Compatibility gate: isolate avatar renderer command override #181

Closed
opened 2026-09-08 02:03:09 +00:00 by nsaspy · 0 comments
Owner

Registry P0/security follow-up. zara-avatar resolves ZARA_AVATAR_RENDERER during service start and immediately queues a renderer probe on its managed actor. A compatibility run that inherits this variable can launch a host-specific renderer command, defeating hermetic fake-dependency proof. TDD: strip ZARA_AVATAR_RENDERER only for zara-avatar compatibility lifecycle and restore it afterward. Do not alter the plugin's legitimate runtime override behavior.

Registry P0/security follow-up. `zara-avatar` resolves `ZARA_AVATAR_RENDERER` during service start and immediately queues a renderer probe on its managed actor. A compatibility run that inherits this variable can launch a host-specific renderer command, defeating hermetic fake-dependency proof. TDD: strip `ZARA_AVATAR_RENDERER` only for zara-avatar compatibility lifecycle and restore it afterward. Do not alter the plugin's legitimate runtime override behavior.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
nsaspy/zara-plugins#181
No description provided.