Peter Steinberger
|
538605ff44
|
[codex] Extract filesystem safety primitives (#77918)
* refactor: extract filesystem safety primitives
* refactor: use fs-safe for file access helpers
* refactor: reuse fs-safe for media reads
* refactor: use fs-safe for image reads
* refactor: reuse fs-safe in qqbot media opener
* refactor: reuse fs-safe for local media checks
* refactor: consume cleaner fs-safe api
* refactor: align fs-safe json option names
* fix: preserve fs-safe migration contracts
* refactor: use fs-safe primitive subpaths
* refactor: use grouped fs-safe subpaths
* refactor: align fs-safe api usage
* refactor: adapt private state store api
* chore: refresh proof gate
* refactor: follow fs-safe json api split
* refactor: follow reduced fs-safe surface
* build: default fs-safe python helper off
* fix: preserve fs-safe plugin sdk aliases
* refactor: consolidate fs-safe usage
* refactor: unify fs-safe store usage
* refactor: trim fs-safe temp workspace usage
* refactor: hide low-level fs-safe primitives
* build: use published fs-safe package
* fix: preserve outbound recovery durability after rebase
* chore: refresh pr checks
|
2026-05-06 02:15:17 +01:00 |
|
George Zhang
|
e133924047
|
[codex] harden clawhub plugin publishing and install (#56870)
* fix: harden clawhub plugin publishing and install
* fix(process): preserve windows shim exit success
|
2026-03-29 11:59:19 -07:00 |
|
Peter Steinberger
|
4f0ad16a00
|
fix(ci): route browser tmp path through public temp-path seam
|
2026-03-27 23:24:57 +00:00 |
|
Peter Steinberger
|
f11589b311
|
refactor: tighten plugin sdk channel seams
|
2026-03-16 01:05:51 -07:00 |
|
Peter Steinberger
|
def993dbd8
|
refactor(tmp): harden temp boundary guardrails
|
2026-02-24 23:51:10 +00:00 |
|
Peter Steinberger
|
d3da67c7a9
|
fix(security): lock sandbox tmp media paths to openclaw roots
|
2026-02-24 23:10:19 +00:00 |
|
Peter Steinberger
|
ec232a9e2d
|
refactor(security): harden temp-path handling for inbound media
|
2026-02-19 14:06:37 +01:00 |
|
Mariano
|
a7c0aa94d9
|
refactor(security): share safe temp media path builder (#20810)
Merged via /review-pr -> /prepare-pr -> /merge-pr.
Prepared head SHA: 7a088e6801
Co-authored-by: mbelinky <132747814+mbelinky@users.noreply.github.com>
Co-authored-by: mbelinky <132747814+mbelinky@users.noreply.github.com>
Reviewed-by: @mbelinky
|
2026-02-19 09:59:21 +00:00 |
|