docs(track-a): promote historical auth-session static evidence - #585
Merged
Conversation
blakinio
commented
Aug 19, 2026
blakinio
left a comment
Owner
Author
There was a problem hiding this comment.
Coordinator exact-head promotion review: PASS. Head a125dfedc515d3c87499b3800a3c5704880b501e; exactly 9 docs/evidence/archive paths; source evidence/research blobs preserved exactly; source workflow intentionally excluded; CI 32248049388 = SUCCESS; zero review threads; behind_by=0. Historical addresses remain fenced to e6c244bd...; all password/persistence/expiry UNKNOWNs preserved.
This was referenced Aug 19, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Objective
Promote the independently audited historical exact-build auth/session static evidence from source Draft #498 without merging its stale history or its governance-invalid runtime-sensitive workflow.
Source audit
Source head:
43438bb8ed42841c8a9f5bc2d0e76d05b466a958Coordinator review:
4971599610= ACCEPT_WITH_EDITS.Accepted evidence is strictly fenced to historical official Linux client:
Addresses/PMFs/vtables are not current-build addresses for later
ed5469....Clean promotion
Base:
main@5a1c3f448b850fa388275f5b7af7be9218e132ffHead:
a125dfedc515d3c87499b3800a3c5704880b501eSeven accepted source phase/research documents are byte-identical source blobs. Coordinator-owned additions are the independent audit and archive checkpoint.
Bounded accepted result
The static evidence establishes separation between initial credential submission,
TPlaySessionData-bearing account-auth success, native retained-state character-selection routing, selected-character progression and later existing-credentials game connection. Persistence store, expiry/refresh, exact game-login credential fields and password presence/absence remain UNKNOWN.The source's corrected receiver/producer identifications are preserved; no adapter/QMeta target is promoted as a final serializer.
Delivery repair
Source governance
32058753745failed because the source PR itself added.github/workflows/tibia-official-client-re-auth-session-static.ymlwithout an active admission task. This clean promotion excludes that workflow entirely rather than weakening governance or inventing runtime authority.Safety
Repository/static only:
runtime_access:none; no client execution, credentials, login, GUI input, gameplay, transaction, process-memory access or runtime mutation.After promotion merge, source #498 will be closed unmerged as superseded and the archive finalized in a lifecycle-only closeout.