Skip to content

experiment: export doctor checks as portable evidence - #2

Draft
kvnloo wants to merge 8 commits into
feat/3694-podman-doctor-checkfrom
exp/portable-evidence-v0
Draft

kvnloo wants to merge 8 commits into
feat/3694-podman-doctor-checkfrom
exp/portable-evidence-v0

Conversation

@kvnloo

@kvnloo kvnloo commented Sep 30, 2026

Copy link
Copy Markdown
Owner

Downstream-only producer slice for https://github.com/kvnloo/ace-digital-twin/issues/115.

Stacked on #1. Contract: https://github.com/kvnloo/ace-digital-twin/pull/116

Adds a privacy-preserving adapter around the existing selected-runtime doctor check. It records only driver, exit status, error type, repository, and exact revision; stdout/stderr are discarded.

No policy, sandbox, runtime-selection, telemetry, or security behavior changes.

Comment thread .github/workflows/portable-evidence.yml Fixed
Comment thread .github/workflows/portable-evidence.yml Fixed
Comment thread .github/workflows/portable-evidence.yml Fixed

kvnloo commented Sep 30, 2026

Copy link
Copy Markdown
Owner Author

Focused adapter validation passed independently for:

  • selected runtime success -> pass;
  • nonzero exit -> fail;
  • timeout/unobserved result -> unknown;
  • non-exact revision rejected.

This validates the stdlib normalizer semantics only. It is not being treated as proof that the combined OpenShell runtime stack passed; repo security checks remain separate.

kvnloo commented Sep 30, 2026

Copy link
Copy Markdown
Owner Author

Portable Evidence Adapter run 36679461604 caught a test bug, not an adapter leak.

The privacy test searched the entire serialized receipt for the substring command, which matched the invariant name portable-evidence-excludes-command-output. The evidence details themselves contained only driver, returncode, and error_type.

Fixed at 779f76b385863e04211e299561cbb797dde54c47 by asserting the exact allowed details-key set. The GitHub-native adapter job is rerunning on that head.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants