* fix(#4132): verify durable runtime surface sources * chore(#4132): record PR number in changeset * test(#4132): cover rejected commands source alias * fix(#4132): reject aliased package fallback * test(#4132): cover rejected agents source alias * test(#4132): cover partially aliased marker provider * fix(#4132): reject partially aliased source providers * test(#4132): cover routed source identity probes * fix(#4132): route installed source identity probes * refactor(#4132): tighten installer source metadata * test(#4132): cover corpus trust boundary attacks * fix(#4132): close installed corpus trust gaps * refactor(#4132): keep installer authority private * fix(#4132): preserve private installer fallback * test(#4132): preserve fixture source authority * fix(#4132): reject overlapping source fallback * fix(#4132): avoid redundant installed corpus reads * refactor(#4132): simplify provider resolution * test(#4132): sync install tree fixtures after rebase --------- Co-authored-by: Tom Boucher <trekkie@nomorestars.com>
This commit is contained in:
@@ -274,6 +274,22 @@ const PROVENANCE_RULES = [
|
||||
pattern: /^(workflows|references|templates|contexts|bin)\/.+$/,
|
||||
sources: (m) => [`gsd-core/${m[0]}`],
|
||||
},
|
||||
{
|
||||
id: 'gsd-core-commands-corpus',
|
||||
kind: 'rewrite',
|
||||
roots: ['gsd-core'],
|
||||
pattern: /^commands\/gsd\/(.+)$/,
|
||||
sources: (m) => [`commands/gsd/${m[1]}`],
|
||||
transforms: [INSTALL_ENGINE_SRC, INSTALLER_SRC],
|
||||
},
|
||||
{
|
||||
id: 'gsd-core-agents-corpus',
|
||||
kind: 'rewrite',
|
||||
roots: ['gsd-core'],
|
||||
pattern: /^agents\/(.+)$/,
|
||||
sources: (m) => [`agents/${m[1]}`],
|
||||
transforms: [INSTALL_ENGINE_SRC, INSTALLER_SRC],
|
||||
},
|
||||
{
|
||||
id: 'scripts-verbatim',
|
||||
kind: 'identity',
|
||||
|
||||
Reference in New Issue
Block a user