mirror of
https://github.com/Sea-Haven-Industries/open-swe.git
synced 2026-09-30 12:43:16 +00:00
* feat: TTL and revocation handling for cached GitHub OAuth tokens [closes AB-2322] Persist github_token_expires_at alongside github_token_encrypted, treat expired cache entries as missing so we re-resolve before kicking off runs, and invalidate the cached ciphertext on a downstream 401 so the next invocation gets a fresh token instead of replaying a revoked one. Co-authored-by: Johannes du Plessis <51395795+johannes117@users.noreply.github.com> * webapp: forward installation-token expiry to reviewer cache writes The three reviewer-thread persist sites in webapp.py were calling get_github_app_installation_token() (no expiry) and persist_encrypted_github_token without expires_at, so cached App tokens were treated as never-expiring even though they actually expire in ~1 hour. --------- Co-authored-by: open-swe[bot] <open-swe@users.noreply.github.com> Co-authored-by: Johannes du Plessis <51395795+johannes117@users.noreply.github.com> Co-authored-by: Johannes du Plessis <johannes@langchain.dev> |
||
|---|---|---|
| .. | ||
| auth.py | ||
| authorship.py | ||
| comments.py | ||
| github_app.py | ||
| github_comments.py | ||
| github_org_membership.py | ||
| github_token.py | ||
| github_user_email_map.py | ||
| langsmith.py | ||
| linear.py | ||
| linear_team_repo_map.py | ||
| messages.py | ||
| model.py | ||
| multimodal.py | ||
| repo.py | ||
| sandbox.py | ||
| sandbox_paths.py | ||
| sandbox_state.py | ||
| slack.py | ||
| slack_feedback.py | ||