Skip to content

feat(recovery): harden native bundle recovery - #30

Merged
GFean merged 4 commits into
mainfrom
native-recovery-hardening-codeql
Aug 29, 2026
Merged

feat(recovery): harden native bundle recovery#30
GFean merged 4 commits into
mainfrom
native-recovery-hardening-codeql

Conversation

@GFean

@GFean GFean commented Aug 29, 2026

Copy link
Copy Markdown
Owner

Summary

Related issue or Discussion:

Compatibility and risk

  • This change is backward compatible within the documented runtime boundary.
  • Breaking behavior is clearly identified in the summary and related issue.
  • Resolve, download, apply, rollback, and restart behavior were reviewed when applicable.
  • nativeVersion was reviewed for iOS native or podspec changes.
  • Backend-contract changes were agreed before implementation.

Validation

  • Focused tests cover the behavior change.
  • yarn verify:quick passes.
  • Relevant bounded native tests pass for Android and/or iOS.
  • Coverage thresholds and existing validation gates were not weakened.

Documentation and safety

  • Public documentation and examples were updated when behavior changed.
  • The PR title follows Conventional Commit format.
  • No credentials, signing material, customer data, private endpoints, or generated receipts are included.
  • The change is focused and contains no unrelated formatting or generated files.

@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Aug 29, 2026

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review Completed 2026-08-29T01:02:34.626766Z 09afd0b PR opened
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

Comment thread scripts/run-codeql-local.cjs Dismissed
Comment thread scripts/run-codeql-local.cjs Dismissed
Comment thread scripts/run-codeql-local.cjs Dismissed
Comment thread scripts/run-codeql-local.cjs Dismissed
Comment thread scripts/run-codeql-local.cjs Dismissed
Comment thread scripts/run-codeql-local.cjs Dismissed
Comment thread scripts/run-codeql-local.cjs Dismissed
Comment thread scripts/run-codeql-local.cjs Dismissed
@GFean GFean changed the title Native recovery hardening codeql feat(recovery): harden native bundle recovery Aug 29, 2026

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 09afd0b2a5

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread src/runtime-delivery/manifestVerifier.ts
Comment thread BundleDrop.podspec Outdated
@GFean
GFean merged commit f880bfd into main Aug 29, 2026
10 checks passed
@GFean
GFean deleted the native-recovery-hardening-codeql branch August 29, 2026 10:53
@GFean GFean mentioned this pull request Aug 29, 2026
GFean added a commit that referenced this pull request Aug 29, 2026
🤖 I have created a release *beep* *boop*
---


##
[0.7.0](v0.6.0...v0.7.0)
(2026-08-29)


### Features

* **recovery:** harden native bundle recovery
([#30](#30))
([f880bfd](f880bfd))

---
This PR was generated with [Release
Please](https://github.com/googleapis/release-please). See
[documentation](https://github.com/googleapis/release-please#release-please).
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants