Search: the owner's search still lists a file after it moves to the Trash (adversarial search_access) #120

Closed
opened 2026-09-25 20:25:35 +00:00 by kayg · 1 comment
Owner

Context

Seen in the full adversarial run for #107 (job/inline-xss, rebased on dev 8a4d681). #107 does not touch search, so the cause is elsewhere.

Round 2, section search_access:

!! search access: the owner's search lists a file in the Trash: [... 'zebracorn-trashed.txt|zebracorn-trashed.txt', ...]

The probe trashes zebracorn-trashed.txt and expects the owner's search to stop listing it. It still lists it.

Do

  1. Reproduce: ROUND2_SECTIONS=search_access with tests/adversarial/run.sh (or the full run).
  2. Find whether the trash move does not remove the file from the search index, or whether the search reads a stale index row, and fix it with a regression test.

Acceptance: the search_access section reports zero findings.

## Context Seen in the full adversarial run for #107 (`job/inline-xss`, rebased on `dev` 8a4d681). #107 does not touch search, so the cause is elsewhere. Round 2, section `search_access`: ``` !! search access: the owner's search lists a file in the Trash: [... 'zebracorn-trashed.txt|zebracorn-trashed.txt', ...] ``` The probe trashes `zebracorn-trashed.txt` and expects the owner's search to stop listing it. It still lists it. ## Do 1. Reproduce: `ROUND2_SECTIONS=search_access` with `tests/adversarial/run.sh` (or the full run). 2. Find whether the trash move does not remove the file from the search index, or whether the search reads a stale index row, and fix it with a regression test. Acceptance: the `search_access` section reports zero findings.
Author
Owner

Duplicate of #124 (search ghosts and relevance), which job/search-correct owns.

Duplicate of #124 (search ghosts and relevance), which job/search-correct owns.
kayg closed this issue 2026-09-25 21:47:00 +00:00
Sign in to join this conversation.
No labels
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set

Reference
kayg/calternal#120
No description provided.