#206: receiver config propagation, queue hardening, and explicit option behavior.
Validation: strict build, 25 unit tests, 39 integration tests passed (10 skipped, 1 xpass), ASan/UBSan CI, fuzz, Valgrind, coverage, clang-format, and cppcheck all passed.
Residual risks: append/append-verify are rejected rather than implemented; several legacy scanner flags (files-from/relative/links/cvs-exclude) remain outside this safe remediation and should be separately implemented or rejected. Plain TCP remains unauthenticated but is confined to the configured server root; use TLS with a CA for mutual authentication.
Consolidates latest dev, including PR #207 delta validation fixes.
Implemented:
- #201: server-side destination-root confinement, deletion policy gate, and mandatory client certificates when a CA is configured.
- #202: bounded manifest/path validation, poll-based receive deadlines, accepted-socket timeouts, and receiver cancellation wakeups.
- #203: checksum-aware incremental matching; --update skips newer destinations; unsupported append flags fail explicitly.
- #204: CI dev trigger and bounded fuzz execution.
- #205: descriptor-relative O_NOFOLLOW writes, secure mkdir traversal, exclusive temporary files and renameat.
- #206: receiver config propagation, queue hardening, and explicit option behavior.
Validation: strict build, 25 unit tests, 39 integration tests passed (10 skipped, 1 xpass), ASan/UBSan CI, fuzz, Valgrind, coverage, clang-format, and cppcheck all passed.
Residual risks: append/append-verify are rejected rather than implemented; several legacy scanner flags (files-from/relative/links/cvs-exclude) remain outside this safe remediation and should be separately implemented or rejected. Plain TCP remains unauthenticated but is confined to the configured server root; use TLS with a CA for mutual authentication.
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Consolidates latest dev, including PR #207 delta validation fixes.
Implemented:
Validation: strict build, 25 unit tests, 39 integration tests passed (10 skipped, 1 xpass), ASan/UBSan CI, fuzz, Valgrind, coverage, clang-format, and cppcheck all passed.
Residual risks: append/append-verify are rejected rather than implemented; several legacy scanner flags (files-from/relative/links/cvs-exclude) remain outside this safe remediation and should be separately implemented or rejected. Plain TCP remains unauthenticated but is confined to the configured server root; use TLS with a CA for mutual authentication.