Conversation
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Draft specification proposal for an explicitly opted-in Feature Recovery and
Reconciliation Protocol. No production code or recovery endpoint is added.
and replay rules, immutable repair/replacement semantics, cleanup safeguards,
rollout gates, and conformance scenarios.
plus a bilaterally gated FAILED value and structured read-only failureInfo.
The shared provisioning enum and Connection lifecycle fields are unchanged.
connection-cleanup descriptions with the draft's opt-in semantics.
Existing three-of-four provisioning eligibility, full verification requirements,
L3 immutability, and the CreateConnection retry window of up to 60 seconds remain
unchanged. Five total foreground feature attempts are a proposed default, not an
existing agreement or an HTTP timeout policy.
Related public discussion: #51. This draft builds on the problem area without
assuming that unmerged proposal has been accepted.
Review Gates
Distributed fencing and ownership handoff are unresolved and block autonomous
replacement/cleanup. Additional decisions include capability negotiation,
generated-client compatibility, replay/retention details, failure codes, timing
budgets, maintenance/migration policy, and stricter coordination for the existing
seven-day cleanup permission. The existing deferConnection/deferProvisioning
naming mismatch is explicitly flagged, not silently changed.
Validation
identical to unmodified main.
optional read-only owner, required failure fields, and existing query requestId.
Conformance scenarios are proposed acceptance criteria, not executed distributed
integration tests. No repository CI workflows or test commands were present.