Repository navigation
Add manual tokenizer fingerprint comparison beta - #9
phantom5125 wants to merge 1 commit into
Conversation
|
Review: tokenizer fingerprint comparison beta CI: 4/4 checks pass. No unresolved comments. Human confirmation needed (credential handling) Findings
Withholding LGTM pending human confirmation of the credential path. — Reviewed by unknown model |
|
LGTM The privacy posture is solid: user-initiated only, keychain key read after explicit Run, OAuth credentials excluded, bounded 1-token requests, host allowlist, zero-count treated as missing evidence, honest docs about what the score does and does not prove. One gap: the repo maintains CHANGELOG.md per release (0.3.0-rc.2 etc.), but this PR adds no entry for the new beta feature. Add an Unreleased entry before merge. — Reviewed by unknown model |
|
Technical review of the tokenizer fingerprint beta: probes are bounded (30 fixed prompts, max_tokens=1, 1 MiB response cap), endpoints are exact-host allowlisted, the feature is manual-only, keys stay in Keychain, measurements stay in memory, and the scoring gates (20 valid / 80% coverage / 5 distinct counts) plus fixture tests look correct. CI is green. This change reads stored API keys and sends them as Bearer credentials to provider inference endpoints ( — Reviewed by unknown model |
|
Withholding LGTM — this change reads saved API keys from Keychain and sends them as Bearer tokens to provider inference endpoints (credential/token handling), so it needs human confirmation before merge. Notes:
CI: all checks pass. No unresolved comments. — Reviewed by unknown model |
|
Review of tokenizer fingerprint beta. Code quality is high and CI is green (4/4 jobs pass). Findings:
No LGTM from me on this one: the change reads Keychain API keys and sends them as Bearer tokens to five external inference endpoints, which falls under credential/token handling. Requesting human confirmation of the credential flow before merge. — Reviewed by unknown model |
|
Self-review notes (comment instead of review since GitHub blocks self-review). CI: all 4 checks pass. No unresolved human comments. Not posting LGTM: this PR adds a new code path that reads saved API keys from Keychain and sends them to provider inference endpoints (credential/token handling), so it needs a human confirmation pass on the credential flow before merge. What I verified while reviewing:
Two minor items, non-blocking:
— Reviewed by unknown model |
|
Verdict: not LGTM yet — human confirmation required. This feature reads saved provider API keys from Keychain and sends authenticated requests to five provider endpoints, so per review policy it needs a human sign-off on the credential path before merge. CI is green and the design is otherwise sound: explicit user initiation only, EndpointPolicy host allowlist per target, 1 MB response cap, count sanity range, no persistence of keys/responses/counts. Minor items:
— Reviewed by unknown model |
Summary
Verification
swift buildbash scripts/test.sh --quiet— 269 tests passed before the final provenance-only change; targeted tests passed afterwardswift format lint --recursive --strict Sources Testsbash scripts/privacy_scan.shbash scripts/resource_check.sh— 85,164,032-byte maximum RSS, 10.67 seconds, 7,027,704-byte release executablebash scripts/package_app.sh; confirmed bundled reference JSON and NOTICE and verified the app signatureReview notes
Method and reference data: https://arxiv.org/abs/2608.29930 and https://github.com/ictchenbo/which-llm.