Skip to content

add JOSS paper, experiment infrastructure, and QUIC enhancements - #53

Closed
fabracht wants to merge 34 commits into
mainfrom
joss-submission
Closed

fabracht wants to merge 34 commits into
mainfrom
joss-submission

Conversation

@fabracht

Copy link
Copy Markdown
Contributor

Summary

  • Add JOSS submission paper (joss/paper.md, joss/paper.bib) and CODE_OF_CONDUCT.md
  • Add QUIC stream mapping strategies (per-topic, per-publish, control-only) and unidirectional streams
  • Add interventional PublishAction and per-client outbound rate limiting
  • Add WebSocket bridge support for WASM broker
  • Add parallel experiment infrastructure (v1-v3 HOL blocking, throughput, resource overhead)
  • Add LaTeX companion paper with verified references and experiment figures
  • Fix queue filename collision and stale subscription leak
  • Bump crate versions: mqtt5-protocol 0.9.10, mqtt5 0.23.0, mqtt5-wasm 1.1.0, mqttv5-cli 0.21.0

Test plan

  • CI passes (fmt, clippy, tests)
  • Verify JOSS paper renders correctly
  • Verify version bumps are consistent across workspace

fabracht added 30 commits March 9, 2026 19:31
Comment on lines +10 to +24
runs-on: ubuntu-latest
name: Paper Draft
steps:
- name: Checkout
uses: actions/checkout@v4
- name: Build draft PDF
uses: openjournals/openjournals-draft-action@master
with:
journal: joss
paper-path: joss/paper.md
- name: Upload
uses: actions/upload-artifact@v4
with:
name: paper
path: joss/paper.pdf

Check warning

Code scanning / CodeQL

Workflow does not contain permissions Medium

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {contents: read}

Copilot Autofix

AI 7 months ago

In general, the fix is to add an explicit permissions block to the workflow or the specific job, granting only the minimal scopes required. For this workflow, the actions used (actions/checkout, openjournals/openjournals-draft-action, and actions/upload-artifact) only need read access to repository contents; they do not need to write to the repository or modify issues, PRs, etc. Therefore, the safest and simplest change is to add permissions: contents: read at the job level for paper.

Concretely, in .github/workflows/joss.yml, under jobs: paper: and aligned with runs-on / name, add:

permissions:
  contents: read

This will restrict the GITHUB_TOKEN used in that job to read-only repository contents, without altering the workflow’s behavior. No additional methods, imports, or other definitions are needed because this is purely a YAML configuration change.

Suggested changeset 1
.github/workflows/joss.yml

Autofix patch

Autofix patch
Run the following command in your local git repository to apply this patch
cat << 'EOF' | git apply
diff --git a/.github/workflows/joss.yml b/.github/workflows/joss.yml
--- a/.github/workflows/joss.yml
+++ b/.github/workflows/joss.yml
@@ -9,6 +9,8 @@
   paper:
     runs-on: ubuntu-latest
     name: Paper Draft
+    permissions:
+      contents: read
     steps:
       - name: Checkout
         uses: actions/checkout@v4
EOF
@@ -9,6 +9,8 @@
paper:
runs-on: ubuntu-latest
name: Paper Draft
permissions:
contents: read
steps:
- name: Checkout
uses: actions/checkout@v4
Copilot is powered by AI and may make mistakes. Always verify output.
@fabracht fabracht closed this Mar 14, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants