Skip to content

feat: expose authenticated review-service capabilities - #843

Open
tdurieux wants to merge 3 commits into
mainfrom
codex/review-service-capabilities
Open

tdurieux wants to merge 3 commits into
mainfrom
codex/review-service-capabilities

Conversation

@tdurieux

@tdurieux tdurieux commented Sep 27, 2026 •

Copy link
Copy Markdown
Owner

The review service needs an authenticated way to check artifact support before offering a handoff. Add an optional /service/v1/capabilities endpoint with rotating, digest-only service keys. It reports the supported contract and an empty feature list, so linking and retention remain unavailable until implemented.

The endpoint is disabled by default and runs before browser sessions and body parsing. It rejects browser context, duplicate credentials, unexpected paths and bodies, closes rejected incomplete uploads promptly, and limits reads per registered client. Configuration and activation remain separate from this change.

Validation: clean lockfile installation; full TypeScript check and emitted build; UI build; 701 passing tests with 49 opt-in cases pending; targeted ESLint; credential/rotation/rate-limit HTTP tests; and interoperability with the real Go client over locally verified HTTPS. A 150-request loopback sample averaged 2.035 ms (p95 2.417 ms); this is not a production latency estimate.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant