-
Notifications
You must be signed in to change notification settings - Fork 0
Issues
is:issue state:open
is:issue state:open
Issue creation is restricted in this repository
Search results
feat(security): receiver WebhookVerifier + replay protection (M3d)
area:securitySSRF guard, signing, secret-at-rest, receiver verifySSRF guard, signing, secret-at-rest, receiver verifypriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:criticalSSRF/signing/secret/public-API/migrations; review + design (Opus, max)SSRF/signing/secret/public-API/migrations; review + design (Opus, max)type:featNew featureNew featureStatus: Open.feat(security): secret-at-rest via host IDataProtectionProvider (M3c)
area:securitySSRF guard, signing, secret-at-rest, receiver verifySSRF guard, signing, secret-at-rest, receiver verifypriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:criticalSSRF/signing/secret/public-API/migrations; review + design (Opus, max)SSRF/signing/secret/public-API/migrations; review + design (Opus, max)type:featNew featureNew featureStatus: Open.feat(security): outbound payload + response-read caps + TLS-on (M3b)
area:deliveryDelivery loop / dispatcher / retry / signingDelivery loop / dispatcher / retry / signingarea:securitySSRF guard, signing, secret-at-rest, receiver verifySSRF guard, signing, secret-at-rest, receiver verifypriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:criticalSSRF/signing/secret/public-API/migrations; review + design (Opus, max)SSRF/signing/secret/public-API/migrations; review + design (Opus, max)type:featNew featureNew featureStatus: Open.feat(security): non-bypassable SSRF guard (M3a)
area:deliveryDelivery loop / dispatcher / retry / signingDelivery loop / dispatcher / retry / signingarea:securitySSRF guard, signing, secret-at-rest, receiver verifySSRF guard, signing, secret-at-rest, receiver verifypriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:criticalSSRF/signing/secret/public-API/migrations; review + design (Opus, max)SSRF/signing/secret/public-API/migrations; review + design (Opus, max)type:featNew featureNew featureStatus: Open.feat(sink): dogfood publish-through + docs + retry-storm GIF (S6)
agentEligible for autonomous agent pickupEligible for autonomous agent pickuparea:docsDocs bundle / samplesDocs bundle / samplespriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:lowtests/samples; CI green + light approvaltests/samples; CI green + light approvaltype:featNew featureNew featureStatus: Open.#69 In williamdewitt/Caliber.Webhooks;feat(testing): Caliber.Webhooks.Testing — in-proc sink + WaitForAsync (S5)
agentEligible for autonomous agent pickupEligible for autonomous agent pickuparea:packagingNuGet packaging / CPM / depsNuGet packaging / CPM / depspriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:coresrc/Caliber.Webhooks; code-owner review (Opus, high effort)src/Caliber.Webhooks; code-owner review (Opus, high effort)type:featNew featureNew featureStatus: Open.#68 In williamdewitt/Caliber.Webhooks;feat(sink): signature panel — HMAC + timestamp freshness (S4)
agentEligible for autonomous agent pickupEligible for autonomous agent pickuparea:docsDocs bundle / samplesDocs bundle / samplespriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:lowtests/samples; CI green + light approvaltests/samples; CI green + light approvaltype:featNew featureNew featureStatus: Open.#67 In williamdewitt/Caliber.Webhooks;feat(sink): per-bucket fault injection — status/latency/drop (S3)
agentEligible for autonomous agent pickupEligible for autonomous agent pickuparea:docsDocs bundle / samplesDocs bundle / samplespriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:lowtests/samples; CI green + light approvaltests/samples; CI green + light approvaltype:featNew featureNew featureStatus: Open.#66 In williamdewitt/Caliber.Webhooks;feat(sink): live dashboard — SSE list + detail (S2)
agentEligible for autonomous agent pickupEligible for autonomous agent pickuparea:docsDocs bundle / samplesDocs bundle / samplespriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:lowtests/samples; CI green + light approvaltests/samples; CI green + light approvaltype:featNew featureNew featureStatus: Open.#65 In williamdewitt/Caliber.Webhooks;feat(sink): catch-all capture → bounded store + GET /api/hooks (S1)
agentEligible for autonomous agent pickupEligible for autonomous agent pickuparea:docsDocs bundle / samplesDocs bundle / samplespriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:lowtests/samples; CI green + light approvaltests/samples; CI green + light approvaltype:featNew featureNew featureStatus: Open.#64 In williamdewitt/Caliber.Webhooks;epic: WebhookSink + Caliber.Webhooks.Testing (webhook sink & delivery test harness)
area:docsDocs bundle / samplesDocs bundle / samplesepicA north-star milestone-level item to decomposeA north-star milestone-level item to decomposepriority:p2Normal priorityNormal priorityrisk:lowtests/samples; CI green + light approvaltests/samples; CI green + light approvalStatus: Open.#49 In williamdewitt/Caliber.Webhooks;ci: run the Roslyn MCP in the CI @claude agent
agentEligible for autonomous agent pickupEligible for autonomous agent pickuparea:ciCI/CD workflows + automationCI/CD workflows + automationpriority:p2Normal priorityNormal priorityreadyHas acceptance criteria + DoD; pickable by the loopHas acceptance criteria + DoD; pickable by the looprisk:coresrc/Caliber.Webhooks; code-owner review (Opus, high effort)src/Caliber.Webhooks; code-owner review (Opus, high effort)type:ciCI configurationCI configurationStatus: Open.#29 In williamdewitt/Caliber.Webhooks;