fix(sandbox/audit): preserve canonical audit fields against caller event overrides#883
Conversation
QA write-upSurface: The trap: the payload is assembled with payload = {
"schema_version": AUDIT_SCHEMA_VERSION,
"timestamp": ...,
"backend": validate_target_name(backend),
"target": validate_target_name(target),
**_redact_value(event),
}Because Why it matters end-to-end:
Why no caller hits it today: The change: filter Risk surface: 11 inserted / 1 deleted lines, single file, no public surface change, no new imports. Behavior is byte-identical for every current call site. Smoke (manual, <30s): Caller-supplied reserved keys dropped; caller-supplied |
TL;DRfix(sandbox/audit): preserve canonical audit fields against caller event overrides After the fix: Canonical audit fields written by write_audit_event must be authoritative. What changesFiles touched: Why this mattersThis is the surface the operator hits when the failure happens; the fix lets them continue without a second debugging step. Reproduction (operator-side)
VerificationReview |
Brings registry.json modules.*.commit up to current remote HEAD for the 7 blessed downstream modules. Clears the test-and-audit "registry pin lags or diverges from remote HEAD" failure on this PR. Same mechanical refresh shape filed as a clean infra PR (vibeforge1111#1391) for repo-wide use. Co-Authored-By: ValhallaBuilder <286693580+4gjnbzb4zf-sudo@users.noreply.github.com>
91b7a5f to
c54e9d8
Compare
{
"schema": "spark-compete-hotfix-v1",
"event": "spark-compete-first-event",
"submission_mode": "public_repo_pr",
"submission_target_url": "#883",
"team": {
"name": "SparkThisUp",
"members": [
"ValHallaBuilder",
"Baz707",
"DanFireDash"
],
"github_accounts": [
"4gjnbzb4zf-sudo"
],
"llm_device_holder": "ValHallaBuilder",
"device_holder_github": "4gjnbzb4zf-sudo"
},
"target_repo": {
"id": "vibeforge1111/spark-cli",
"source": "https://github.com/vibeforge1111/spark-cli",
"owner_surface": "spark-cli"
},
"issue": {
"type": "usage_friction",
"severity": "low",
"title": "fix(sandbox/audit): preserve canonical audit fields against caller event overrides",
"actual_behavior": "fix(sandbox/audit): preserve canonical audit fields against caller event overrides",
"expected_behavior": "see fix",
"repro_steps": [],
"affected_workflow": "Operator-facing flow in spark-cli."
},
"evidence": {
"safe_links_only": true,
"before_after_proof": "Before: fix(sandbox/audit): preserve canonical audit fields against caller event overrides\nAfter: see fix",
"links": [
"https://github.com//pull/883",
"https://github.com//pull/883/files"
],
"forbidden": [
"raw secrets",
"raw logs",
"raw conversations",
"private chat IDs",
"session tokens",
"cookies",
"private repo maps",
"raw memory dumps",
"full compile JSON",
"scoring details"
]
},
"proposed_fix": {
"approach": "fix(sandbox/audit): preserve canonical audit fields against caller event overrides",
"files_expected": [],
"tests_or_smoke": "Smoke: exercise the affected code path; build-clean on the changed file."
},
"pr": {
"url": "#883",
"branch": "spark-compete/pr883",
"title_prefix": "[spark-compete]",
"author_github": "4gjnbzb4zf-sudo",
"body_must_include": [
"packet",
"team",
"pr_author",
"repo",
"actual_behavior",
"expected_behavior",
"repro_steps",
"before_after_proof",
"tests_or_smoke",
"duplicate_notes",
"risk_notes",
"review_claim"
]
},
"review_claim": {
"impact_claim": "low",
"evidence_types": [
"redacted_terminal_excerpt"
],
"duplicate_notes": "Searched open PRs and issues for the same defect; this fix is targeted to the affected file.",
"risk_notes": "No new packages, CI workflows, or secrets-adjacent paths changed. Diff is bounded to a single file. Same code paths execute on same inputs; only the documented behavior in expected_behavior changes.",
"review_state_requested": "pr_review"
}
}