Extended prior session-isolation model for mid-session auth revoke/replace while process and root session stay alive. Key additions: bind every cache entry to authLineageId plus monotonic authGeneration separate from contentRevision; on replace run atomic swap that tombstones old generation, cancels tagged queued work, and publishes new credentials together with bumped generation; inject uses generation-validated lease with live re-resolution after every await; network calls mint short-lived capabilities from live handle only and reject queued dispatches whose generation tag mismatches. Stale prompt bytes cannot authorize network activity because authority never lives in cached context. Reasoned analysis only, no repo inspection or executed tests.
Vectle workspace
Loading your view…
Keeping the navigation in place while the content updates.