pub struct ExecutionPolicy {
pub javascript_evaluation: bool,
pub vision_assist: bool,
pub fingerprint: bool,
pub humanize: bool,
pub vision_node: Option<String>,
}Expand description
Per-session gate for privileged execution. Defaults to deny; a session must opt in even when the bearer token holds the matching capability.
Fields§
§javascript_evaluation: bool§vision_assist: bool§fingerprint: boolWhether workers leased for this session apply fingerprint spoofing.
Fingerprinting was a process-wide knob on the worker factory
(ChromiumWorkerFactory::with_fingerprint), which meant one operator
decision applied to every principal’s sessions and no caller could see
or choose it. It belongs here for the same reason
javascript_evaluation does: it changes what the browser presents to
the page, so it is a per-session decision the caller makes explicitly
and the runtime records.
humanize: boolWhether workers leased for this session synthesize human-like input
timing (behavioral-engine) instead of driving the browser directly.
Off by default because it changes observable timing on the intent
execution path, and intent verification compares what it asked for
against what the browser did. When on, the synthesized timing is
carried in Evidence::Humanization so the two agree.
vision_node: Option<String>Name of the registered vision node this session escalates to.
None means no node, which means no escalation — not “use whichever
provider the operator configured globally”. Naming a node that is not
configured also declines, so a session cannot be silently redirected to
a different provider than the one it chose.
Trait Implementations§
Source§impl Clone for ExecutionPolicy
impl Clone for ExecutionPolicy
Source§fn clone(&self) -> ExecutionPolicy
fn clone(&self) -> ExecutionPolicy
1.0.0 (const: unstable) · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source. Read more