006 | + | |
| 1007 | + | |
| 1008 | + | |
| 1009 | + | |
| 1010 | + | |
| 1011 | + | |
| 1012 | + | |
| 1013 | + | |
| 1014 | + | |
| 1015 | + | |
| 1016 | + | |
| 1017 | + | |
| 1018 | + | |
| 1019 | + | |
| 1020 | + | |
| 1021 | + | |
| 1022 | + | |
| 1023 | + | |
| 1024 | + | |
| 1025 | + | |
| 1026 | + | |
| 1027 | + | |
| 1028 | + | |
| 1029 | + | |
| 1030 | + | |
| 1031 | + | |
| 1032 | + | |
| 1033 | + | |
| 1034 | + | |
| 1035 | + | |
| 1036 | + | |
| 1037 | + | |
| 1038 | + | |
| 1039 | + | |
| 1040 | + | |
| 1041 | + | |
| 1042 | + | |
| 1043 | + | |
| 1044 | + | |
| 1045 | + | |
| 1046 | + | |
| 1047 | + | |
| 1048 | + | |
| 1049 | + | |
| 1050 | + | |
| 1051 | + | |
| 1052 | + | |
| 1053 | + | |
| 1054 | + | |
| 1055 | + | |
| 1056 | + | |
| 1057 | + | |
| 1058 | + | |
| 1059 | + | |
| 1060 | + | |
| 1061 | + | |
| 1062 | + | |
| 1063 | + | |
| 1064 | + | |
| 1065 | + | |
| 1066 | + | |
| 1067 | + | |
| 1068 | + | |
| 1069 | + | |
| 1070 | + | |
| 1071 | + | |
| 1072 | + | |
| 1073 | + | |
| 1074 | + | |
| 1075 | + | |
| 1076 | + | |
| 1077 | + | |
| 1078 | + | |
| 1079 | + | |
| 1080 | + | |
| 1081 | + | |
| 1082 | + | |
| 1083 | + | |
| 1084 | + | |
| 1085 | + | |
| 1086 | + | |
| 1087 | + | |
| 1088 | + | |
| 1089 | + | |
| 1090 | + | |
| 1091 | + | |
| 1092 | + | |
| 1093 | + | |
| 1094 | + | |
920 | 1095 | | |
921 | 1096 | | |
922 | 1097 | | |
| |||
0 commit comments