Add focused fuzzing for parser and protocol boundaries #1035
PierrunoYT
started this conversation in
Ideas
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Proposal
The repository has extensive deterministic Go tests but no
func Fuzz*targets at auditedmainrevision1b5db1765672820caac1684b168c9898b5ba3593. This is not a coverage-percentage complaint and should not become a mandate to fuzz every package.The proposal is to add a small, evidence-driven fuzzing tier for parser and protocol boundaries where malformed byte sequences have meaningful security or reliability consequences.
Candidate order
Guardrails
Questions
Audit context: finding
TEST-03.Full testing audit: https://github.com/PierrunoYT/zero/blob/audit/codebase-audit-2026-09-08/docs/audit/TESTING_AUDIT.md#test-03--no-fuzzing
All reactions