fix(rules): attribute format mismatches to s901 - #1613
Conversation
Performance BenchmarksCompared
|
|
@codex review Exact current head: |
|
Codex Review: Didn't find any major issues. Keep them coming! ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
If Codex has suggestions, it will comment; otherwise it will react with 👍. Codex can also answer questions or update the PR. Try commenting "@codex address that feedback". |
…le-code-auto-attribution
|
Codex Review: Didn't find any major issues. Swish! ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
If Codex has suggestions, it will comment; otherwise it will react with 👍. Codex can also answer questions or update the PR. Try commenting "@codex address that feedback". |
…le-code-auto-attribution
…le-code-auto-attribution
|
Codex Review: Didn't find any major issues. Nice work! ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
If Codex has suggestions, it will comment; otherwise it will react with 👍. Codex can also answer questions or update the PR. Try commenting "@codex address that feedback". |
…le-code-auto-attribution
|
Codex Review: Didn't find any major issues. Another round soon, please! ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
If Codex has suggestions, it will comment; otherwise it will react with 👍. Codex can also answer questions or update the PR. Try commenting "@codex address that feedback". |
Summary
S901zlibfrom relabeling those checks asS603Campaign evidence
A SafeTensors/zlib routing collision produced both an S901 mismatch and a duplicate S603 finding. Core emitted
Format Validationwithout a rule code, soScanResultselected the first catalog regex matching the message. The wordzlibmatched S603 before the later S901 mismatch rule.The routing collision is handled separately in #1623. This PR uses a genuine zlib-wrapped malicious payload to isolate rule attribution from that routing fix.
Validation