Skip to content

ci(rootbundle): lock compatibility vectors - #6

Merged
weikengchen merged 1 commit into
mainfrom
codex/rootbundle-ci-golden
Jul 24, 2026
Merged

ci(rootbundle): lock compatibility vectors#6
weikengchen merged 1 commit into
mainfrom
codex/rootbundle-ci-golden

Conversation

@weikengchen

Copy link
Copy Markdown
Contributor

Summary

  • add byte-for-byte v1 payload and signed-bundle golden vectors
  • verify decode/re-encode and 2-of-2 quorum compatibility against those vectors
  • add a deterministic vector generator and compatibility/release policy
  • add rootbundle-specific and full-workspace GitHub Actions gates

This is the first safety gate before BitcoinPIR pins this repository and removes its stale nested rootbundle copy.

Verification

  • cargo test --locked -p rootbundle --all-targets
  • cargo test --locked --workspace --all-targets

Follow-up

After merge, configure the rootbundle compatibility check as required and protect the rootbundle-v* release tag namespace. Then the BitcoinPIR consumer can pin an exact commit, run production-bundle compatibility verification, and delete the nested copy.

@weikengchen
weikengchen merged commit 80ad9b1 into main Jul 24, 2026
2 checks passed
@weikengchen
weikengchen deleted the codex/rootbundle-ci-golden branch July 24, 2026 16:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant