Repository navigation
Archive retained executor work after joined shutdown - #365
Merged
Merged
Conversation
added 6 commits
October 5, 2026 12:10
Add a rehearsal of the composed chain settlement path on real SQLite through the real payment handler and the scripted chain: a paid run credited and paid out exactly once with duplicate and mismatching receipts recorded; a lost response resolved by a verified lookup without a second broadcast; the dispatcher stopped after reserving a transfer and before submitting it, resubmitting the stored bytes once with the same digest; stopped after submitting and before recording, resolved after restart with one transfer in total; a failed refund never sent again while an owed one is sent once from its reserved row; the settlement pass delivering a credit once after the inline attempt failed, with duplicate terminal reports ignored; every drill repeated with the database closed and reopened after each step; and disabled mode refusing every chain action, including for leftover chain orders, while TEST flows are unchanged. Each drill asserts the exact rows of the payment tables and the backend call counts. No wallet, network or chain endpoint is involved. GitHub issue #87.
Bring the branch up to date with main after the account recovery change. The schema policy keeps both raised minima: dispatcher 20 from the account recovery migration and executor 7 from the operator disposition migration. Both require the explicit stopped-service database upgrade. GitHub issue #168.
Bring the payout and refund branch at its corrected head under the rehearsal drills, so that they run against the lifecycle as it will merge: the refund outcome returned to callers, bounded reconciliation lookups and the adapter's id validation. GitHub issue #87.
The refund of an unadmitted intent now reports what became of the money besides its error, so the drills read that outcome: nothing transferred when chain payments are disabled, failed after a refund that was not broadcast, and sent once the next refund is confirmed. GitHub issue #87.
Exercise settlement rehearsals alongside the current payment lifecycle, quote pricing, allowances and operator documentation. GitHub issue #87.
Preserve dispatcher schema 23 alongside executor schema 7 and keep the configuration guide aligned with both schema boundaries. GitHub issue #168.
ctfbruce
marked this pull request as ready for review
October 5, 2026 14:19
ctfbruce
marked this pull request as draft
October 5, 2026 14:57
added 2 commits
October 5, 2026 17:19
ctfbruce
marked this pull request as ready for review
October 5, 2026 15:34
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Retained work from a retired executor session can otherwise keep local queue admission full indefinitely. Add
dbl service archive-run: it inspects one run by default and requires an explicit reason to record a dated local disposition after successful managed shutdown.The operation requires a disabled, joined managed executor and exclusive SQLite ownership, rechecks the service/configuration/schema, and refuses concurrent foreground executors. Original execution, output and terminal evidence remains intact; archived runs are excluded from restoration and delivery, and their identities cannot be reused. Only the local execution queue admission charge is released. Actual disk bytes, output-spool limits, dispatcher account quotas, remote outcomes and payments are unchanged.
Requires the explicit executor schema 7 upgrade. This is the interrupted-work disposition slice of #168; release activation and other acceptance gates remain separate.
Validation: focused scheduler/output/storage/service/CLI tests; actual executor command shutdown, archival and restart with real dispatcher transports and a real WASM measurement; archive and reconnect cases under
-race -count=3. Independent review completed. CI 37015266603 passes all 16 checks, including the installed v0.2.0-to-candidate upgrade and backup rollback. Its test lane passed on retry after an unchanged SQLite-migration cancellation assertion exceeded its two-second bound once; 25 isolated repeats passed without changing that assertion.