improvement(provenance): cleanup secrets boundary (#6374)

* fix(secrets): preserve raw outputs with durable provenance

* improvement(provenance): cleanup boundary

* fix copy resources

* fix fork copies to work with provenance

* address comments

* fix
This commit is contained in:
Vikhyath Mondreti
2026-08-07 17:12:17 -07:00
committed by GitHub
parent 40c0a571fd
commit 5cf1f9be84
287 changed files with 15274 additions and 5960 deletions
@@ -27,6 +27,11 @@ export const loggingSessionMockFns = {
mockWaitForPostExecution: vi.fn().mockResolvedValue(undefined),
mockSetTrustedExecutionCorrelation: vi.fn(),
mockSetExecutionDeadlineAt: vi.fn(),
mockExportResolvedSecretTraceProvenanceForValue: vi.fn().mockReturnValue({
version: 1,
complete: false,
entries: [],
}),
mockProjectBlockLogsForDisplay: vi.fn(async (logs: unknown) => logs),
mockProjectDisplayContent: vi.fn(async (content: unknown) => content),
mockProjectLiveDisplayText: vi.fn(async (_field: string, value: string) => ({ value })),
@@ -59,6 +64,8 @@ function buildLoggingSessionInstance() {
waitForPostExecution: loggingSessionMockFns.mockWaitForPostExecution,
setTrustedExecutionCorrelation: loggingSessionMockFns.mockSetTrustedExecutionCorrelation,
setExecutionDeadlineAt: loggingSessionMockFns.mockSetExecutionDeadlineAt,
exportResolvedSecretTraceProvenanceForValue:
loggingSessionMockFns.mockExportResolvedSecretTraceProvenanceForValue,
projectBlockLogsForDisplay: loggingSessionMockFns.mockProjectBlockLogsForDisplay,
projectDisplayContent: loggingSessionMockFns.mockProjectDisplayContent,
projectLiveDisplayText: loggingSessionMockFns.mockProjectLiveDisplayText,