Skip to content

POC - transaction courier - #1

Open
saefstroem wants to merge 10 commits into
mainfrom
poc
Open

saefstroem wants to merge 10 commits into
mainfrom
poc

Conversation

@saefstroem

Copy link
Copy Markdown
Owner

No description provided.

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot encountered an error and was unable to review this pull request. You can try again by re-requesting a review.

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🟡 Changes recommended

The signing transition can lose both transaction copies on power failure, and descriptor/path validation has correctness gaps.

Review effort: Balanced
Findings: 2 High severity · 1 Medium severity · 1 Low severity

Open (4)

Comment thread crates/firmware/src/storage/vault.rs
Comment thread crates/protocol/src/ledger/path.rs
Comment thread crates/protocol/src/usb/header.rs
Comment thread crates/protocol/Cargo.toml Outdated

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🔵 Needs a closer look

A new transaction can inherit the previous transaction’s retry deadline and exponential backoff.

Review effort: Balanced
Findings: None

Resolved since last review (4)
Previously missed (1)

In code that hasn't changed since last review

Medium severity Reset retry schedule when clearing pending transaction

crates/​firmware/​src/​signing.rs:62

Reset the retry schedule when there is no pending transaction. Otherwise, after a failed signing attempt sets an exponential delay, clearing that transaction and submitting a new one leaves the new transaction blocked until the old next_poll_at (up to 30 seconds), and its first failure inherits the old backoff.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants