Block a user
TLS cert key collision: duplicate checks for shared IP + SNI targets
Port check IP↔hostname association is lossy (single hostname per IP:port)
Per-nameserver state creates unbounded growth (no pruning)
Watcher startup context bug: startCtx expires after fx startup
Spec review: design issues and edge cases in README
Spec review: design issues and edge cases in README
Created individual issues for all 10 items:
- #43 — Watcher startup context bug
- #44 — Per-nameserver state unbounded growth
- #45 — Port check IP↔hostname association lossy
- #46…
Notification delivery is fire-and-forget with no retry
CNAME chain + per-NS storage interaction needs clarification
State file format migration logic missing
No DNSSEC validation in iterative resolution
Race between DNS and port/TLS checks on stale IPs
No backoff on persistent nameserver failures
TLS cert key collision for shared IP + SNI targets
Port check IP↔hostname association is lossy for shared IPs
Per-nameserver state creates unbounded growth
Bug: Watcher startup context expires immediately
Dockerfile lint stage is skipped by BuildKit (unreferenced stage)
fix: change module path to sneak.berlin/go/upaas (closes #143)
✅ Review PASS — Module Path Migration
Independent reviewer for PR #149 — fix: change module path to sneak.berlin/go/upaas (closes…
fix: change module path to sneak.berlin/go/upaas (closes #143)
[manager] Self-review detected — removing merge-ready. Dispatching an independent reviewer.