Repository navigation
feat(oracle-fusion): add shared integration foundation - #7427
Conversation
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
Greptile SummaryThe PR adds a product-neutral Oracle Fusion credential and transport foundation without registering product-facing services.
Confidence Score: 5/5The PR appears safe to merge because no blocking failure remains in the eligible follow-up scope. No blocking failure remains.
|
| Filename | Overview |
|---|---|
| apps/sim/lib/credentials/client-credential-accounts/descriptors.ts | Adds the Oracle Fusion provider descriptor and strict canonical application-origin normalization. |
| apps/sim/lib/credentials/client-credential-accounts/minters/oracle-fusion.ts | Validates integration-user fields and derives bounded, locally cached Basic authentication material. |
| apps/sim/lib/internal/oracle-fusion/client.ts | Adds the DNS-pinned, deadline-aware Oracle request boundary with constrained methods, headers, retries, and response handling. |
| apps/sim/lib/internal/oracle-fusion/paths.ts | Defines fixed-version family roots and validates family-relative resource paths. |
| apps/sim/lib/internal/oracle-fusion/protocol.ts | Adds bounded collection parsing, self-link validation, opaque-key handling, and pagination metadata. |
| apps/sim/lib/internal/oracle-fusion/request-body.ts | Adds bounded plain-JSON serialization with exact integer token support. |
Sequence Diagram
sequenceDiagram
participant Caller
participant Credential as Credential Resolver
participant Client as Oracle Fusion Client
participant DNS as DNS Validation
participant Oracle as Oracle Fusion
Caller->>Credential: Resolve integration-user credential
Credential-->>Caller: Canonical origin and Basic material
Caller->>Client: Bounded family-relative request
Client->>DNS: Validate origin and pin public IP
DNS-->>Client: Validated address
Client->>Oracle: Fixed-root request with constrained method and headers
Oracle-->>Client: Bounded JSON or empty response
alt Transient GET and deadline permits
Client->>Oracle: Retry once
Oracle-->>Client: Final response
end
Client-->>Caller: Parsed result or fixed error
Reviews (14): Last reviewed commit: "feat(oracle-fusion): serialize exact int..." | Re-trigger Greptile
There was a problem hiding this comment.
All reported issues were addressed across 18 files
Reply with feedback, questions, or to request a fix.
Fix all with cubic | Re-trigger cubic
|
@cubic-dev-ai review this PR |
@BillLeoutsakosvl346 I have started the AI code review. It will take a few minutes to complete. |
There was a problem hiding this comment.
All reported issues were addressed across 18 files
Reply with feedback, questions, or to request a fix.
Fix all with cubic | Re-trigger cubic
|
@cubic-dev-ai review this PR |
@BillLeoutsakosvl346 I have started the AI code review. It will take a few minutes to complete. |
There was a problem hiding this comment.
All reported issues were addressed across 18 files
Reply with feedback, questions, or to request a fix.
Fix all with cubic | Re-trigger cubic
|
@cubic-dev-ai review this PR |
@BillLeoutsakosvl346 I have started the AI code review. It will take a few minutes to complete. |
|
@cubic-dev-ai review this PR |
@BillLeoutsakosvl346 I have started the AI code review. It will take a few minutes to complete. |
|
@cubic-dev-ai review this PR |
@BillLeoutsakosvl346 I have started the AI code review. It will take a few minutes to complete. |
There was a problem hiding this comment.
All reported issues were addressed across 29 files
You've manually re-run cubic several times on this PR. Each manual re-review checks the full PR again and counts toward your usage quota. To preserve your usage limits, we recommend letting cubic automatically review new commits.
Re-trigger cubic
|
@cubic-dev-ai review this PR |
@BillLeoutsakosvl346 I have started the AI code review. It will take a few minutes to complete. |
There was a problem hiding this comment.
All reported issues were addressed across 19 files
Heads up: you’re close to your flex budget. Increase your flex budget so reviews don’t pause.
You've manually re-run cubic several times on this PR. Each manual re-review checks the full PR again and counts toward your usage quota. To preserve your usage limits, we recommend letting cubic automatically review new commits.
Fix all with cubic | Re-trigger cubic
|
@cubic-dev-ai review this PR |
@BillLeoutsakosvl346 I have started the AI code review. It will take a few minutes to complete. |
There was a problem hiding this comment.
No issues found across 19 files
Confidence score: 5/5
- Automated review surfaced no issues in the provided summaries.
- No files require special attention.
Heads up: you’re close to your flex budget. Increase your flex budget so reviews don’t pause.
You've manually re-run cubic several times on this PR. Each manual re-review checks the full PR again and counts toward your usage quota. To preserve your usage limits, we recommend letting cubic automatically review new commits.
Re-trigger cubic
6bc1422 to
830a5ad
Compare
830a5ad to
590fa80
Compare
590fa80 to
27ad726
Compare
27ad726 to
2d4c963
Compare
Adds the shared Oracle Fusion integration-user credential and transport used by 11 product PRs. Basic authentication is bound to an Oracle-assigned origin, with fixed-version HCM/FSCM/CRM addressing, exact identifiers, bounded JSON requests and responses, collection parsing, DNS-pinned transport, cancellation, and limited GET retries. Product blocks, tools, selectors, and response schemas remain child-owned.
Fusion uses the same connection/reconnect modal and encrypted credential lifecycle as Vanta and Ramp. Its canonical family registration supplies the Oracle name/icon and provider mapping. Password bytes are preserved through the dialog, internal/v2 create and reconnect contracts, storage, and Basic authentication; other providers keep their existing normalization. Setup copy states that Oracle authenticates on the first product request. No shared Oracle OAuth app or deployment secret is required.
Validation:
Live Fusion testing is pending a Fusion tenant and integration-user credentials; no live-account pass is claimed. Product connection buttons appear when their visible child blocks ship. Restack and independently validate all 11 product PRs, and enforce credential-provider binding in shared ordinary token resolution before shipping the first consuming product.