Skip to content

Commit 3732fe1

Browse files
chore(deps): pin Codex provider to published npm 0.1.1 (#1192)
1 parent 5745677 commit 3732fe1

3 files changed

Lines changed: 14 additions & 5 deletions

File tree

‎bun.lock‎

Lines changed: 2 additions & 4 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

‎package.json‎

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -87,7 +87,7 @@
8787
},
8888
"dependencies": {
8989
"@corbits/agent-intern": "workspace:*",
90-
"@corbits/codex-provider": "github:corbitsdev/corbits-codex-provider",
90+
"@corbits/codex-provider": "0.1.1",
9191
"@corbits/oauth-core": "0.2.0",
9292
"@corbits/openai-responses": "github:corbitsdev/corbits-openai-responses",
9393
"@corbits/xai-provider": "github:corbitsdev/corbits-xai-provider",

‎tests/unit/codex-auth.test.ts‎

Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -157,6 +157,17 @@ describe("accountIdFromIdToken", () => {
157157
expect(accountIdFromIdToken("not-a-jwt")).toBeUndefined();
158158
expect(accountIdFromIdToken(makeIdToken({ sub: "x" }))).toBeUndefined();
159159
});
160+
161+
test("omits account ids that would split a chatgpt-account-id header", () => {
162+
expect(
163+
accountIdFromIdToken(
164+
makeIdToken({ chatgpt_account_id: "acct\r\ninjected" }),
165+
),
166+
).toBeUndefined();
167+
expect(
168+
accountIdFromIdToken(makeIdToken({ chatgpt_account_id: "acct\0nul" })),
169+
).toBeUndefined();
170+
});
160171
});
161172

162173
describe("Codex profile store", () => {

0 commit comments

Comments
 (0)