MCP Events: push real-time events (mail, money, tasks, calendar, shares) to ChatGPT automations #491
Open
opened 2026-09-30 07:16:41 +00:00 by kayg
·
18 comments
No Branch/Tag specified
dev
wip/rev2-money-ident
wip/restyle-notes
wip/previewcard-1098
wip/palette2-1123
wip/palette-1093
wip/onboard2-1141
wip/onboard-1141.aborted-early
wip/onboard-1141
wip/nlpchip-1127
wip/morph-1104
wip/merge-round-7c5
wip/merge-round-7c4
job/notifloop-1194
wip/merge-round-7c3
wip/merge-round-7c2
wip/merge-round-7c
wip/mchrome-1084
wip/mailghost2-1094
wip/mailghost-1094
wip/kbpreview2-1118
wip/kbpreview-1118
wip/kanban-1092
wip/importhang-1121
wip/hiderev-1153
wip/hide4-1153
wip/hide3-1153
wip/hide2-1153
wip/hide-1153
wip/editreg-1132
wip/editorrail3-1113
wip/editorrail2-1113
wip/editorrail-1113
wip/e2e-b2-1071
wip/e2e-b-1071
wip/draw4-1101
wip/draw3-1101
wip/draw2-1101
wip/draw-1101
wip/directory-1199-r
wip/directory-1199
wip/delete-1119
wip/collabrev-1197
wip/collabloss-1197
wip/cards2-1083
wip/cards-1083
wip/canvas-visual
wip/canvasvis2-976
wip/calhdr-1112
wip/calcards-1115
wip/browserfix
wip/blocks-1125
wip/allday-1107
wip/agenda-decks
wip/agenda-1086
wip/adv7c-1105
wip/txentry-1198
wip/trayicons2-1095
wip/trayicons-1095
job/onboard-1141
wip/sidebar3-1094
wip/rev2-webperf
job/collabloss-1197
job/hide-1153
job/perf-1124
job/perf2-1124
job/tocrail-1191
job/restyle-settings
wip/restyle-settings
job/segmented-1200
wip/notifloop-1194
job/tagperf-1186
wip/tagperf-1186
wip/segmented-1200
job/restyle-files
job/tagdnd-1187
job/merge30
job/cards-1179
wip/cards2-1179
wip/cards-1179
wip/tocrail-1191
wip/tagdnd-1187
wip/restyle-files
wip/perf-1124
wip/merge30j
job/restyle-notes
job/wizchoices-1140
job/adv-1202
wip/wizchoices-1140
wip/restyle-1190
job/moneyfmt-1180
job/txentry-1198
wip/moneyfmt2-1180
wip/moneyfmt-1180-r
wip/moneyfmt-1180
job/pillglass-1189
job/flags-1181
wip/flags-1181
job/restyle-1190
job/restyle-mailmoney
job/restyle-search
job/settingsreg-1195
job/wizard-1140
site/website
wip/wizardrev2-1140
wip/wizardrev-1140
wip/wizard5-1140
wip/wizard4-1140
wip/wizard3-1140
wip/wizard2-1140
wip/wizard-1140
wip/pillglass-1189
wip/settingsreg-1195
job/merge29
job/fu-1171
wip/merge29j
wip/fu-1171
job/fu-1166
job/directory-1199
job/proflog-1204
job/txresearch-1188
wip/fu-1166
job/merge28
job/search-1066
wip/search-1066
wip/merge28j
job/gateslot-1182
job/bulkimport-1157
job/mailnet-1160
wip/mailnetrev-1160
wip/mailnet-1160
wip/bulkrev-1157
wip/bulkimport-1157
job/startup-1161
wip/startup-1161
job/merge27
job/linkcards-1151
wip/linkcards3-1151
wip/linkcards2-1151
wip/linkcards-1151
job/traydate-1144
wip/traydate3-1144
wip/traydate2-1144
wip/traydate-1144
job/draw-1101
wip/merge27j
job/blockpill-1152
wip/blockpill3-1152
wip/blockpill2-1152
wip/blockpill-1152
job/minihover-1149
wip/minihover2-1149
wip/minihover-1149
job/merge25
wip/merge25-r
wip/merge25b
wip/merge25
job/inspector-1129
job/tags-1110
wip/inspector3-1129
wip/inspector2-1129
wip/inspector-1129
wip/tagsrev-1110
wip/tags2-1110
wip/tags-1110
job/dates-1148
wip/datesrev-1148
wip/dates2-1148
wip/dates-1148
job/licence-1145
wip/licence2-1145
wip/licence-1145
job/selfhost-1156
job/merge23
wip/merge23
job/tagfilter-1109
wip/tagfilter2-1109
wip/tagfilter-1109
job/kbd-1134
wip/kbd2-1134
wip/kbd-1134
job/palfoot-1137
wip/selfhost-1156
wip/palfoot2-1137
wip/palfoot-1137
job/toggle-1158
wip/toggle-1158
job/kbpreview-1118
job/docratchet-1155
job/perflint-1133
job/devtests-1159
wip/docratchet-1155
wip/devtests-1159
job/segv-1136
wip/toast-1142
wip/segv-1136
job/toast-1142
job/blockreload-1147
wip/blockreload-1147
job/font-1150
wip/font-1150
job/importui-1120
job/minimonth-1149
wip/importui-1120
wip/minimonth-1149
job/depcheck-1146
wip/perflint-1133
wip/depcheck-1146
job/calcards-1115
job/blocks-1125
job/plus-1128
job/shift-1138
wip/plus2-1128
wip/plus-1128
wip/shift-1138
job/moneyfid-1130
job/editorrail-1113
wip/moneyrev-1130
wip/moneyfid-1130
job/noext-851
wip/noext-851
wip/noext3-851
wip/noext2-851
job/week-1135
wip/week-1135
job/editreg-1132
job/smoke-1122
wip/smoke-1122
job/docs-1143
job/palette2-1123
job/calhdr-1112
job/nlpchip-1127
job/mailghost-1094
job/reconnect-1131
wip/reconnect-1131
job/trayicons-1095
job/delete-1119
job/importhang-1121
job/cards-1083
job/palette-1093
job/mchrome-1084
job/e2e-a-1071
job/canvas-visual
job/previewcard-1098
job/allday-1107
wip/e2e-a2-1071
wip/e2e-a-1071
job/e2e-b-1071
job/adv7c-1105
job/kanban-1092
job/agenda-1086
job/merge-round-7c
job/morph-1104
wip/surfaces-p2
job/merge-round-9
wip/merge-round-9
job/7cfix-small
wip/7cfix-small
job/mailui-1078
job/merge-round-8
wip/merge-round-8
wip/mailui-1078
job/mailround-1038
job/applemail-accept
wip/settitle-1068
wip/mailround2-1038
wip/mailround-1038
wip/e2e-7b
job/crash-1069
wip/crash-1069
job/searchlost-1066
wip/searchlost-1066
job/7b-reconcile
job/flake-1065
wip/flake-1065
wip/merge-round-7b7
wip/merge-round-7b6
wip/merge-round-7b5
wip/merge-round-7b4
wip/7b-reconcile
job/appupdate-1059
job/nfd-1044
wip/appupdate-1059
job/e2e-7b
job/loop-1062
wip/loop-1062
job/pdfprev-1045
job/invtoggle-1053
wip/pdfprev-1045
wip/nfd-1044
wip/invtoggle-1053
job/7bfix-e2e
job/mailstress-b
wip/7bfix-e2e
wip/mailstress-b
job/7bfix-adv
wip/7bfix-adv
job/mailstress-a
job/stack-1054
wip/stack-1054
wip/mailstress-a
job/mailstress-1038
wip/mailstress-1038
job/upload500-1051
wip/upload500-1051
job/share-1034
wip/share-1034
job/syncerr-1037
job/7bfix-photos
wip/7bfix-photos
job/paste-1036
job/setside-1039
wip/setside-1039
wip/paste-1036
job/lease-1042
wip/syncerr-1037
wip/lease-1042
job/7bfix-data
job/passkeybind-1043
wip/apprevoke-1041
job/invite-1035
wip/invite-1035
job/merge-round-7b2
wip/merge-round-7b2
job/mailproxy-486
job/apprevoke-1041
job/rebuild-1033
job/pillborder-1029
wip/pillborder-1029
wip/mailproxy-486
wip/applemail-486
job/headless-998
wip/headless-998
job/groups-1028
wip/groups-1028
job/rebuildwarn-1016
wip/rebuildwarn-1016
job/startup-1011
wip/startup-1011
job/monthpill-1009
job/bgthumb-1025
job/sharetitle-1012
wip/monthpill-1009
wip/bgthumb-1025
wip/sharetitle-1012
job/canvas-cards-977
wip/canvas-cards-977
job/canvas-pencil-978
job/canvas-sketch-990
wip/canvas-sketch-990
wip/canvas-pencil-978
job/canvas-files-989
wip/canvas-files-989
job/canvas-collab-991
wip/canvas-collab-991
job/weekscroll-1018
wip/weekscroll-1018
wip/canvas-core-976
job/canvas-core-976
job/round-drag
wip/round-drag
job/round-settings
job/browserfix
wip/oapi-974
job/oapi-974
job/hist2-integrate
job/mailhtml-726
wip/mailhtml-726
wip/hist2-integrate
job/moneyfu-984
job/drag-1015
wip/drag-1015
job/rename-1017
wip/rename-1017
job/hist2-api
wip/hist2-api
job/oneacct-1014
wip/oneacct-1014
wip/moneyfu-984
job/hist2-bench
job/hist2-restore
wip/hist2-bench
job/hist2-write
job/hotfix-724
wip/hotfix-724
wip/hist2-write
wip/hist2-restore
job/hist2-store
job/hist2-ui
wip/hist2-ui
wip/hist2-store
job/searchstarve-965
job/shutdown-963
wip/shutdown-963
wip/pubedit-981
job/pubedit-981
job/analytics-973
wip/searchstarve-965
job/authflash-850
job/weeklane-969
job/pvtitle-1004
job/hist-975
wip/authflash-850
job/voicepill-617
wip/pvtitle-1004
job/headring-1003
wip/weeklane-969
wip/voicepill-617
wip/headring-1003
wip/analytics-973
job/agentscope-980
wip/thumbsandbox-988
job/thumbsandbox-988
wip/hist-975
job/links-856
wip/links-856
job/davetag-966
wip/davetag-966
job/filesstorm-1000
job/hoverpad-725
wip/filesstorm-1000
job/ffmpegblas-993
job/merge-round-7a
wip/hoverpad-725
wip/ffmpegblas-993
job/nowdot-1002
wip/verify-7a
job/noteid-857
wip/nowdot-1002
wip/noteid-857
wip/merge-round-7a
wip/agentscope-980
job/imapedge
job/a11yfix2
wip/imapedge-941
wip/imapedge
wip/a11yfix2
job/notetask-986
job/logheading
wip/logheading-998
job/textthumb-652
job/photolive-987
wip/photolive-987
job/davactive-983
job/savefix-985
job/tabicons-607
wip/davactive-983
wip/tabicons-607
wip/notetask-986
wip/savefix-985
job/dirid-627
job/buildspeed-1007
wip/dirid-627
job/agenda-decks
job/perfguards-impl
job/undo-a11y
wip/undo-a11y
job/mailperf
job/wal-824
wip/settings-50
job/settings-50
job/notesfilter-606
wip/notesfilter-606
job/surfaces-p2
wip/wal-824
job/maillayouts
wip/mailperf
wip/maillayouts
job/taskmeta-659
job/money-ident
wip/money-ident
wip/taskmeta-659
job/errstates
wip/perfguards-impl
job/headings-881
wip/headings-881
wip/errstates
job/voice-619
job/gaps-827
job/notesperf
wip/notesperf
wip/voice-619
job/hddsql-549
job/perf-stream-668
wip/perf-stream-668
wip/deeplinks-fix
job/deeplinks-fix
job/authfix
job/docsfix-rust
wip/docsfix-rust
job/webperf
job/docsfix-web
job/datafix2
job/webdav-lock-476
job/copyfix
wip/copyfix
wip/webperf
job/focus-658
wip/protofix
job/mediafix
job/protofix
wip/mediafix
job/agentfix
job/hhmm-724
wip/agentfix
job/undo-722
job/reuse
wip/webdav-lock-476
wip/reuse
job/scopefix
job/datafix
wip/hhmm-724
wip/undo-722
job/surfaces-p1
wip/hddsql-549
job/voicememos-618
wip/datafix2
wip/surfaces-p1
job/fix-940
wip/fix-940
job/blaze-surfaces
wip/datafix
wip/blaze-surfaces
job/taskday-655
job/linknav-639
wip/linknav-639
wip/gaps-827
job/isolation-707
job/audiophotos-720
wip/audiophotos-720
job/advfind-664
wip/voicememos-618
wip/taskday-655
wip/isolation-707
wip/advfind-664
wip/scopefix
wip/focus-658
job/testgaps
wip/testgaps
job/overscroll-718
wip/authfix
job/deps
wip/overscroll-718
job/rev2-agentfix
job/rev2-money-ident
job/rev2-mailperf
wip/deps
job/hardening-728
wip/hardening-728
job/searchgen-832
wip/searchgen-832
job/photopw-849
job/mailsql-825
wip/photopw-849
job/sharefix
wip/sharefix
job/rev2-mailhtml-726
job/rev2-perfguards
job/copyval-723
job/lightglass-r2
wip/lightglass-r2
wip/docsfix-web
job/copy-audit
job/macinterop-staging-r2
job/design-sync
job/rev2-taskmeta-659
job/rev2-webperf
job/docs-audit
job/rev2-advfind-664
job/rev2-mailproxy-486
job/states-audit
job/rev2-datafix
job/design-drift
job/test-gaps
job/rev2-voicememos-618
job/rev2-mediafix
job/rev2-deps
job/rev2-datafix2
job/licence-audit
job/issue-hygiene
job/rev2-protofix
job/rev2-voice-619
job/rev2-isolation-707
job/rev2-surfaces-p1
job/deeplink-audit2
job/rev2-audiophotos-720
wip/test-gaps
job/rev2-overscroll-718
job/rev2-undo-722
wip/states-audit
job/rev2-dropmd-719
job/rev2-linknav-639
job/merge-7b-plan
wip/merge-7b-plan
job/rev2-taskday-655
wip/mailsql-825
job/rev2-webdav-lock-476
job/rev2-browserfix
wip/design-drift
job/rev2-hddsql-549
wip/deeplink-audit2
job/rev2-scopefix
job/rev2-authfix
job/rev2-hardening-728
job/rev2-wal-824
job/rev2-sharefix
job/calsidebar-638
job/chrome-audit
job/ioperf
wip/ioperf
wip/chrome-audit
wip/calsidebar-638
job/dropmd-719
wip/dropmd-719
job/ocr-build
wip/ocr-build
job/blaze-settings
wip/copyval-723
job/toastring-721
wip/toastring-721
job/deployfix-732
wip/deployfix-732
wip/blaze-settings
job/money-import-recheck
job/rev-a11y
job/perf-arch-db
job/rev-7b-data
wip/textthumb-652
wip/perf-arch-db
job/sec-protocols
job/sidehdr-660
job/rev-7b-security
job/research-surfaces
job/rev-design-gaps
job/rev-mcp-api
wip/sidehdr-660
job/perf-arch-memory
wip/sec-protocols
job/perf-arch-bundle
job/snapedge-714
wip/rev-mcp-api
job/sec-supplychain
wip/research-surfaces
job/perf-arch-sync
job/rev-consistency
job/perf-arch-server
wip/perf-arch-server
wip/perf-arch-memory
job/perf-arch-io
job/perf-arch-client
job/sec-fs
job/sec-mcp-scopes
job/sec-sharing
job/perf-guards
job/sec-browser
job/sec-admin-deploy
job/sec-auth
wip/snapedge-714
job/bgpicker-717
wip/perf-arch-bundle
wip/money-import-recheck
job/advsetup-654
wip/bgpicker-717
wip/advsetup-654
job/burst-709
job/kbdcaps-710
job/app-pw-chooser
wip/burst-709
wip/app-pw-chooser
job/imaptest-625
wip/kbdcaps-710
job/fix-499
wip/fix-499
job/perf-mut-667
job/calimg-589
job/perf-snap-666
wip/calimg-589
wip/perf-snap-666
wip/perf-mut-667
job/perf-cache-665
wip/perf-cache-665
job/voicefiles-620
wip/voicefiles-620
job/admin-burst-705
wip/admin-burst-705
job/voicememos-review
wip/voicememos-review
wip/ryw-653
job/ryw-653
job/writeonopen-661
job/instant-663
wip/writeonopen-661
job/money-import-review
wip/money-import-review
wip/importjs-610
review/integrations-407-round6
wip/integrations-review
job/dragghost-612
wip/dragghost-612
job/integrations
wip/integrations
job/decider-656
job/merge-round-6
job/perf-rerun
wip/merge-round-6
job/integrations-review-round5
job/selalign-576
wip/selalign-576
job/mcp-events-491
job/files-631
job/cal-e2e-569
wip/cal-e2e-569
job/reload-423
wip/reload-423
wip/mcp-events-491
wip/files-631
job/notesbridge-644
wip/notesbridge-644
job/editor-series
job/calcard-series
wip/calcard-series
job/mcp-events-review-491
wip/mcp-events-review
wip/editor-series
job/quirks-546
job/integrations-recheck
job/tocrail-636
wip/tocrail-636
wip/quirks-546
wip/reminders-643
job/reminders-643
wip/davscale-573
job/davscale-573
job/integrations-review
wip/ocr-eval-584
job/ocr-eval-584
job/esc-537
wip/esc-537
job/toastname-586
wip/toastname-586
job/submenu-579
wip/submenu-579
job/tasks-mode
wip/tasks-mode
job/agentdocs-630
job/dupwrite-634
wip/agentdocs-630
wip/dupwrite-634
job/lightglass-588
wip/lightglass-588
job/tabswitch-549
job/ghosttask-623
wip/ghosttask-623
job/toaststack-616
job/weekstate-609
job/mailsync-613
wip/mailsync-613
wip/weekstate-609
job/maildup-626
wip/tabswitch-549
wip/maildup-626
wip/toaststack-616
job/motion-611
wip/motion-611
job/tlstest-601
wip/tlstest-601
job/perf-495
job/floating-sheet
wip/floating-sheet
job/remdup-585
wip/remdup-585
job/fix-502
wip/fix-502
job/attachplay-622
job/perf-batch
wip/perf-batch-563
wip/perf-495
hotfix/mail-sync-diag
job/mail-m3
wip/mail-m3
job/attach-poof-603
job/calhover-608
job/editorbar-604
job/mentions-605
job/merge-round-4
job/allday-514
wip/merge-round-4
wip/allday-514
job/merge-round-4a
wip/merge-round-4a
job/sharestack-580
job/fix-501
wip/sharestack-580
wip/fix-501
job/perf-batch-563
job/apw-cache-review
wip/apw-cache-review
job/probe-520
wip/probe-520
job/mac-393
wip/mac-393
job/header-571
job/flake-513
wip/flake-513
job/docs-thumb-547
wip/header-571
job/webcal-572
wip/webcal-572
wip/shortcuts-542
job/shortcuts-542
wip/docs-thumb-547
job/caldav-stress
wip/caldav-stress
wip/sweep-478
job/apw-cache-512
wip/apw-cache-512
job/money-empty-540
wip/restart-505
wip/money-empty-540
wip/fix-510
job/restart-505
job/fix-503
job/perf-496
wip/perf-496
job/fix-498
wip/fix-498
job/info-inspector-465
wip/info-inspector-465
job/fix-510
job/fix-507
wip/fix-507
wip/fix-503
job/fix-493
job/money-kinds
wip/money-kinds
job/hygiene-548
job/merge-round-3
wip/fix-493
job/drag-snap-536
wip/merge-round-3
wip/merge-round-0930
wip/drag-snap-536
job/align-538
wip/align-538
job/bg-flash
wip/bg-flash
job/money-import
job/search-count-544
wip/search-count-544
wip/money-import
job/settings-key-541
wip/settings-key-541
job/toast-539
job/preview-421
wip/preview-421
wip/toast-539
job/tasks-500-531
job/title-plain-526
wip/title-plain-526
wip/tasks-500-531
job/notes-bridge
wip/parity-484
job/parity-484
job/files-slow
job/crash-525
wip/notes-bridge
wip/files-slow
wip/crash-525
job/kbd-motion-527
wip/bg-422
job/analytics-504
wip/analytics-504
wip/kbd-motion-527
job/upload-pill-523
wip/upload-pill-523
wip/tray-order
job/tray-order
wip/overflow-mid
wip/merge-round-2
job/perf-494
wip/perf-494
wip/mcp-fast-492
wip/motion-477
wip/asr-ab-489
wip/theme-variants-506
wip/overflow-511
wip/week-header-508
wip/attach-427
job/dav-delete-471
job/iso-435
wip/iso-435
wip/files-sel-keys
wip/dav-delete-471
job/align-253
job/siwc-490
wip/siwc-490
job/money-kinds-review
wip/align-253
wip/money-kinds-review
job/small-bugs-3
wip/overlay-title-487
wip/multiget-500
wip/hidden-420
wip/webcal-ui
wip/webcal-431
job/perf-367
job/location
wip/small-bugs-3
wip/location
wip/perf-367
wip/admin-deny-483
job/tag-unicode-473
wip/tag-unicode-473
job/blur-436
wip/photos-470
wip/blur-436
wip/small-bugs-4
wip/hunt-20260930
wip/settings-hdr-482
wip/chips-416
job/dedup-375
wip/dedup-375
job/doc-stack
wip/doc-stack
job/tokens-literals
wip/tokens-literals
job/jobs-leftovers
wip/send-fast
wip/paste-467
wip/money-numbers
job/money-plugin
wip/money-plugin
job/break-dav
wip/merge-batch
wip/crossday-469
wip/mac-verify
wip/mail-m2
wip/break-dav
wip/money-review2
job/money-md
job/modes-424
wip/money-md
wip/jobs-leftovers
job/agenda-413
wip/agenda-413
wip/modes-424
job/recog-417
wip/recog-417
wip/bounce-425
wip/ab-384-luna
job/webdav-perf
wip/webdav-perf
job/toast-ring
wip/toast-ring
job/money-review
wip/money-review
wip/micro-motion
wip/settings-card
wip/minical
job/notes-imap-428
job/least-priv
wip/ui-small-2
wip/flaky-426
wip/drag-end-418
job/jank
wip/jank
wip/least-priv
wip/docs-site
job/agenda
job/sec-batch
wip/sec-batch
wip/per-user-index
job/area-calendars
wip/area-calendars
job/parity
wip/parity
job/documents-research
wip/documents-research
job/test-infra
job/reminders-sync
wip/small-bugs-2
wip/reminders-sync
wip/gestures
job/google-oauth
wip/tags-merge
wip/tags
job/e2e-theme
wip/e2e-theme
job/icon-align
wip/test-infra
wip/select-align
wip/editor-385
job/voice
wip/webdav
job/webdav
job/app-pw-ui
job/editor-integrity
wip/editor-integrity
wip/voice
wip/quota
wip/cal-followups
wip/icon-align
job/composer-scale
wip/composer-scale
job/jobs-page
wip/jobs-page
job/hig-type
wip/hig-type
wip/app-pw-ui
job/motion-spring
job/mcp
wip/motion-spring
wip/mcp
job/small-bugs
wip/push-hosts
job/profile-sign
wip/touch-369
wip/profile-sign
job/mobile-focus
wip/mobile-focus
wip/ui-polish-354
wip/small-bugs
wip/dup-task
job/toast-polish
job/app-pw-scopes
wip/toast-polish
wip/app-pw-scopes
wip/cli-agent
wip/selection-pills
job/preview-attach
wip/preview-attach
job/dav-proppatch
wip/dav-proppatch
wip/cal-switcher
job/atomic-race
wip/atomic-race
job/photos-shared
wip/photos-shared
wip/cal-grid
wip/note-rewrite
wip/search-rebuild
job/mail-m1
job/paperless-import
wip/paperless-import
wip/mail-m1
wip/hidden-activity
wip/search-d
wip/pricing-research
wip/cursors
wip/auto-scheme
job/single-pills
wip/single-pills
wip/xuser-matrix
wip/money-format
wip/app-pw-setup
wip/purge-dos
wip/vault-health
wip/caldav-apple
wip/xuser-audit
wip/e2e-green
wip/tabbar
wip/adv-harness
wip/maple-mono
job/search-fix
wip/search-fix
wip/search-perf-c
job/adv-harness
wip/sidebar-headers
job/glass
wip/temp-index
job/polish
wip/polish
wip/file-protocols
wip/money-research
wip/glass
wip/voice-models
wip/collab-redo
job/voice-research
wip/hunt-20260928
wip/notes-actions-research
wip/search-pad
wip/search-perf
wip/search-sticky
wip/editor-undo
wip/chrome-rules
wip/motion
wip/appearance-research
wip/appearance
wip/audit-bugs
wip/cal-glass
wip/block-actions
wip/authz-order
wip/event-stripes
wip/chrome-sidebar
wip/auth-flaky
wip/robust-2
wip/gate-fix
wip/menu-blur
wip/import-calternaljs
wip/tray-fix
job/import-calternaljs
wip/index-order
wip/audit-fixes
wip/search-chevrons
research/mail
wip/phone-chrome
wip/dedup-break
wip/csp
wip/ui-audit
wip/select-toast
wip/perf
wip/flat-layout
wip/fonts
wip/event-tint
wip/sync-converge
wip/data-split
wip/glass-audit
wip/robustness
wip/sync-chaos
wip/search-thumbs
wip/fuzz
wip/menu-icons
wip/search-pill
wip/sync-changing
wip/heading-links
wip/date-formats
wip/a11y
wip/break-editor
wip/e2e-fix
wip/settings-sections
wip/sync-root-guard
wip/search-palette
wip/share-edit
job/toasts
wip/toasts
wip/cont-analytics
wip/authz-review
wip/popovers
wip/overlay-glass
wip/change-feed
wip/editor-modes
wip/composer-align
wip/cont-agenda
wip/agenda-merge
job/agent-conventions
wip/agent-conventions
wip/backend-misc
job/route-audit
wip/route-audit
wip/ui-batch
wip/heif-hardening
wip/grid-resize
wip/ask-page
wip/webmcp
job/deeplink-audit
wip/deeplinks
wip/shortcuts
wip/cont-tz-days
main
No results found.
Labels
Clear labels
No items
No labels
Milestone
Clear milestone
No items
No milestone
Projects
Clear projects
No items
No project
Assignees
Clear assignees
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".
No due date set.
Dependencies
No dependencies set
Reference
kayg/calternal#491
Loading…
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Request (owner, 2026-09-30): support MCP Events, "let's make mcp crazy fast"
Background: MCP Events is a draft extension in the Model Context Protocol organisation (
modelcontextprotocol/experimental-ext-triggers-events, design-sketch-proposal.md). ChatGPT supports its webhook delivery (developers.openai.com/plugins/build/mcp-events). It needs MCP protocol version2026-07-28.Scope:
events/listdeclares calternal's events, generated from the #484 action registry: each action says which events it emits. The first set:events/subscribeand unsubscribe: idempotent, bound to the authenticated User, the server grants an expiry, and ChatGPT refreshes beforerefreshBefore.webhook-id,webhook-timestamp,webhook-signature,X-MCP-Subscription-Id). Signed challenge verification before a subscription goes live (constant-time compare). One event per request, max 256 KiB. Exponential backoff; stop on 410 and 413.Order: after the #484 registry core lands.
What MCP Events is, in plain words (for the owner)
Today an AI assistant (ChatGPT, Claude) only learns about your calternal data when you ask it something: it calls calternal's MCP tools, reads, and answers. It cannot react when something happens.
MCP Events turns this around. The assistant tells calternal once: "tell me when a bank statement mail arrives" (a subscription). From then on, calternal pushes a small signed message (a webhook) to the assistant the moment that happens. The assistant then runs the automation you set up, for example: read the statement, log the transactions in Money, and message you if a category is overspent.
It is the same idea as your iOS Shortcuts → Windmill → Actual pipeline (#480), but built in: no polling, no middle server, and calternal decides exactly what each assistant may see.
What it is and is not:
Example events (first set): new mail (by sender or account), a statement or receipt received, a transaction logged, a category overspent, a bill due in N days, an event starting in N minutes, a task due or overdue, a reminder fired, a shared item changed or commented on, a file added to a folder.
Tonight
It builds on the one action registry from #484 (parity), which is finishing its last round. Once #484 merges, a Sol medium job (reason: signed webhooks and outbound HTTP are security-sensitive) builds:
It stays behind its own switch because the spec is a draft.
Decisions for the morning (not blocking the build; defaults in brackets)
Owner decisions (2026-10-01): (1) MCP Events is on by default for every User. A client that does not support the extension never calls
events/subscribe, so nothing is sent to it. (2) Mail events carry the subject + sender only (the body via a normal, logged MCP call). (3) Money events include amounts for the User's own assistant. Build after #484 core merges (merge round 4).Started on job/mcp-events-491 at base
1af8ead262. Read the contract and both owner comments. Inspecting registry metadata, MCP transport, App Password policy and the webcal outbound guard before building.Finding: the webcal resolver applies an admin private-network allowlist, so reusing it directly would admit private callback addresses. Added a public-only entry that shares its resolver and address classification but does not apply the allowlist. The MCP Events switch also needs a new auth migration because existing app_surface CHECK constraints reject new surface names. Decisions: App Password is the subscription principal; short grants use bounded in-memory state and cursor null, as permitted by the draft; receiver URLs shown in Settings are reduced to their origin so callback query credentials cannot leak.
Backend progress: signed delivery and the reference-verifier replay test passed in the server suite (113 passed, 0 failed, 3 ignored). Added source workers for due Tasks, recurring Calendar Events, Files changes, and Money bills; bill reads share the ordinary Money read lock. Found and fixed a queue race: an old in-flight ACK could remove an overflow gap. A regression test now checks that gap survives. Known source gap: the #484 registry has no comment-creation action, so share.comment_created is not advertised. Statement detection follows Mail’s conservative subject-only signals; it does not read a body.
Integrated origin/dev at
6e2ed179a. Kept the upstream bounded legacy MCP sessions and added the shared Events Hub to both modes. Auth migration 12 is still free on origin/dev. The web check exposed an OpenAPI schema collision with Calendar SubscriptionView; renamed the Events schema to McpEventSubscriptionView. Added a real Mail commit regression for new delta arrivals, replay and backfill. The planned first set has thirteen event names; twelve have existing sources, and only share.comment_created remains unavailable. Queue performance profile covers 256 subscriptions and maximum-length subject/sender fields; live profile covers the full visible registry and a bounded request burst. Auth gates: 65 passed, 0 failed; server reference receiver and two-User Settings route tests pass. Final regenerated clients, per-crate gates and production screenshots are in progress.Completion report
Branch:
job/mcp-events-491. Head:dadd320e24da39698112bab839edb3d2cb746dc7.Initial base:
1af8ead262daf0a4ad22a60564dc75bab0005cf4.The required
origin/devintegration is commit6e2ed179a. No push or deploy.Ten atomic work commits cover the registry, access switch, producers, server,
Settings and performance evidence. Migration 0012 was free on origin/dev at
integration. The working tree is clean. Doc comments were checked before this
report. No review artifact is committed.
Built
2026-02-19: initialization capability, registry-generatedevents/list,events/subscribeandevents/unsubscribe. Twelve event typeshave real producers. MCP Events has a separate default-on surface switch.
the shared public-address guard, checks all answers and pins addresses.
Redirects, environment proxies and private addresses are blocked. Each send
checks the live User, App Password, plugin, both switches and item access.
events, retries, deduplication and fresh registration epochs. The epoch
prevents a revoked or recreated grant from accepting an old delivery result.
Money events carry exact integer minor-unit amounts. Calendar, Tasks, Bills,
Files, Shares and live reminders use existing stores and authority checks.
links and revoke. Admin Settings includes the separate surface policy.
draft checks, generator tests and local hot-path profiles.
Validation
All touched-crate gates passed. Server tests cover signed nonce verification,
Unicode payload replay, duplicate IDs, changed-body rejection, private/mixed
address rejection, access loss, key revoke, expiry, queue bounds, fair rate
limits, registration fencing and the two-User Settings routes. The reference
receiver runs locally in a test. It does not prove public TLS interoperability.
One bounded real-server round passed initialization, all twelve descriptors,
Settings reads, malformed params and immediate surface denial. It found a
finite SSE initialization response that lacked the draft capability. The fix
has a regression test for both JSON and SSE envelopes. No 5xx or crash remained
in this round. Only the real discovery benchmark had slow results.
Commands were
cargo fmt --check, thencargo clippy -p <crate> --all-targets -- -D warningsandcargo test -p <crate>for API, Auth, Plugin, Calendar, Mail,Money, Notifications and Server. Cargo used four jobs and no incremental
build. Web commands were
bun run check,bun run testandbun run build.The production build passed. Registry generation
--checkpassed withAction registry: 335 operations, 317 generated tools.Gate output below is verbatim. The fmt line records its silent exit 0.
Performance
The perf VM was unreachable (
No route to host). These are local debugsamples, not release measurements.
docs/perf/baseline.jsonhas no matchingprofile, so these numbers do not establish a threshold regression.
Discovery load average: 41.80, 32.53, 32.40. Queue load average: 11.37, 14.04,
22.55. Queue CPU/RSS cover both fixture phases. Queue measurements exclude
compilation, DNS, TLS and the receiver. The largest fixture uses 4096 bytes per
text field and checks the 32-entry queue bound. Source scan latency was not
measured. Repeat with the shared release build on the perf VM.
Known gaps
share.comment_createdhas no action or comment store in dev. It is notadvertised. No new comment model was invented in this job.
group. Evidence and cause are filed in #649. This shared cosmetic defect
does not change event access or delivery.
miss statements in other languages.
The local reference receiver validates signatures and replay behavior.
Decisions
them. A supplied cursor reports truncation. Refresh preserves pending state;
signing-key rotation takes effect at once.
Bills poll every 30 seconds. Date-only Tasks are due at local midnight and
overdue at the next local midnight. Timed Tasks are overdue one second after
their due time. Bills use the User's local day and the days filter.
limited to ten per User per minute; delivery is limited to 60 per User per
minute. Four outbound sockets are shared across verification and delivery.
the server. A fresh epoch fences refreshes and recreation as well as revoke.
Files
Cargo.lockapps/web/src/routes/settings/apps/AppsSection.svelteapps/web/src/routes/settings/apps/McpEventsGroup.svelteapps/web/src/routes/settings/sections.tsbench/mcp-events-queue.shbench/mcp-events.mjscontracts/action-events.jsoncontracts/actions.jsoncontracts/openapi.jsoncrates/calternal-api/src/actions.rscrates/calternal-api/src/events.rscrates/calternal-api/src/lib.rscrates/calternal-auth/migrations/0012_mcp_events_surface.sqlcrates/calternal-auth/src/store.rscrates/calternal-plugin/src/lib.rscrates/calternal-plugin/src/mcp_events.rscrates/calternal-server/Cargo.tomlcrates/calternal-server/src/main.rscrates/calternal-server/src/mcp.rscrates/calternal-server/src/mcp_event_sources.rscrates/calternal-server/src/mcp_events.rscrates/calternal-server/src/wire.rscrates/plugins/calendar/src/feeds/mod.rscrates/plugins/calendar/src/feeds/subscriptions.rscrates/plugins/calendar/src/lib.rscrates/plugins/calendar/src/view.rscrates/plugins/mail/src/cache/store.rscrates/plugins/mail/src/sync.rscrates/plugins/money/Cargo.tomlcrates/plugins/money/src/events.rscrates/plugins/money/src/lib.rscrates/plugins/money/src/routes.rscrates/plugins/notifications/src/store.rsdocs/action-registry.mddocs/mcp-events.mddocs/perf/2026-10-01-mcp-events-491.mdpackages/api-client/src/generated.tsscripts/action_registry.pyscripts/test_action_registry.pytests/adversarial/authz_matrix.pytests/adversarial/mcp_events.mjsEvidence
Cleanup complete.
cargo cleanoutput:Web build output was removed. The applied integration stash was dropped. The working tree is clean at
dadd320e24da39698112bab839edb3d2cb746dc7.Independent defensive review of #491 started on
job/mcp-events-review-491, audited basedadd320e24da39698112bab839edb3d2cb746dc7. Tests and findings only; no commit to the feature branch, no push or deploy. Review covers outbound address policy, live authorization, signatures, bounded queues, producers and Settings.MCP Events independent review (#491)
Audited feature:
dadd320e24da39698112bab839edb3d2cb746dc7.Review branch:
job/mcp-events-review-491. No feature implementation is changed.DESIGN §§21, 41, 54 and 55 set the review requirements.
Findings recorded during review
Endpoint verification does not bind the signing key (fix required).
In
crates/calternal-server/src/mcp_events.rs,Hub::subscribeuses(owner, password, url)asverify_key. A cached successful verificationskips
verify_endpoint. The registration installs the newly supplied keyand becomes active. Changing the key therefore does not prove that the
receiver accepts it. Bind verification to a key digest and verify a new key
before replacing the active registration. Do not store the raw key in a
cache key. This is a protocol and delivery-integrity defect. No cross-User
access or SSRF bypass is established by this finding.
HTTP 410 and 413 do not stop the subscription (fix required).
finish_pendingtreats these statuses as a completed queue item. It doesnot disable or remove the subscription, clear the rest of its queue, or
suppress later occurrences. The issue requires delivery to stop on these
statuses. Stop the grant and document whether a new subscription can
restart it. Five failed retries also drop an item without a gap or retained
dead-letter record. A receiver cannot detect that loss from a later event.
Cross-User contract inventory fails (fixed in review patch).
The feature adds
mcp_event_revokebut not its entry inROUTE_ID_FIELDS.The unchanged classification suite failed with:
OpenAPI path ID has no resource classification: DELETE /api/v1/apps/events/subscriptions/{id} (mcp_event_revoke).The patch adds this classification and an explicit route-policy test.
Existing test expectations are unchanged. The Hub's existing two-User
router test remains the live in-memory grant test; the generic external
matrix does not create a verified public webhook fixture.
Receiver instructions omit the verification contract (fix required).
docs/mcp-events.mdnames Standard Webhooks and deduplication but does nottell a receiver to use constant-time HMAC verification, reject timestamps
outside a replay window, or retain event IDs across retries. The existing
reference receiver uses
standardwebhooksbut it is a test, not receiverdocumentation. Document a five-minute timestamp window and stable-ID
deduplication. Rotation also permits a request already in flight to use
the old key; state that limit instead of promising immediate rotation.
Settings exposes draft and protocol terms (non-blocking).
apps/web/src/routes/settings/apps/McpEventsGroup.svelteshowsSigned updates for your assistants (draft)and raw event names.AppsSection.sveltealso includes(draft). DESIGN §50 requires plainlabels. Keep version and draft details in the technical documentation.
Validation in progress
The initial cross-User classification patch passes eight tests. Rust test
compilation is in progress. Outbound, signature, queue, polling and real-server
results will be added before the final verdict.
Decisions
coverage and precise code references for the feature author.
starts detached. Commit only on the new review branch.
MCP Events independent review (#491)
Audited feature:
dadd320e24da39698112bab839edb3d2cb746dc7.Review branch:
job/mcp-events-review-491. No feature implementation is changed.DESIGN §§21, 41, 54 and 55 set the review requirements.
Findings recorded during review
Endpoint verification does not bind the signing key (fix required).
In
crates/calternal-server/src/mcp_events.rs,Hub::subscribeuses(owner, password, url)asverify_key. A cached successful verificationskips
verify_endpoint. The registration installs the newly supplied keyand becomes active. Changing the key therefore does not prove that the
receiver accepts it. Bind verification to a key digest and verify a new key
before replacing the active registration. Do not store the raw key in a
cache key. This is a protocol and delivery-integrity defect. No cross-User
access or SSRF bypass is established by this finding.
HTTP 410 and 413 do not stop the subscription (fix required).
finish_pendingtreats these statuses as a completed queue item. It doesnot disable or remove the subscription, clear the rest of its queue, or
suppress later occurrences. The issue requires delivery to stop on these
statuses. Stop the grant and document whether a new subscription can
restart it. Five failed retries also drop an item without a gap or retained
dead-letter record. A receiver cannot detect that loss from a later event.
Cross-User contract inventory fails (fixed in review patch).
The feature adds
mcp_event_revokebut not its entry inROUTE_ID_FIELDS.The unchanged classification suite failed with:
OpenAPI path ID has no resource classification: DELETE /api/v1/apps/events/subscriptions/{id} (mcp_event_revoke).The patch adds this classification and an explicit route-policy test.
Existing test expectations are unchanged. The Hub's existing two-User
router test remains the live in-memory grant test; the generic external
matrix does not create a verified public webhook fixture.
Receiver instructions omit the verification contract (fix required).
docs/mcp-events.mdnames Standard Webhooks and deduplication but does nottell a receiver to use constant-time HMAC verification, reject timestamps
outside a replay window, or retain event IDs across retries. The existing
reference receiver uses
standardwebhooksbut it is a test, not receiverdocumentation. Document a five-minute timestamp window and stable-ID
deduplication. Rotation also permits a request already in flight to use
the old key; state that limit instead of promising immediate rotation.
Settings exposes draft and protocol terms (non-blocking).
apps/web/src/routes/settings/apps/McpEventsGroup.svelteshowsSigned updates for your assistants (draft)and raw event names.AppsSection.sveltealso includes(draft). DESIGN §50 requires plainlabels. Keep version and draft details in the technical documentation.
Delivery has bounds but no fair socket allocation (fix required).
Hub::defaultgives all Users one semaphore with four permits. Thedelivery tick uses
try_acquire_ownedbefore selecting a User, andready_subscriptionuses the first ready HashMap entry. There is noper-User socket limit or round-robin cursor. One User can occupy all four
permits with slow requests. DNS is bounded to 3 s and HTTP to 5 s, so each
attempt is finite, but other Users have no reserved capacity. The existing
rate-limit test and the review's in-flight-selection test do not prove
socket fairness. Add fair User selection and a per-User concurrency bound.
Idle Events delivery polls at 10 Hz (performance finding).
Hub::startcreates a 100 ms interval even when there are no subscriptions.The source worker also ticks every 15 s; the bill worker ticks every 30 s.
These three loops schedule about 10.1 ticks/s, of which 0.1 ticks/s belong
to the two producer loops. Empty producer interest sets cause no Index or
Home scan. Use a Notify and a deadline for ready deliveries. For Files and
Shares, use the existing change-feed signal to start scans; Task, Calendar
and Bill deadlines still need scheduling. Whole-Instance idle measurements
will not be presented as Events-only CPU attribution.
Validation in progress
The initial cross-User classification patch passes eight tests. Rust test
compilation is in progress. Outbound, signature, queue, polling and real-server
results will be added before the final verdict.
Decisions
coverage and precise code references for the feature author.
starts detached. Commit only on the new review branch.
Correction to preliminary findings 1 and 2: the upstream draft explicitly caches verification per (principal, URL), and requires HTTP 410/413 to stop retries for that delivery without ending the subscription. Both behaviors in the feature are compliant. The key-digest cache and whole-subscription termination recommendations are withdrawn. The final report will mark these checks cleared. Matrix classification, fair socket scheduling, receiver documentation and idle polling remain under review.
MCP Events independent review (#491)
Audited feature:
dadd320e24da39698112bab839edb3d2cb746dc7.Review branch:
job/mcp-events-review-491. No feature implementation is changed.DESIGN §§21, 41, 54 and 55 set the review requirements.
Verdict: GO-with-fixes. Apply the matrix classification fix in this patch
(finding 3), add receiver verification and rotation instructions (finding 4),
and give Users fair delivery capacity (finding 6). No SSRF bypass, signing-key
disclosure, or cross-User payload leak was found. The socket fairness result
is a code-review finding, not a measured outbound denial-of-service claim.
UI wording and idle polling are non-blocking follow-up work. Preliminary
findings 1 and 2 were cleared against the upstream draft.
Findings recorded during review
Endpoint verification cache: cleared after draft review.
Hub::subscribecaches(owner, password, url), and a refresh can installa new key without another challenge. This matches the upstream draft's
(principal, url)cache policy. The earlier recommendation to bind thecache to a key digest is withdrawn. Rotation should not multiply challenge
requests. A new key fails verification with the old receiver key, as the
independent reference-verifier test confirms; the client coordinates its
own rotation.
HTTP 410/413: cleared after draft review.
finish_pendingstops retries for the current item and keeps the grant.The upstream draft explicitly requires this behavior. The earlier
recommendation to stop the whole grant is withdrawn. Five failed retries
then discard the item. This is bounded but leaves no diagnostic history.
With this documented emit-only surface there is no replay guarantee; a
loss notice or bounded delivery-error counter would improve diagnosis.
This diagnostic suggestion does not block the review.
Cross-User contract inventory fails (fixed in review patch).
The feature adds
mcp_event_revokebut not its entry inROUTE_ID_FIELDS.The unchanged classification suite failed with:
OpenAPI path ID has no resource classification: DELETE /api/v1/apps/events/subscriptions/{id} (mcp_event_revoke).The patch adds this classification and an explicit route-policy test.
Existing test expectations are unchanged. The Hub's existing two-User
router test remains the live in-memory grant test; the generic external
matrix does not create a verified public webhook fixture.
Receiver instructions omit the verification contract (fix required).
docs/mcp-events.mdnames Standard Webhooks and deduplication but does nottell a receiver to use constant-time HMAC verification, reject timestamps
outside a replay window, or retain event IDs across retries. The existing
reference receiver uses
standardwebhooksbut it is a test, not receiverdocumentation. Document a five-minute timestamp window and stable-ID
deduplication. Rotation also permits a request already in flight to use
the old key; state that limit instead of promising immediate rotation.
Settings exposes draft and protocol terms (non-blocking).
apps/web/src/routes/settings/apps/McpEventsGroup.svelteshowsSigned updates for your assistants (draft)and raw event names.AppsSection.sveltealso includes(draft). DESIGN §50 requires plainlabels. Keep version and draft details in the technical documentation.
Delivery has bounds but no fair socket allocation (fix required).
Hub::defaultgives all Users one semaphore with four permits. Thedelivery tick uses
try_acquire_ownedbefore selecting a User, andready_subscriptionuses the first ready HashMap entry. There is noper-User socket limit or round-robin cursor. One User can occupy all four
permits with slow requests. DNS is bounded to 3 s and HTTP to 5 s, so each
attempt is finite, but other Users have no reserved capacity. The existing
rate-limit test and the review's in-flight-selection test do not prove
socket fairness. Add fair User selection and a per-User concurrency bound.
Idle Events delivery polls at 10 Hz (performance finding).
Hub::startcreates a 100 ms interval even when there are no subscriptions.The source worker also ticks every 15 s; the bill worker ticks every 30 s.
These three loops schedule about 10.1 ticks/s, of which 0.1 ticks/s belong
to the two producer loops. Empty producer interest sets cause no Index or
Home scan. Use a Notify and a deadline for ready deliveries. For Files and
Shares, use the existing change-feed signal to start scans; Task, Calendar
and Bill deadlines still need scheduling. Whole-Instance idle measurements
will not be presented as Events-only CPU attribution.
Security checks
mcp_events::callback, lines 162–180; no production exceptionclientcalls Calendarfeeds::webhook_addresses;feeds/subscriptions.rs::resolve_addresses,is_public_address,is_public_ipv4clientclientusesresolve_to_addrsfor the original hostnameclientusesPolicy::none()andno_proxy()identityincludes User and App Password.enqueueselects the exact producer User, then applies registry field allowlists and exact filtersevent.valid_argumentschecks shape, length and declared fields.allowedchecks the broad principal and plugin, not the existence/ownership of an account, folder or item filterprincipal_allowedre-reads disabled User, both surface switches, current App Password, expiry, Read access and unrestricted scope.allowedchecks live plugin enablement. Worker repeats these after DNS and before sendingsources::filesuses the User-local change feed and ordinary item reader. Worker repeats the item read before delivery of Files and Share eventssignaturesigns exactid.timestamp.bodybytes with HMAC-SHA256 and sends Standard Webhooks headersThese checks use the producer-supplied User, not a recipient chosen in a
payload. Shared data needs the ordinary live item read. Scoped App Passwords
are refused rather than given a broader event grant.
The Standard Webhooks specification requires raw-body signatures and replay
protection. The review checked the upstream specification and the pinned
standardwebhooks1.0.1 source. Its verifier has a 300 s tolerance and afull-length XOR comparison. Reference:
Standard Webhooks specification.
cargo searchconfirmed reqwest 0.13.5 and standardwebhooks 1.0.1. No packageor dependency version was changed.
Producer review
crates/plugins/mail/src/cache/store.rs::store_window, event loop aftertransaction.commit();sync::statement_subjectcrates/plugins/money/src/routes.rs::create_transaction, lines 1088–1124crates/plugins/money/src/events.rs::startcrates/calternal-server/src/mcp_event_sources.rs::tasks,task_triggermcp_event_sources.rs::calendar;crates/plugins/calendar/src/view.rs::webhook_candidatescrates/plugins/notifications/src/store.rs, event block aftertransaction.commit()mcp_event_sources.rs::filesThe registry lists twelve events from action declarations. No comment creation
action or store exists, so
share.comment_createdis omitted and documented.The draft's endpoint cache and per-delivery 410/413 rules were checked at
the upstream design sketch.
This resolves preliminary findings 1 and 2; neither is a defect.
The timer sources deduplicate occurrences per grant. Their limits are finite,
but large scans across many filter sets still need performance testing.
Real-server round and performance
The extended
tests/adversarial/mcp_events.mjsprobe passed on a disposablelocal Instance. It rejects malformed schema and HTTP callbacks. With valid
synthetic signing keys, it rejects five non-public callback literals before
connection. It checks both User and Admin off switches and checks that the
Events initialization capability disappears. No tested request returned a
5xx or exposed a receiver response. This was one bounded real-server round.
The probe contacted no external webhook receiver.
The perf VM returned
No route to hoston one check. These measurements usea local debug build on the shared host. No release regression claim is made.
Load averages at the discovery sample were 8.13, 12.12 and 14.60.
The last row is
docs/perf/baseline.json::metrics.scenarios.idle_one_user.It is shown for context. It is not comparable to this shorter local debug
sample. The baseline has no MCP Events workload or idle Events-only sample,
so there is no matching threshold for a regression issue. The earlier local
feature report measured discovery at 1542.50/2875.43 ms and its burst at
2781.02/5237.58 ms under higher host load. The lower values here do not prove
an implementation speedup.
The idle sample recorded 4,791 voluntary context switches in threads present
at both sample boundaries, or 79.66/s. This includes all server workers. It
is not an Events wakeup count. Source code schedules 10 delivery ticks/s,
1/15 source ticks/s and 1/30 bill ticks/s. Empty interests cause no producer
Index or Home reads. The two producer timers are acceptable at idle under
these bounds; the 10 Hz delivery timer is the first optimization target.
Files and Shares should use the existing change-feed signal when active.
Time-based Tasks, Calendar and Bills still need deadlines, not only pushes.
The queue benchmark ran once. Load averages were 15.26, 15.08 and 15.19.
Each queue stayed at or below 32 entries. The review test also proves the
4,096 seen-ID cap after a 10,000-event burst on one grant.
The combined fixture took 77.02 s and 72.73 CPU seconds (94.44% of one core).
Mean RSS was 73.11 MiB and peak RSS was 90.57 MiB. The earlier feature fixture
had mean/peak RSS of 59.93/63.23 MiB, but it did not include the 10,000-event
phase. These are different combined workloads. No unbounded queue growth was
observed. The fixture does not open sockets or measure producer Index scans.
Raw logs remain in ignored
artifacts/.Known gaps
rotation test. Resolver pinning, redirects, key replacement and authority
checks have precise code references; address refusal and signature behavior
have executable tests.
fixture. The existing Hub router matrix and new two-User queue test cover
active in-memory grant isolation.
Existing selection tests cover a busy subscription and an exhausted User,
not a User holding all permits.
bounded. A failure counter would help diagnosis.
changed, so the review adds no screenshot or visual-quality claim.
unmeasured on a large Home and on the release perf VM.
Review patch and gates
The patch adds eight defensive Rust tests, extends the two-User contract
classification, extends the real-server switch/address probe, and adds idle
and 10,000-event measurements. Production behavior is unchanged.
Changed files:
review-findings.mdcrates/calternal-server/src/mcp_events.rs(test module and fixture only)crates/calternal-server/src/mcp_events_review.rstests/adversarial/xuser_matrix.pytests/adversarial/test_xuser_classification.pytests/adversarial/mcp_events.mjsbench/mcp-events.mjsThe requested fetch and merge ran once:
Already up to date.No migration,package version, lockfile, or existing test expectation was changed. Module
and non-obvious function comments were read again before this report.
The response-cap fixture was strengthened after the first gates, so the
server gates were repeated for that test change. No second real-server
adversarial round or benchmark round was run.
cargo fmt --check: exit 0, no output.cargo clippy -p calternal-server --all-targets -- -D warnings:cargo test -p calternal-server:The normal test gate ignores the performance fixture and three fixtures with
process-global Plugin state. The latter run in the passing
live_apps_run_in_separate_processestest. The performance fixture was runseparately and passed.
python3 -m unittest discover -s tests/adversarial -p test_xuser_classification.py:node --check bench/mcp-events.mjsandnode --check tests/adversarial/mcp_events.mjs: exit 0, no output.The bounded real-server round ran through
node bench/mcp-events.mjs:The production web build passed. No application Web source was changed;
Web check/test and new visual captures are outside this review patch.
Build output is removed at the end of the job. Raw logs and the exported
patch remain under ignored
artifacts/; none are committed.Decisions
coverage and precise code references for the feature author.
starts detached. Commit only on the new review branch.
410/413 handling. The issue's short phrase "stop on 410 and 413" means stop
retrying that delivery. This corrects preliminary observations, not a new
product design choice.
Instance harness. No User data, credentials or review artifacts are added
to the repository.
Final review head:
ed543dab2041c21e1ff6f300827f999250333bd4.Local review patch:
artifacts/mcp-events-review.patchin/home/kayg/Developer/calternal-wt/mcp-events-review. No push or deploy. The verdict requires the feature author to address findings 4 and 6 and apply the matrix fix in this patch. Issue remains open.Starting round 2 fixes on
job/mcp-events-491.Base:
origin/devat687ff703136e71e89f8dfba139e93cd0788b25c1. Starting feature SHA:dadd320e24da39698112bab839edb3d2cb746dc7.I am reading the independent review and porting its matrix/probe/benchmark coverage before implementing fair delivery, idle wakeups, receiver guidance and UI wording.
Round 2 findings confirmed in the audited implementation:
Hub::startpolls every 100 ms even with no queued deliveries.mcp_event_sources::startand the Money bill worker also wake every 15 and 30 seconds with no active interest.HashMapentry. There is no per-User in-flight bound, so one User can occupy all four sockets.docs/mcp-events.mddid not state raw-body HMAC verification, the five-minute replay window, durable event-ID deduplication, or receiver-side key rotation overlap.mcp_event_revokeID classification, and the Settings descriptions include “(draft)”.Receiver guidance and visible wording are now committed as
a4cd5210a. The review tests and probes are being ported and the scheduler fixes are in progress.Finding during Round 2 review:
start_file_feedsubscribed to the shared Files broadcast even whensource_targetswas empty, so normal file writes could wake the MCP worker without an active Files or Shares grant. The worker now waits only onsource_changesin that state. When a matching grant appears, it scans the durable feed before waiting on the next signal, which also covers a write that raced with activation. This preserves the idle zero-periodic-wakeup goal and uses the existing feed signal only while relevant grants exist.The small public Files addition is
FilesState::subscribe_change_feed_wakeups(). It exposes only the existing data-free wake signal; the server still reads the durable, User-scoped change feed for event data and authorization.Round 2 complete. Branch:
job/mcp-events-491. Head:48c7d4f5dbd669f24b506c1db94f718eef7a6388.origin/devwas fetched and merged once before the final gates; it was already up to date.Changes
FilesState::subscribe_change_feed_wakeups(). It exposes only the existing data-free signal; event data still comes from the durable User-scoped feed.Files
apps/web/src/routes/settings/apps/AppsSection.svelte,apps/web/src/routes/settings/apps/McpEventsGroup.sveltebench/mcp-events.mjs;crates/calternal-plugin/src/mcp_events.rscrates/calternal-server/src/mcp_event_sources.rs,crates/calternal-server/src/mcp_events.rs,crates/calternal-server/src/mcp_events_review.rscrates/plugins/files/src/lib.rs;crates/plugins/money/src/events.rsdocs/mcp-events.md;docs/perf/2026-10-02-mcp-events-491.mdtests/adversarial/mcp_events.mjs,tests/adversarial/test_xuser_classification.py,tests/adversarial/xuser_matrix.pyGates
cargo fmt --check: exit 0; stdout and stderr were empty.cargo clippy -p calternal-server --all-targets -- -D warnings:cargo clippy -p calternal-plugin --all-targets -- -D warnings:cargo clippy -p calternal-plugin-files --all-targets -- -D warnings:cargo clippy -p calternal-plugin-money --all-targets -- -D warnings:cargo test -p calternal-server:test result: ok. 127 passed; 0 failed; 4 ignored; 0 measured; 0 filtered out; finished in 17.18scargo test -p calternal-plugin:test result: ok. 24 passed; 0 failed; 0 ignored; 0 measured; 0 filtered out; finished in 2.82scargo test -p calternal-plugin-files:test result: ok. 146 passed; 0 failed; 1 ignored; 0 measured; 0 filtered out; finished in 108.66scargo test -p calternal-plugin-money:test result: ok. 24 passed; 0 failed; 0 ignored; 0 measured; 0 filtered out; finished in 5.64sbun run check:svelte-check found 0 errors and 0 warningsbun run test:Local probes and profile
Cross-User classification gate: 337 operations classifiedGenerated entry point classification: 951 tools classifiedAdmin coverage: 39 reviewed operations; contract and Rust guards agreeTwo-User OpenAPI matrix: 337 operations classified; 159 operations replayed; 733 A-ID vs missing-ID comparisons across B, C, D and anonymous; 23 identifier routes classified with no local fixture factory; median absolute timing delta 0.6 msJob/Mail/quota ownership checks: 97 comparisons; 0 denial failuresRevoked Share timing control: identical HTTP 404 profiles; median delta 1.5 ms across 12 alternating pairsThe first matrix attempt stopped because this worktree lacked the
calternalCLI binary. I built it and reran the matrix once; the run above passed.mcp_event_revokeis classified but has no local matrix fixture factory.MCP Events local route checks passed.All twelve event types were visible.Idle window, whole local debug server with no subscriptions: 30.05 s before / 30.10 s after; CPU 0.24 s / 0.18 s; voluntary context switches 73.34/s / 44.32/s; source-derived MCP Events periodic timer rate 10.10/s / 0.00/s. The host load differed, so this is not a release speedup claim.
After-change profile: average 30 requests, concurrency 1, p50 512.51 ms, p95 625.18 ms, CPU 98.61%, mean RSS 240.83 MiB, peak 244.46 MiB. Burst: 64 requests, concurrency 8, p50 1059.12 ms, p95 1779.91 ms, CPU 237.73%, mean RSS 293.28 MiB, peak 304.84 MiB.
Screenshots
Known gaps
docs/perf/baseline.jsonhas no MCP Events workload. The local debug profile and the before/after idle sample are recorded indocs/perf/2026-10-02-mcp-events-491.md; repeat on the perf VM with the shared release build for a comparable baseline.mcp_event_revoke; the route is classified, and MCP Events Settings ownership tests pass.share.comment_createdremains unavailable until the comment action and store exist.Decisions not set by DESIGN §55
Static audit evidence for DESIGN §55 MCP Events:
The MCP server generates tool definitions from the action registry at crates/calternal-server/src/mcp.rs:337-358. Its advertised capabilities enable tools only at :1229-1234. I found no events/list, subscription or signed webhook implementation.
Expected: versioned events/list entries come from the action registry, and subscriptions deliver signed webhooks with access checks before each delivery. Regression idea: subscribe, trigger an event, then revoke access and confirm later delivery stops.