Skip to content

Complete native security engines and scoped policy enforcement - #5

Draft
senamakel wants to merge 12 commits into
mainfrom
security-complete-7328
Draft

senamakel wants to merge 12 commits into
mainfrom
security-complete-7328

Conversation

@senamakel

@senamakel senamakel commented Oct 10, 2026 •

Copy link
Copy Markdown
Member

Implements the remaining native TinySecurity engines for tinyhumansai/openhuman#7328 and TinySecurity #1, following the merged immutable path scopes in #4. OpenHuman integration remains in tinyhumansai/openhuman#7331.

Implemented and independently reviewed:

  • Immutable command policies, POSIX/PowerShell/cmd parsing, unconditional credential protections, distinct harness-gated and allowlisted execution rules, and atomic raw-command hourly accounting. Full scoped tool rules and parked/resumed reservation deduplication remain part of the pending policy composition.
  • One native redaction registry with init-only literal credentials, explicit legacy and structured/endpoint modes, bounded secret/PII handling, and real prompt/tool-definition scanning integrated into conservative policy decisions. Regressions cover primitive JSON credentials, normalized URL and key collisions, retained endpoint tokens, and credential-transfer instructions. Scanner findings never grant authorization.

This is the single cumulative owner PR. It remains a draft while scoped policy composition, egress/privacy and transport authorizations, audit/callbacks, durable approvals, auto-approval/Jev, sandbox planning, and crypto/keyring/pairing are completed and reviewed. It must not merge until the full implementation and platform checks pass. The description will be rewritten around the final change before marking ready.

At redaction checkpoint e57de621, all local gates pass: formatting, strict all-target/all-feature Clippy, default and all-feature tests, all-target builds, MSRV 1.88, warning-denying rustdoc, dependency checks, per-source-file coverage above 90%, and actual Linux native module loading/dispatch from two working directories. Hosted Linux, macOS and Windows native CI, MSRV, docs and supply-chain checks also pass (runs 38086551515 and 38086555059). Later engines and the final cumulative revision require fresh checks.

senamakel and others added 2 commits October 10, 2026 22:55
Co-authored-by: Medulla <medulla@tinyhumans.ai>
Co-authored-by: Medulla <medulla@tinyhumans.ai>
@coderabbitai

coderabbitai Bot commented Oct 10, 2026

Copy link
Copy Markdown

Important

Draft PR not reviewed

Draft PRs are not automatically reviewed by default.

  • Trigger a manual review

To automatically review draft PRs, update your CodeRabbit configuration:

reviews:
  auto_review:
    drafts: true
  • Autofix · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Comment @coderabbitai help to get the list of available commands.

senamakel and others added 10 commits October 10, 2026 23:19
Co-authored-by: Medulla <medulla@tinyhumans.ai>
Co-authored-by: Medulla <medulla@tinyhumans.ai>
Co-authored-by: Medulla <medulla@tinyhumans.ai>
Co-authored-by: Medulla <medulla@tinyhumans.ai>
Co-authored-by: Medulla <medulla@tinyhumans.ai>
Co-authored-by: Medulla <medulla@tinyhumans.ai>
Co-authored-by: Medulla <medulla@tinyhumans.ai>
Co-authored-by: Medulla <medulla@tinyhumans.ai>
Co-authored-by: Medulla <medulla@tinyhumans.ai>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant