Previous audit allowed up to 5 requests in 30s — too generous, hid real regressions. New contract: after a 5s settle (covers legitimate mount-time fetches), the next 55s of operator inactivity must produce zero/api/* or /internal/* requests. 55s fits between two consecutive 60s topbar badge polls. Operator-experience contract: when you stop typing, canvas stops fetching.
Previous audit allowed up to 5 requests in 30s — too generous, hid real regressions. New contract: after a 5s settle (covers legitimate mount-time fetches), the next 55s of operator inactivity must produce **zero** `/api/*` or `/internal/*` requests. 55s fits between two consecutive 60s topbar badge polls. Operator-experience contract: when you stop typing, canvas stops fetching.
Previous audit allowed up to 5 requests in a 30s window — generous,
hid real regressions. Tighten:
- 5s settle after each scene becomes interactive (covers the burst
of mount-time fetches every scene legitimately fires)
- 55s observation window after settle, sized to fit between two
consecutive 60s topbar badge polls
- MAX_REQ_PER_WINDOW = 0; any /api/* or /internal/* request during
the window fails the assertion
This is the operator-experience contract: when you stop typing,
canvas stops fetching.
shad
merged commit 4adb9433d1 into main2026-06-15 00:25:13 +00:00
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Previous audit allowed up to 5 requests in 30s — too generous, hid real regressions. New contract: after a 5s settle (covers legitimate mount-time fetches), the next 55s of operator inactivity must produce zero
/api/*or/internal/*requests. 55s fits between two consecutive 60s topbar badge polls. Operator-experience contract: when you stop typing, canvas stops fetching.