Skip to content

firma-run: restrict macOS VZ launch contract custody#199

Merged
falcucci merged 2 commits into
mainfrom
push-nzowtypztmlk
Jun 26, 2026
Merged

firma-run: restrict macOS VZ launch contract custody#199
falcucci merged 2 commits into
mainfrom
push-nzowtypztmlk

Conversation

@falcucci

Copy link
Copy Markdown
Contributor

part of FIR-380

the VZ launch contract describes how the runner starts the governed command, including argv, cwd, env, mounts and runtime identity. FIR-112 puts this path on the macOS structural parity line, so the contract has to be treated as private state from the start.

tests cover token exclusion and 0700/0600 custody.

@falcucci falcucci self-assigned this Jun 24, 2026
@codecov

codecov Bot commented Jun 24, 2026

Copy link
Copy Markdown

Codecov Report

❌ Patch coverage is 95.49550% with 10 lines in your changes missing coverage. Please review.

Files with missing lines Patch % Lines
crates/firma-run/src/backend/macos_vz.rs 95.49% 9 Missing and 1 partial ⚠️

📢 Thoughts on this report? Let us know!

@falcucci falcucci force-pushed the push-nzowtypztmlk branch 2 times, most recently from 842a78f to 4036c77 Compare June 25, 2026 18:34
@falcucci falcucci requested a review from a team June 25, 2026 18:39
@falcucci falcucci force-pushed the push-nzowtypztmlk branch 4 times, most recently from d1cfcf4 to 158a843 Compare June 26, 2026 09:02
part of FIR-380

the VZ launch contract describes how the runner starts the governed command,
including argv, cwd, env, mounts and runtime identity. FIR-112 puts this path
on the macOS structural parity line, so the contract has to be treated as private
state from the start.

tests cover token exclusion and 0700/0600 custody.
@falcucci falcucci force-pushed the push-nzowtypztmlk branch from 158a843 to 8f6dc1f Compare June 26, 2026 09:13
@falcucci falcucci merged commit c3e72d5 into main Jun 26, 2026
15 checks passed
@falcucci falcucci deleted the push-nzowtypztmlk branch June 26, 2026 21:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant