Skip to content

feat(sdk-go): bind filesystem operations to explicit identity - #2097

Open
GodBlf wants to merge 1 commit into
opensandbox-group:mainfrom
GodBlf:codex/filesystem-identity-go-pr
Open

GodBlf wants to merge 1 commit into
opensandbox-group:mainfrom
GodBlf:codex/filesystem-identity-go-pr

Conversation

@GodBlf

@GodBlf GodBlf commented Sep 30, 2026

Copy link
Copy Markdown
Contributor

Summary

Adds sandbox.FilesWithIdentity(uid, gid) so Go callers can bind file operations to an explicit Linux UID/GID.

Includes an identity-bound filesystem interface and client, regression tests, and Go documentation.

Bound clients preserve connection and endpoint-routing settings. Unsupported identity routes surface as errors without falling back to the default filesystem routes. Identity selection belongs in the trusted backend; this feature enforces Linux filesystem permissions and does not introduce a tenant isolation boundary.

Related to #1843. Follows core #2070, merged on September 30, 2026. This PR is independent of the other SDK follow-ups.

Testing

Local results for commit 2685c1832958d3d4d012eb384756d5f7be8d22d9 on merged-main base 04dd996ca2b72470d73ecfae24ca267addceb100.

  • Not run

  • Unit tests

  • Separate live-sandbox integration run on this rebased head

  • e2e / manual verification on this rebased head

  • Linux Go 1.25.9: go test -count=1 ./... passed for all packages.

  • pnpm docs:build passed on this rebased branch.

Real-sandbox client verification was not run for this language; coverage is from the unit/build checks above.

Breaking Changes

  • None
  • Yes

Checklist

  • Linked Issue or clearly described motivation
  • Added/updated docs
  • Added/updated tests
  • Security impact considered
  • Backward compatibility considered

Copilot AI balanced review requested due to automatic review settings September 30, 2026 13:57

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot was unable to review this pull request because the user who requested the review has reached their quota limit.

@github-actions github-actions Bot added documentation Improvements or additions to documentation sdk/go size/M Denotes a PR that changes 30-99 lines, ignoring generated files. labels Sep 30, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

documentation Improvements or additions to documentation sdk/go size/M Denotes a PR that changes 30-99 lines, ignoring generated files.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants