Hacktoberfest 2026:メンテナが10月に向けて印を付けた、オープンで初心者向けの issue。 Hacktoberfest の issue を見る

Display the full authorization tree before signing auth entries

オープン 初心者向け
#2,779 コメント 0 件 リアクション 0 件 担当者 0 名 GitHub で見る

メンテナーはふだん 1 日以内に返信

@DeadZen がすでに取り組んでいます。

2026年10月3日 から。

  • #2790 @DeadZen による — オープン

評価

難易度
2/5
見積もり時間
1〜3時間
初心者へのやさしさ
82/100
issue の種類
機能追加
明瞭さ
明確に書かれている
活発さ
活発
技術スタック
rust

調査の方向性

signer/validation.rs から始めて厳格な認可署名パスをたどり、その後 log/auth.rs の再帰的な formatter を調べます。CLI の署名フローを実行し、厳格なパスでは署名前に root とサブ呼び出しからなる完全なツリーがレンダリングされることを確認します。署名の動作を変更したり、ブロッキング確認を追加したりしてはいけません。

索引モデルが issue の本文から書いたものです。

説明

When a Soroban authorization entry's root invocation matches the invoked host function, the CLI classifies it as strict (signer/validation.rs) and signs it without printing anything. The tree is only rendered on the non-strict path or under --auto-sign. On the common path a user never sees the exact tree their key signs, even though the signature covers the entire tree including sub-invocations.

We should render the full authorization tree (root + sub-invocations) before signing so the signed content is always visible. The formatter in log/auth.rs already walks sub-invocations recursively, so this is mostly wiring it into the strict path.

Scope this as display-only (non-blocking) so signing behavior is unchanged — confirmation-by-default is tracked separately.

主要言語
Rust
スター
123
フォーク
147
平均マージ
1日 4時間
マージ済み PR(30日)
31

環境構築

はじめの一歩

  1. issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
  2. 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
  3. リポジトリをフォークし、ブランチを切って変更します。
  4. issue 番号を参照したプルリクエストを送ります。

stellar/stellar-cli のほかの issue

stellar/stellar-cli の issue をすべて見る

似ている issue

Rust の issue をもっと見る

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。