Skip to content

[AGENT] docs: clarify production auth smoke setup and renewal - #344

Merged
BASIC-BIT merged 1 commit into
mainfrom
codex/production-auth-smoke-setup
Sep 24, 2026
Merged

BASIC-BIT merged 1 commit into
mainfrom
codex/production-auth-smoke-setup

Conversation

@BASIC-BIT

Copy link
Copy Markdown
Owner

[AGENT] The production auth smoke runbooks still implied OAuth-only capture and automatic enablement after storing the secret. Document the explicit manual dispatch, complete Clerk cookie capture, fresh-browser verification after JWT expiry, and operator-owned session renewal.

Clarify that the smoke validates the signed-in account page, including possible identity-row initialization, without proving OAuth consent, provider linking, or profile writes.

Validation: markdownlint and the normal pre-commit hook passed. The dedicated account's exported session passed locally after JWT expiry, then the production workflow passed with its authenticated step executed.

@github-actions

github-actions Bot commented Sep 23, 2026

Copy link
Copy Markdown

[AGENT]

Claude Review

Claude review for commit adf9908cc0ab72774b629bb2ff9f666dfb8f7ab0 is unavailable because the pull request was merged.

This is not a current review or approval.

@greptile-apps

greptile-apps Bot commented Sep 23, 2026

Copy link
Copy Markdown

RetriggerConfidence Score: 5/5

The documentation-only PR appears safe to merge with no actionable issues identified.

Summary

This PR clarifies how operators capture, verify, dispatch, and renew the production authenticated-account smoke state.

  • Documents that authenticated checks require an explicit manual dispatch and are not enabled merely by configuring repository settings.
  • Specifies the complete Clerk browser-state capture and post-JWT-expiry verification process.
  • Defines operator ownership and renewal responsibilities for the dedicated test account.
  • Clarifies the smoke’s assertions, limited write footprint, and lack of OAuth or provider-linkage coverage.

Reviews (1) · Last reviewed commit: "docs: clarify production auth smoke setu..."

@chatgpt-codex-connector

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review Completed 2026-09-23T19:26:28.240511Z adf9908 PR opened
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

@github-actions

Copy link
Copy Markdown

PR verification report

All configured preview and verification checks passed.

Check Result Evidence
Mutation data flow PASSED Open artifact
Hosted data flow PASSED Open artifact
Public route screenshots PASSED Open artifact
Public route image diff PASSED Open artifact
Storybook screenshots PASSED Open artifact
Storybook image diff PASSED Open artifact

Changed visual baselines: none.

Updated from Baseline Checks run 35908950512, attempt 1 for adf9908. This comment is updated in place.

@BASIC-BIT
BASIC-BIT merged commit 069afc8 into main Sep 24, 2026
22 checks passed
@BASIC-BIT
BASIC-BIT deleted the codex/production-auth-smoke-setup branch September 24, 2026 05:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant