Skip to content

runtime(track-a): admit action-protocol read-only acceptance - #646

Merged
blakinio merged 3 commits into
mainfrom
runtime/OTC-20260821-surveyor-action-protocol-acceptance
Aug 21, 2026
Merged

runtime(track-a): admit action-protocol read-only acceptance#646
blakinio merged 3 commits into
mainfrom
runtime/OTC-20260821-surveyor-action-protocol-acceptance

Conversation

@blakinio

Copy link
Copy Markdown
Owner

Objective

Install the bounded post-merge physical acceptance path for OTC-20260821-surveyor-action-protocol-reader after implementation PR #645 merged as f80dd43f741c39ce5ee4296396cb07891d04c324.

This PR changes task authority from repository-only to read-only and installs a temporary owner-controlled workflow. The workflow runs only for the exact same-repository trigger branch test/OTC-20260821-surveyor-action-protocol-physical-trigger, derives its trusted checkout from that PR's base main SHA, and executes no PR-head code on the self-hosted runner.

Before /proc/PID/mem is opened, it freshly revalidates lease/control state, exactly one client, PID/start, executable path/size/SHA, display and one matching visible window, plus registration identity consistency. Memory access is O_RDONLY; no login, input, process control, write, credentials, network/gameplay/economy mutation or local-model use is authorized.

PASS requires the action reader to expose exactly one typed tibia::game::TPlayerProtocolMessageHandler object with typed_object_identity=PROVEN, semantic state TYPED_ACTION_PROTOCOL_OBJECT_IDENTITY_ONLY, 169 rows / 12 aliases / 8 remaining gaps / privacy PASS, and no packet/action/IN_GAME semantic promotion.

@blakinio
blakinio marked this pull request as ready for review August 21, 2026 14:56
@blakinio
blakinio merged commit b7fa88e into main Aug 21, 2026
14 checks passed
@blakinio
blakinio deleted the runtime/OTC-20260821-surveyor-action-protocol-acceptance branch August 21, 2026 14:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant