Skip to content

feat(track-a): repair canonical bootstrap transition - #371

Merged
blakinio merged 15 commits into
mainfrom
ci/OTC-20260816-track-a-canonical-bootstrap-implementation-v2
Aug 16, 2026
Merged

feat(track-a): repair canonical bootstrap transition#371
blakinio merged 15 commits into
mainfrom
ci/OTC-20260816-track-a-canonical-bootstrap-implementation-v2

Conversation

@blakinio

Copy link
Copy Markdown
Owner

Track A RUNTIME-INFRA replacement for #360

Task: OTC-20260816-track-a-canonical-bootstrap-implementation
Base: fresh main@dbd9520e2f8cc5a26f556bffaae2a83e139615f9
Execution: GitHub-hosted only, runtime_access: none, mutation_authorized: false.

This Draft replaces stale PR #360 and directly remediates its four coordinator findings:

  • TACOORD-360-001 HIGH — rebind now restores and revalidates the exact previous authoritative registration on any post-publication failure.
  • TACOORD-360-002 HIGH — transition/worker argv is aligned and regression-tested against the actual shell parser.
  • TACOORD-360-003 HIGH — account login/credential typing is removed entirely from this infrastructure worker; protected login remains a later RUNTIME-owned operation after trusted-main promotion.
  • TACOORD-360-004 — no historical PR research(track-a): prove runtime reacquisition stability #303 wireproxy.pid/fixed SOCKS authority is consumed. Bootstrap creates a canonical-owned, marker-fenced userspace WARP helper in its own process group/state using pinned wgcf/wireproxy inputs.

Additional hardening found during replacement review:

  • bootstrap/rebind/Gate B now run under a detached cancellation-safe lock-owning subreaper that reuses the promoted PR fix(track-a): retain canonical lease through process-group cancellation #321 guard primitives;
  • registration is staged mode-0600 and pre-commit identity/lease/uniqueness is rechecked before atomic publication;
  • bootstrap rollback terminates only the bootstrap-owned process group and removes any publication claiming failed success;
  • persistent descendants receive no lease capability/test credential environment.

A dedicated ubuntu-latest validator is included temporarily and runs the new transition tests plus promoted guard/lease tests. It will be removed before final promotion after its evidence is recorded.

No Synology/client/X11/VNC/login/runtime mutation, credentials, Track B mutation, owner Codex quota, OpenAI API token or owner-funded paid AI quota is used by this Draft. Current runtime nonclaims remain :98 UNKNOWN, 6082 UNKNOWN, exact PID/session NOT_REGISTERED.

@blakinio blakinio added the programme:audit-repair Audit and repair programme label Aug 16, 2026
@blakinio
blakinio marked this pull request as ready for review August 16, 2026 13:48
@chatgpt-codex-connector

Copy link
Copy Markdown

You have reached your Codex usage limits for code reviews. You can see your limits in the Codex usage dashboard.
To continue using code reviews, you can upgrade your account or add credits to your account and enable them for code reviews in your settings.

@blakinio
blakinio merged commit d16091c into main Aug 16, 2026
21 checks passed
@blakinio
blakinio deleted the ci/OTC-20260816-track-a-canonical-bootstrap-implementation-v2 branch August 16, 2026 13:51
blakinio added a commit that referenced this pull request Aug 16, 2026
…#436)

Reconcile deterministic Track A admission with the already-promoted #371/#375 canonical bootstrap transaction on the current main. Preserve one-attempt fail-closed transactional gates and keep blind canonical retry forbidden while the newer #431/#432/#434 evidence still proves zero visible official-client windows after GLX restoration.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

programme:audit-repair Audit and repair programme

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant