Skip to content

Creer v1.2 — HMAC signed peer trust - #14

Draft
seven0070 wants to merge 14 commits into
mainfrom
cursor/creer-v1.2-peer-trust-4a94
Draft

Creer v1.2 — HMAC signed peer trust#14
seven0070 wants to merge 14 commits into
mainfrom
cursor/creer-v1.2-peer-trust-4a94

Conversation

@seven0070

Copy link
Copy Markdown
Owner

Summary

Implements Creer v1.2.0: HMAC signed peer trust (practical shared-secret trust between registries; mTLS remains optional human infra).

Backend

  • CREER_PEER_TRUST_SECRET + CREER_PEER_TRUST_MODE (off | optional | required)
  • Signs /registry and /registry/discover payloads with HMAC-SHA256 trust block
  • Federated peer fetch verifies signatures; peer_meta.trust_status
  • Version 1.2.064 tests passed

Extension

  • Trust summary + QuickPick badges (signed / unsigned / …)
  • creer.requireSignedPeers client-side filter
  • Probe shows trust status when available

Still human-only

  • Marketplace/Open VSX: VSCE_PAT / OVSX_PAT (see RELEASE.md)
  • Full mutual TLS between registries: deploy-time infra beyond this HMAC trust layer

Test plan

  • /health1.2.0 + peer_trust_mode / peer_trust_signing
  • With secret set, /registry includes valid trust.sig
  • required mode rejects unsigned peer payloads
  • optional accepts unsigned; rejects tampered sigs
  • Extension federated browse shows trust counts
  • requireSignedPeers filters unsigned peer packs
  • (Human) Publish when ready via RELEASE.md
Open in Web Open in Cursor 

cursoragent and others added 14 commits August 8, 2026 08:14
Scaffold AI repo generation end-to-end: planner/generator API with
path validation, TypeScript extension command to write files into the
workspace with optional git init, and a PLAN.md for v0.2 priorities.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Backend: curated templates, /plan + /templates, stronger validation,
optional GitHub repo create API. Extension: plan preview before write,
per-file overwrite protection, GitHub push flow, /creer chat entry and
@creer participant, with path-safe writes and shell-safe git exec.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
…rdening

Add SSE /generate/stream with per-file progress, OpenAI-compatible base URL
and CREER_OFFLINE stubs, LICENSE/CI bake-ins, SecretStorage for GitHub tokens,
and GIT_ASKPASS push so tokens never appear on argv or remote URLs.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Add stream job_id cancellation, license/CI bake-in options with GET
/bakeins, telemetry-free quality gates, and extension AbortSignal
progress cancel plus bake-in QuickPicks.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Add installable JSON/YAML template packs with /packs API and pack_id
planning, extension multi-root workspace picker, and generated-content
diff preview before writing files to disk.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Add remote pack install/delete and marketplace catalog, side-by-side
vscode.diff review for write conflicts, and vsce/ovsx packaging docs
so the extension is ready to publish without shipping secrets.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Add searchable /registry with JSON pack downloads, extension marketplace
icon, Browse Pack Registry command, changelog, and verified vsix packaging
path for Marketplace/Open VSX (signing remains a human PAT step).

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Add multi-host registry federation via CREER_REGISTRY_PEERS and
/registry/federated, Browse Federated Registry in the extension, plus
GitHub Actions CI and artifact-first release that publishes only when
VSCE_PAT/OVSX_PAT secrets are configured.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Add peer status/probe APIs and ad-hoc peers on federated queries,
Manage Registry Peers + peer-aware browse UI, GitHub Release assets on
tags, and RELEASE.md for the human VSCE/OVSX token publish path.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Add optional CREER_REGISTRY_TOKEN for pack/peer write endpoints, gossip-lite
/registry/discover with federated discover=true expansion, and extension
SecretStorage registry token plus Discover peers UX. Core generate stays public.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Add SSRF/private-IP peer guards, allow/deny lists, hop budgets with cycle
detection, max_hops on federated queries, and extension trust warnings for
private peers plus policy-aware federation status.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Add shared-secret HMAC signing for registry/discover payloads, trust modes
off/optional/required for federated verification, and extension UX for
trust status plus optional requireSignedPeers filtering. mTLS remains a
human infra option beyond this.

Co-authored-by: Sanath S Patil <sanathpatil8861@gmail.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants