Dehydrated devices: automatic claim at start / 4S unlock, rotation schedule, full state set (§10.4.7) #149
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Review finding 2026-08-27 (B8). Claim and rotation run only when the consumer calls
manageDehydratedDevice; neither session start norunlockSecretStoragetriggers them (SessionCrypto.kt:899-903only loads the key); the "claim before the first sync request" ordering is unimplemented; non-404 GET/PUT failures throw instead ofFailed(cause); the state enum lacks Disabled/Claiming/Failed(cause),Activecarries no device id,ClaimFailedno cause; no rotation test and no engine test of the M_UNRECOGNIZED → Unsupported path.Acceptance (§10.4.7-4/5/7, D73): each MUST above implemented and tested, or the spec amended where the decider prefers opt-in (record as D-entry).