Skip to content

fix(addresses): sync 40204 book for the r1005 reroll (genesis 1dcfc490) - #15

Open
SaulBuilds wants to merge 3 commits into
mainfrom
fix/reroll-address-book-0aab474b
Open

SaulBuilds wants to merge 3 commits into
mainfrom
fix/reroll-address-book-0aab474b

Conversation

@SaulBuilds

@SaulBuilds SaulBuilds commented Oct 4, 2026 •

Copy link
Copy Markdown
Contributor

[DGX]

Re-syncs the 40204 address book for the r1005 reroll (2026-10-06): genesis block 0x1dcfc4909dd9fdcb…, G = citrate-chain bf551422. This replaces the 2026-09-29 book (citrate-chain 0aab474b) that this PR first carried. The second commit stacks on the first.

Changes

  • citrate_sdk/_generated/federation_contract.json is re-synced verbatim with scripts/sync_contract.py from citrate-federation dgx/r1005-contract (federation#310). sync_contract.py --check passes against that branch.
  • Updated pins:
    • CitrateMemberSBT 0xf8aD11f6…
    • MembershipStakeVault 0xA93F7f68…
    • CitrateWalletFactory 0x9Ac05AD6…
    • CitratePaymaster 0x804a8021…
  • The predictAddress(0x4242…) vector is now 0x6Ef7617980a1fe91D3449315E8D48f99A68Bb5eA. I read it from the live factory on rpc.citrate.ai, and it equals the local prediction.
  • New test test_no_r0929_addresses_leak.
  • Version stays 0.6.4, which has not been published. The CHANGELOG entry is rewritten for r1005.

Tests: pytest: 858 passed, 49 skipped. ruff and mypy are clean.

Merge order: merge after federation#310. CI's contract-drift job checks against federation main.

After merge: publish citrate-labs-sdk 0.6.4 to PyPI with the guarded publish dispatch.

🤖 Generated with Claude Code

…st-reroll)

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01Vv2gVzy5XLFKg48yckN9YQ
@SaulBuilds
SaulBuilds requested a review from a team as a code owner October 4, 2026 20:23
…c490, chain bf551422)

Vendored federation_contract.json re-synced verbatim from citrate-federation
dgx/r1005-contract (federation#310) via scripts/sync_contract.py. Pins updated:
membership SBT/vault, AA factory/paymaster, and the predictAddress(0x4242...)
vector re-read from the live factory 0x9Ac05AD6 on rpc.citrate.ai. Adds a
guard that no 09-29 book address leaks.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01Vv2gVzy5XLFKg48yckN9YQ
@SaulBuilds SaulBuilds changed the title fix(addresses): regenerate 40204 book from citrate-chain 0aab474b (post-reroll) fix(addresses): sync 40204 book for the r1005 reroll (genesis 1dcfc490) Oct 6, 2026
BerryManifold
BerryManifold previously approved these changes Oct 6, 2026

@BerryManifold BerryManifold left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Reviewed the Python SDK r1005 federation contract/address sync and test vector updates at current head. Approved for merge; branch/check gates still apply.

Matr0xshka
Matr0xshka previously approved these changes Oct 6, 2026

@Matr0xshka Matr0xshka left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Reviewed the Python SDK r1005 federation contract/address sync and test vector updates at current head. Approved for merge; branch/check gates still apply.

secret-scan: generic-api-key flagged 3 values in the regenerated
_generated/federation_contract.json under ModelAccessControl /
CitrateECDSAValidator / WebAuthnP256Validator. Each is a public 20-byte
contract address. Add the federation-standard .gitleaks.toml (same as
citrate-explorer): default rules + one value allowlist for exactly
0x + 40 hex. Private keys (64 hex) and all other formats still fail.

locked-env: pip-audit flags multidict 6.7.1 (CVE-2026-104874, fixed
6.9.1). uv lock --upgrade-package multidict. ruff, mypy, pip-audit and
pytest pass.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01Vv2gVzy5XLFKg48yckN9YQ
@SaulBuilds
SaulBuilds dismissed stale reviews from Matr0xshka and BerryManifold via 946fa43 October 6, 2026 15:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants