Skip to content

CLI: Update SDK to c026e806a1bdffd330b0f533d5f132d7d9b0e5aa and add new commands/flags - #278

Open
kernel-internal[bot] wants to merge 3 commits into
mainfrom
cli-coverage-update
Open

kernel-internal[bot] wants to merge 3 commits into
mainfrom
cli-coverage-update

Conversation

@kernel-internal

@kernel-internal kernel-internal Bot commented Oct 1, 2026 •

Copy link
Copy Markdown
Contributor

This PR updates the Go SDK to c026e806a1bdffd330b0f533d5f132d7d9b0e5aa and adds CLI commands/flags for new SDK methods.

SDK Update

  • Updated kernel-go-sdk to c026e806a1bdffd330b0f533d5f132d7d9b0e5aa (v0.116.0)

Coverage Analysis

This PR was generated by performing a full enumeration of SDK methods and CLI commands. Config-registry endpoints are marked x-cli-skip and are intentionally not covered.

The latest bump from 10c4031082d7 to c026e806a1bd (v0.116.0) only changes SDK release metadata, so it adds no new gaps. The flags below come from the earlier commit on this branch.

New Commands

  • None

New Flags

  • kernel credentials create --totp-algorithm for CreateCredentialRequestParam.TotpAlgorithm (SHA1/SHA256/SHA512, case-insensitive)
  • kernel credentials create --totp-digits for CreateCredentialRequestParam.TotpDigits
  • kernel credentials create --totp-period for CreateCredentialRequestParam.TotpPeriod
  • kernel credentials update --totp-algorithm for UpdateCredentialRequestParam.TotpAlgorithm
  • kernel credentials update --totp-digits for UpdateCredentialRequestParam.TotpDigits
  • kernel credentials update --totp-period for UpdateCredentialRequestParam.TotpPeriod

credentials get and credentials create now show TOTP Algorithm, Digits and Period when a TOTP secret is configured. The --totp-secret help text now says it also accepts otpauth:// URIs.

Testing

Run against the live API in the earlier commit:

  • create with SHA256/8 digits/60s: returned an 8-digit code, and the metadata showed up in get
  • totp-code: works
  • update to SHA512/7 digits: confirmed in get -o json
  • an invalid algorithm is rejected
  • otpauth:// URI parameters win over the explicit flags
  • test credentials were deleted afterwards

After the v0.116.0 bump: go build ./... and go test ./... pass.

Triggered by: kernel/kernel-go-sdk@c026e80
Reviewer: @masnwilliams

🤖 Generated with Claude Code


Note

Medium Risk
Changes how stored 2FA credentials are created and updated; incorrect TOTP parameters could break login flows, though algorithm validation and SDK behavior limit exposure.

Overview
Bumps kernel-go-sdk to v0.116.0 and wires new credential TOTP options through the CLI.

credentials create and credentials update gain --totp-algorithm (SHA1/SHA256/SHA512, validated via normalizeTotpAlgorithm), --totp-digits, and --totp-period, passed to the SDK only when set (Int64Flag + Changed() for numeric flags). --totp-secret help now documents otpauth:// URIs; totp-code help no longer assumes 6-digit codes.

credentials get and create success tables insert TOTP algorithm, digits, and period rows when a secret exists (credentialTotpRows). Adds a small unit test for algorithm normalization.

Reviewed by Cursor Bugbot for commit ea4aa73. Bugbot is set up for automated code reviews on this repo. Configure here.

SDK version bump only. A full enumeration of SDK methods vs CLI commands
found no coverage gaps (config-registry endpoints are x-cli-skip).

Tested: go build ./... (no new commands/flags to smoke test)

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
@socket-security

socket-security Bot commented Oct 1, 2026 •

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatedgolang/​github.com/​kernel/​kernel-go-sdk@​v0.114.1-0.20260930182635-e746d9980b83 ⏵ v0.116.073 +1100100100100

View full report

- Bump github.com/kernel/kernel-go-sdk to 10c4031082d73b41180adeb54a722f89341907ff
- Add --totp-algorithm, --totp-digits, --totp-period to `kernel credentials create`
  and `kernel credentials update` (CreateCredentialRequestParam /
  UpdateCredentialRequestParam TotpAlgorithm, TotpDigits, TotpPeriod)
- Show TOTP algorithm/digits/period in credentials get/create output

Tested: credentials create --totp-secret --totp-algorithm sha256 --totp-digits 8
--totp-period 60 (8-digit code returned, metadata shown in get), credentials
totp-code, credentials update --totp-secret --totp-algorithm SHA512 --totp-digits 7
(verified in get -o json), invalid --totp-algorithm rejected, otpauth:// URI
params take precedence over explicit flags, credentials delete cleanup.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
@kernel-internal kernel-internal Bot changed the title CLI: Update Go SDK to 820e4fed1c2963e3dea2b6159640c4d855f82cde CLI: Update SDK to 10c4031082d73b41180adeb54a722f89341907ff and add new commands/flags Oct 1, 2026
Bumps kernel-go-sdk to v0.116.0 (c026e806a1bd). The SDK changes since
10c4031082d7 are release metadata only. A full enumeration of SDK
methods against CLI commands found no coverage gaps. Config-registry
endpoints are x-cli-skip.

Tested: go build ./..., go test ./... (SDK version bump only, no new commands/flags)

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
@kernel-internal kernel-internal Bot changed the title CLI: Update SDK to 10c4031082d73b41180adeb54a722f89341907ff and add new commands/flags CLI: Update SDK to c026e806a1bdffd330b0f533d5f132d7d9b0e5aa and add new commands/flags Oct 1, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants