Expand description
Private raw-pack retrieval for synchronous scanners (SPEC-SERVER §11.4). Capabilities authorize only open ticket-bound bytes; public serving is unrelated.
Structs§
- Assignment
- Repository and ticket bindings retained in an authenticated capability.
- Config
Error - Invalid configuration. Never contains supplied keys or credentials.
- Pack
Grant - Raw pack assignment from existing, verified upload-ticket metadata.
- Retrieval
Config - Dedicated active/retained MAC keys and the incoming scanner allowlist.
- Retrieval
Response - A bounded pack segment, fully checked before the adapter returns its bytes.
Constants§
- MARGIN_
MS - Small retrieval margin after the hook timeout.
- MAX_
CALLS - Shared bound for denial, ticket and blob operations; adapter work has headroom.
- MAX_
LIFETIME_ MS - Longest capability validity; hook timeout is at most five minutes.
- MAX_
REQUEST_ BYTES - Bound the complete signed request, including its capability.
- MAX_
RESPONSE_ BYTES - Maximum returned range, or entire pack when no range is requested.
- PATH
- Exact private POST path; auth v2 signs this procedure and the request body.
Functions§
- validate_
config - Validate scanner prerequisites and key separation before serving requests.