Skip to content

[landing] CLI 산출 descriptor 의 출처·정합성: contentHash 대조, 도구 버전 기록, producer 규약 #9

Description

@younjihoon

목표

CLI 가 올린 descriptor 는 서버가 검증하지 않으므로, 소비자가 신뢰도를 판단할 근거를 CLI 가 남긴다.

동작

  • 로컬 파일로 처리할 때 서버 X-Cloudbtl-Content-Hash 와 로컬 sha256 을 반드시 대조; 다르면 처리 거부(--allow-hash-mismatch 로만 우회).
  • producer 규약: cloudbtl-cli(텍스트 등 CLI 자체), cloudbtl-cli/<enricher>(플러그인). producerVersion = 실제 계산한 컴포넌트 버전.
  • 모든 write-back 의 detail 에 { cliVersion, workerVersion, model, device, durationMs, host: <hash of hostname> } 기록.
  • payload 에 모델/방법 이름을 넣는다(model, vocab 등) — 스펙 §7 권고.

완료 기준

  • 파일을 바꿔치기한 뒤 extract 하면 해시 불일치로 멈춘다.
  • jobs 의 detail 에 위 필드가 보인다.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or requestlanding-layerLanding layer: local extraction, render, enrich, watch, bulk land

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions