Skip to content

fix: scope Channel binding mutations - #3

Merged
NWYLZW merged 1 commit into
mainfrom
codex/scope-channel-bindings
Sep 6, 2026
Merged

NWYLZW merged 1 commit into
mainfrom
codex/scope-channel-bindings

Conversation

@NWYLZW

@NWYLZW NWYLZW commented Sep 6, 2026

Copy link
Copy Markdown
Member

The standalone Channel manifest declared high-risk channel.bindings.write with an empty scope, so the real Host capability catalog correctly rejected the plugin before composition. Bind that capability to the only manifest-authorized Simulator tenant, simulator/local/test, in both source and runtime manifests.

Validation:

  • npm run check (17/17 tests)
  • source/runtime manifest identity and exact package digest
  • focused assertion for the exact tenant scope
  • real Host composition will be rerun by the Host consumer PR after this formal merge

@NWYLZW
NWYLZW merged commit 05ee2a7 into main Sep 6, 2026
2 checks passed
@NWYLZW
NWYLZW deleted the codex/scope-channel-bindings branch September 6, 2026 20:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant