fix(share): copied feedback and Open button on Active Shares rows - #2806
Conversation
|
Navigate logical layers of code changes, visualize relationships, and explore their blast radius. No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configurationConfiguration used: Organization UI Review profile: ASSERTIVE Plan: Advanced Run ID: 📒 Files selected for processing (1)
Included review availability: This review used your included allowance. Your plan provides up to 8 included reviews per hour; 6 remain after this review. 📝 WalkthroughWalkthroughThe share dialog now tracks clipboard success separately for the create-result button and each active-share row. Active-share rows also include a button that opens the project URL externally. ChangesShare dialog
Priority: ⬇️ Low Estimated code review effort: 2 (Simple) | ~10 minutes Change: Bug fix Suggested reviewers: Merge Risk: ⚪ Minimal · up to Each successful copy receives its intended two-second feedback interval, and the reviewed change presents no concrete issue that should block merging. Security Architecture ReviewSecurity architecture risk: 🔵 Low · up to The Open action requires a click and preserves existing URL-scheme protections. No vulnerability was established, but the allowed destination hosts for listed shares could not be confirmed. Retained concerns Security review detailsSecurity Blast Radius
Security Findings and Attack Paths
Trust Boundaries and Controls
Hardening Proposals
🚥 Pre-merge checks | ✅ 4 | ❌ 1❌ Failed checks (1 warning)
✅ Passed checks (4 passed)
✨ Finishing Touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. A rabbit taps Copy, then waits, Comment |
|
Confirms This PR is small and clean. I found no real bugs, security issues, or CLAUDE.md violations. I won't post any inline comments since I have no findings worth flagging even at low confidence. Code reviewBugs: None found. Security: None found. The new Open button reuses the existing Performance: None found. No new re-renders or expensive work introduced. Quality: Clean, minimal diff that mirrors existing patterns (same icon, same CLAUDE.md: No violations. UI strings use existing |
🔍 Cloudflare PR preview
|
🔍 GitHub Pages PR preview
Note GitHub Pages built this preview successfully, but its serving edge returned HTTP 403 when checked. The links may still be propagating. |
Closes #2804.
copiedis nowcopiedKey, so only the clicked button changes.share.open) that opens the share'sprojectUrl, the same URL the post-create Open button uses.Not changed: the "View" role label.
normalizeShareRoledeliberately fails closed toviewwhen/api/sharesomits or sends an unknownrole; whether the server returnsrolefor Edit shares needs checking against the real payload.Verified in headless Chromium against the dev build with a mocked
/api/shares(stubbedclipboard.writeText, since headless denies it): clicking row 2 shows a check on row 2 only, reset after ~2s; each row has Copy, Open and Revoke.tsc --noEmitandoxfmt --checkpass.Summary by CodeRabbit