Skip to content

feat(sdk): export catalog auth-source watcher - #6079

Closed
jaaacki wants to merge 1 commit into
router-for-me:devfrom
jaaacki:issue/2561-auth-watcher
Closed

jaaacki wants to merge 1 commit into
router-for-me:devfrom
jaaacki:issue/2561-auth-watcher

Conversation

@jaaacki

@jaaacki jaaacki commented Sep 23, 2026

Copy link
Copy Markdown

What

Export sdk/cliproxy/authsource.NewWatcher, a public constructor for the catalog auth-source reconcile.

Sync lists a Source, then:

  • registers new pc-cred-* auths
  • removes owned auths that left the catalog
  • copies operator fields onto the live auth and leaves token metadata with the conductor unless pc_token_rotated_at changed
  • drops config-synthesized shadows that have an identified twin, and keeps a shadow that is the only holder of base_url

*coreauth.Manager satisfies Target. The file watcher under internal/watcher is unchanged.

Why

internal/watcher is not importable by other modules, and file/config synthesis is the wrong source for a database catalog. Embedders currently copy this add/update/shadow loop. This export unlocks deleting that copy.

The proxy deletion waits until the module pin moves. This pull request does not change proxy behavior by itself.

Tests

go test ./sdk/cliproxy/authsource/

NewWatcher reconciles an external credential catalog into the conductor
without replacing live token metadata. Embedders can adopt it instead of
copying the add, update, and shadow-removal loop. Deletion of that copy
waits until the module pin moves.
@github-actions

Copy link
Copy Markdown

This pull request targeted main.

The base branch has been automatically changed to dev.

@github-actions
github-actions Bot changed the base branch from main to dev September 23, 2026 11:29
@jaaacki jaaacki closed this Sep 25, 2026
@jaaacki
jaaacki deleted the issue/2561-auth-watcher branch September 25, 2026 05:57
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant