Skip to content

Make independent verification output and timeouts reliable - #2

Draft
Solarthis wants to merge 1 commit into
mainfrom
maintenance/verifier-reliability-20261006
Draft

Solarthis wants to merge 1 commit into
mainfrom
maintenance/verifier-reliability-20261006

Conversation

@Solarthis

Copy link
Copy Markdown
Owner

Improvements

  • Ignore blank/non-string package scripts.
  • Redact output before tail truncation.
  • Preserve UTF-8 across stream chunks.
  • Terminate ordinary POSIX descendants on timeout.
  • Omit over-limit streams instead of retaining incomplete secret fragments.
  • Reject invalid time/output limits before spawning.

Verification

73 tests pass including 9 new verifier regressions; TypeScript build passes. Initial 6 regression cases all failed on the baseline. Remote blob hashes match tested files. Existing provider orchestration uses only local fake HTTP servers; real provider smoke/MCP scripts were not run.

Capture overflow intentionally loses that stream's diagnostics. Detached descendants, Windows and actual provider behavior are not certified. See docs/reviews/2026-10-06-verifier.md. Draft only; no deployment or installation.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant