fix(sandbox): keep backups from releasing private workspaces - #2800
Conversation
There was a problem hiding this comment.
LGTM: Fresh independent review at the frozen head: no verified major-or-higher findings in source-preservation hardening.
Note
Approved · head 0d7a934 · no findings
Full review
No verified major-or-higher findings; this source-only approval does not establish physical writer exclusion, complete runtime custody, original-store archive ACK, or safe retirement.
|
Warning Polylane could not verify the production impact of this pull request. Checked the teardown and restore changes against switchboard-sandbox (coreplane-infra, 0 errors over 72h). preserveBeforeDestroy already returned false in effect, so this is behavior-neutral hardening. The stricter restore check is an offline CLI that fails closed. Also considered · 2 refuted
Analysed against 7 cloud accounts and 1 repository
Polylane could not find the cloud resources this repository manages, so this review looked at the entire cloud account. Connect this repository to its resources and the next review will focus on exactly what this code deploys to. Polylane analysed Did this help? React 👍 or 👎 so the next review is sharper. |
Checkout backups return stored/unknown evidence and cannot authorize seeded teardown. Offline v1 restore refuses incomplete receipt identities before writing a restore tree.
Why: A writer can change bytes between pause samples while an upload stores an earlier checkout. Backup existence cannot prove complete custody. Independently restored bytes also cannot fill in missing receipt identity.
Where to look
Feedback wanted: Check that no backup observation reaches either teardown path and that valid v1 archives remain readable without promoting receipt metadata into owner authority.
Risk: Seeded workspaces remain retained. Full custody capture, physical writer exclusion, original-owner archive ACK and safe reclamation remain unproved. Malformed legacy receipts now refuse before restore.
Verified: 101 named tests; root/sandbox types, lint/format, specs/hygiene/coverage/test guard. Real screenshots regenerated; all 44 PNG bytes unchanged.
Decisions (2)
Validation (4 criteria)
For agents
This is source evidence hardening. No image upload, production stop, purge, replay, new backup format, archive-pointer migration, owner/fence schema or native backend change. Complete current private checkout plus pi/OpenCode runtime custody, continuous exclusion, independent restore and original-store exact-version ACK remain a required final capability. Source tests and health do not establish that acceptance. Polylane service/feed lookup returned no mapping and issues read was unavailable; no cleared production-impact claim. Merge/release/deploy remain with the parent coordinator.
🤖 Generated with Claude Code