Skip to content

fix(artifacts): clarify provider privacy boundary - #399

Open
8Dionysus wants to merge 2 commits into
mainfrom
goal-01a02fec-machine-privacy-boundary-followup
Open

fix(artifacts): clarify provider privacy boundary#399
8Dionysus wants to merge 2 commits into
mainfrom
goal-01a02fec-machine-privacy-boundary-followup

Conversation

@8Dionysus

Copy link
Copy Markdown
Owner

Summary

  • make the code-intelligence provider bundle privacy boundary explicitly public-safe
  • exclude all private data, including host evidence, indexes, worktrees, observations, caches, and runtime state
  • lock the exact policy phrase with a production trust-gate regression assertion
  • regenerate the contract ABI signature projection

Validation

  • python -m pytest -q tests/public_smoke/test_artifact_bundle_verifier.py (253 passed)
  • python scripts/ci_gate.py --mode release-artifact
  • python scripts/release_check.py --sdk-root .deps/aoa-sdk --receipt /srv/abyss-machine/tmp/ai/code-intelligence-goal-01a02fec-20260823/runtime-visible/machine-privacy-release-v2.json (full owner claim/evidence sufficient=true; exact CI pins aoa-sdk b73c8aca and aoa-stats fb984e66)

Context / remaining proof

The previously produced code-intelligence provider artifact correctly failed closed at consumer admission because the old wording combined a publishable prefix with an ambiguous private-evidence phrase. This source correction does not retroactively admit that artifact. After landing, the Goal will produce, sign, promote, gate, and install a fresh artifact from the landed SHA. Runtime deployment and semantic acceptance remain separate downstream proof.

@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Aug 30, 2026

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review Completed 2026-08-30T08:55:23.252291Z 6a417f9 Manual request
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

@8Dionysus
8Dionysus force-pushed the goal-01a02fec-machine-privacy-boundary-followup branch from de3ad8d to afdc9c3 Compare August 30, 2026 08:47
@8Dionysus

Copy link
Copy Markdown
Owner Author

@codex review

@chatgpt-codex-connector

Copy link
Copy Markdown

Codex Review: Didn't find any major issues. Already looking forward to the next diff.

Reviewed commit: 6a417f9cd3

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant