Skip to content

Add environment-scoped V5 verify endpoint - #2365

Open
igorosip0v wants to merge 1 commit into
mainfrom
igorosip0v/v5-verify-environment
Open

igorosip0v wants to merge 1 commit into
mainfrom
igorosip0v/v5-verify-environment

Conversation

@igorosip0v

Copy link
Copy Markdown
Contributor

Adds POST /api/v5/verify/{environment}/{rp_id}. The environment is validated from the URL, then passed to the shared proof-verification flow. A conflicting environment in the request body is rejected. V4 continues to use the body value, or defaults to production when it is omitted.

Validation:

  • TypeScript check and Prettier check passed.
  • Existing V4 verification tests passed (6 suites, 103 tests).

@igorosip0v
igorosip0v requested a review from bin-umar as a code owner October 5, 2026 16:24
@igorosip0v
igorosip0v deployed to development October 5, 2026 16:25 — with GitHub Actions Active
@igorosip0v igorosip0v self-assigned this Oct 5, 2026
@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Oct 5, 2026 •

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review ✅ Completed 2026-10-05T16:29:40.564812Z f9d7aab PR opened
🔒 Security Review ✅ Completed 2026-10-05T16:33:58.981279Z f9d7aab PR opened
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: f9d7aab01b

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment on lines +13 to +17
if (!isValidRpId(rpId)) {
return errorResponse({
statusCode: 400,
code: "invalid_rp_id",
detail:

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

P1 Badge Add tests for the new V5 handler branches

A repo-wide search under web/tests found no V5 verification tests, leaving the new invalid-RP, invalid-environment, body/path mismatch, and path-environment injection branches unexercised. Add a mirrored web/tests/api/v5/... handler suite that covers these distinct outcomes and verifies whether downstream verification is invoked.

AGENTS.md reference: AGENTS.md:L33-L37

Useful? React with 👍 / 👎.

@Takaros999 Takaros999 left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

introducing a new /verify endpoint adds one more endpoint we need to think about and maintain, the return doesn't seem that high for introducing a new endpoint

This branch was successfully deployed

1 active deployment
development — f9d7aab0 Deployed Oct 5, 2026 by igorosip0v via End-to-end Tests #4921
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants