WIP: Add production appliance update contracts and authenticated wire runtime #16
No reviewers
Labels
No labels
bug
documentation
duplicate
enhancement
good first issue
help wanted
invalid
question
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
kaiba/kaiba-contracts!16
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "codex/autonomous-appliance-updates"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
The existing pilot contracts cannot authorize production appliance credentials or bounded remote A/B updates. This adds a separate 0.7.0-draft.1 family and a standard-library Go reference runtime for exact identities, purpose-separated signatures, release variants, qualification grants, phase leases, credential proof/results, receipts, lifecycle and fixed-code diagnostics.
Existing families and VERSION remain unchanged. Python/schema checks remain consistency-only; authenticated consumers use independent installed trust. Consumers pin the exact runtime source and file hashes.
Validation: all 126 Python tests and Go runtime race tests pass, including altered/cross-purpose signatures, expiry boundaries, certificate identity/role/name substitutions, unsafe IDs and a cross-language canonical digest vector. No production issuance, physical acceptance or readiness is claimed.
View command line instructions
Checkout
From your project repository, check out a new branch and test the changes.