Repository navigation
fix(oauth): recover saved credentials after delayed authorization - #258
Merged
Merged
Conversation
共有 token を毎回読み直し、401/refresh 失敗で拒否された値を再採用しない。 認可結果を保存後に成功表示し、遅延完了と失敗を後続の呼び出しへ伝える。 検証: bridge 33 件、Worker 382 件、型チェック、schema drift、dry-run build。
Deploying with
|
| Status | Name | Latest Commit | Updated (UTC) |
|---|---|---|---|
| ✅ Deployment successful! View logs |
github-rag-mcp | 96978eb | Sep 30 2026, 09:32 AM |
lipluscodex
commented
Sep 30, 2026
lipluscodex
left a comment
Member
Author
There was a problem hiding this comment.
Lin: Issue #250 と head 96978eb の差分をレビューし、要求を満たすことを確認しました。
共有tokenを毎回読み、遅れて完了した認可の結果を次の呼び出しで利用できます。拒否されたbearerの再採用を防ぎ、新しい並行tokenを誤って拒否しません。callbackの成功表示は交換・atomic保存後となり、失敗/timeoutも後続呼び出しへ伝わります。発行client IDの保持と旧record互換、synthetic資格情報を使う20件のOAuth回帰テストも確認しました。
stdio/HTTPプロトコルと検索の意味は維持されています。関連ドキュメントを更新し、認証情報を公開する差分はありません。範囲逸脱はありません。旧tokenのclient IDは復元できず共有registrationへfallbackする限界は記録済みです。
GitHub CIのtest・CI・Workers Buildsは同じheadでSUCCESS、merge stateはCLEAN。自己レビュー合格。autoモードに従いsquash mergeへ進め、その後このPCへ可逆的に修正版を適用して実stdio検索を確認します。公開リリースは別途マスターの確認が必要です。
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Closes #250
認可完了後も古いメモリ値を使う再認証ループを修正し、各 credential 取得で共有 token ファイルの更新を取り込みます。
401 で拒否された実際の bearer と refresh 失敗値の再採用を防ぎ、発行 client ID を保持して共有 registration の更新にも対応します。
callback の成功表示を交換・atomic 保存の完了後へ移し、pending の失敗・timeout を後続の呼び出しへ安全に伝えます。
検証: bridge 33 テスト(新規 OAuth 回帰 20 件)、既存 Worker 382 テスト、型チェック、schema drift check、Worker dry-run build が成功。
synthetic credential と一時ディレクトリで遅延完了、共有ファイル更新、401、交換・保存・listener 失敗、timeout を検証。要件の日英版と bridge README を同期。
実機の認証ファイル・設定・稼働 process と公開バージョンは変更していません。実機への可逆的適用・検索復旧確認は review 後の別工程です。
旧 token record の発行 client ID は復元できないため、従来の共有 registration を fallback として使用します。