Commit Graph
10 Commits
Author SHA1 Message Date
clawbot b4eed47511 Let a plain docker build pass and stamp the git version (closes #57)
check / check (push) Failing after 20s
The size tests skip a case whose secret needs more locked memory than
RLIMIT_MEMLOCK allows: memguard panics otherwise, and a plain
`docker build .` runs under an 8 MiB limit. script/cibuild still runs
every case.

The build stage stamps the VERSION build argument, else
`git describe --tags --always`, and fails when .git is present but
yields no version. `make build` stamps `git describe` too instead of
the fixed 0.1.0. .dockerignore keeps .git/config out; script/docker is
now the canonical copy.

Model: opus-5-5
2026-10-02 10:21:22 +00:00
sneak 70d19d09d0 latest 2025-07-22 13:35:19 +02:00
sneak 816f53f819 Replace shell-based keychain implementation with keybase/go-keychain library
- Replaced exec.Command calls to /usr/bin/security with native keybase/go-keychain API
- Added comprehensive test suite for keychain operations
- Fixed binary data storage in tests using hex encoding
- Updated macse tests to skip with explanation about ADE requirements
- All tests passing with CGO_ENABLED=1
2025-07-21 15:58:41 +02:00
sneak c9774e89e0 WIP: refactor to use memguard for secure memory handling
- Add memguard dependency
- Update ReadPassphrase to return LockedBuffer
- Update EncryptWithPassphrase/DecryptWithPassphrase to accept LockedBuffer
- Remove string wrapper functions
- Update all callers to create LockedBuffers at entry points
- Update interfaces and mock implementations
2025-07-15 07:23:58 +02:00
sneak 0b31fba663 latest from ai, it broke the tests 2025-06-20 05:40:20 -07:00
sneak fbda2d91af add secret versioning support 2025-06-08 22:07:19 -07:00
sneak 2443256338 latest, trying to get sep to work without ADP membership 2025-05-29 04:03:40 -07:00
sneak 354681b298 latest 2025-05-28 14:06:29 -07:00
sneak efedbe405f latest 2025-05-28 07:38:07 -07:00
sneak 7671eaaa57 initial 2025-05-28 04:02:55 -07:00