Conversation
|
Important Draft PR not reviewedDraft PRs are not automatically reviewed by default.
To automatically review draft PRs, update your CodeRabbit configuration: reviews:
auto_review:
drafts: true
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
|
Fixes landed at 287a1d6 Validator findings, both confirmed against upstream v0.70.0
Commands: cargo +1.98.0 fmt --all --check; cargo +1.98.0 clippy --workspace --all-targets -- -D warnings; cargo test -p codexbar (2165 passed, 0 failed); cargo test -p codexbar-desktop-tauri (461 passed, 1 failed: the existing base failure |
|
Fixes landed at c8f874a (round 3 validator findings).
Commands run: cargo +1.98.0 fmt --all --check (ok); cargo +1.98.0 clippy --workspace --all-targets -- -D warnings (ok); cargo test -p codexbar (2165 passed, 0 failed); cargo test -p codexbar-desktop-tauri (461 passed, 1 failed: commands::tests::bootstrap_payload_exposes_every_provider_variant, which also fails on the unmodified base). No frontend change. |
|
Adversarial validation (Claude Opus 5.5) passed at c8f874a Scope: GAP-27, ElevenLabs What I checked against upstream v0.64.0
Checks run at this SHA (toolchain 1.98.0, isolated target dir):
|
Port re-review: ElevenLabs endpoint override, XI_API_KEY alias, tier casing (#726, GAP-27)Reviewed the branch diff What I verified at the current head:
Result: no findings. The port matches upstream semantics on all three GAP-27 behaviors; the deviating/deferred deltas are explicitly listed in the PR body and are out of this item's scope. Files under the cap (mod.rs 696, api_keys.rs 671). No dependency, bridge or frontend logic change beyond the env-label string. |
|
Adversarial validation passed at f3375b8 Scope: ElevenLabs endpoint override, XI_API_KEY alias, tier casing (#726, GAP-27), validated as merged into release/v0.70.0 (merge f3375b8 = merge of c8f874a into a8a3e96). This supplements the earlier adversarial validation at c8f874a (issuecomment-5942960656) with the merged-content check. Attacks (merged content, on top of the earlier pass):
No defects found in the merged content. READY for the un-draft rule. |
Summary
Ports three upstream CodexBar v0.70.0 ElevenLabs behaviors (upstream commit d8d0f33). Closes audit GAP-27.
ELEVENLABS_API_URLis validated (HTTPS or a bare host, no userinfo, no encoded or decoded host delimiters, IPv6 brackets allowed). An invalid value fails before any HTTP request with "ElevenLabs endpoint override ELEVENLABS_API_URL must use HTTPS or a bare host." The path isuser/subscriptionwhen the last base segment isv1, otherwisev1/user/subscription; the query string is kept. The default stayshttps://api.elevenlabs.io/v1/user/subscription.ELEVENLABS_API_KEYfirst, thenXI_API_KEY, blank values skipped. The explicit key and keyring still win over the environment. The Preferences env label now readsELEVENLABS_API_KEY / XI_API_KEY(same pattern as the Ollama row).· <status>; with no tier the raw status is shown; with neither, no plan is set (the old "Subscription" fallback and-separator are gone).Tests
New unit tests port the upstream URL table, rejected overrides, key precedence and tier table.
snapshot_surfaces_credit_and_voice_usagenow expects "Creator".cargo +1.98.0 fmt --all --check,cargo +1.98.0 clippy --workspace --all-targets -- -D warnings: cleancargo test -p codexbar: 2165 passedbootstrap_payload_exposes_every_provider_variantfailure exists on the base branch).Not ported (outside GAP-27)
Other upstream deltas noted for a later pass:
current_overagevalidation, "ElevenLabs API error: HTTP n" messages for non-auth errors, signed 64-bit counters with clamped percent, and the dashboard URLhttps://elevenlabs.io/app/developers/usage.UI proof
No layout change; the plan label text and the env-var label string change. No CUA run was needed for a string-only change, but the main worker can spot-check the plan label.
Written by the codex-2 lane (Codex gpt-6-luna xhigh, reviewed and validated by Claude).