Skip to content

Harden service catalogue loading against malformed data#160

Open
tigpt wants to merge 1 commit intomainfrom
codex/locate-code-vulnerabilities
Open

Harden service catalogue loading against malformed data#160
tigpt wants to merge 1 commit intomainfrom
codex/locate-code-vulnerabilities

Conversation

@tigpt
Copy link
Member

@tigpt tigpt commented Oct 10, 2025

Summary

  • guard the service catalogue loader against missing or malformed JSON so a tampered file cannot crash the randomiser
  • add diagnostics and safe fallbacks when decoding services from the documents directory fails, retaining the bundled data instead
  • provide a descriptive calendar access prompt so permission requests are transparent to users

Testing

  • not run (Xcode tooling unavailable in container)

https://chatgpt.com/codex/tasks/task_e_68e910c2757c83329412d6d9c4a8fcf2

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant