Skip to content

Add privacy as CODEOWNER for confidentialrelay and confidentialworkflow#2135

Merged
pavel-raykov merged 4 commits into
mainfrom
tejaswi/codeowners-confidentialrelay
Jun 9, 2026
Merged

Add privacy as CODEOWNER for confidentialrelay and confidentialworkflow#2135
pavel-raykov merged 4 commits into
mainfrom
tejaswi/codeowners-confidentialrelay

Conversation

@nadahalli

@nadahalli nadahalli commented Jun 8, 2026

Copy link
Copy Markdown
Contributor

confidentialrelay (relay-DON authorization logic, PRIV-433) and confidentialworkflow are privacy-owned capability code. Neither had a specific CODEOWNERS entry, so both fell under the catch-all @smartcontractkit/foundations and privacy reviews were not required as code owners (e.g. #2109).

This adds explicit @smartcontractkit/privacy entries for both, mirroring the existing confidentialhttp entry. All three confidential capability folders under pkg/capabilities/v2/actions/ are now privacy-owned.

confidentialrelay carries the relay-DON authorization logic (PRIV-433),
which is privacy-owned security code, but it currently falls under the
catch-all foundations owner. Add an explicit entry so privacy reviews are
required, mirroring the existing confidentialhttp and teeattestation entries.
Copilot AI review requested due to automatic review settings June 8, 2026 15:06
@nadahalli nadahalli requested a review from a team as a code owner June 8, 2026 15:06
@github-actions

github-actions Bot commented Jun 8, 2026

Copy link
Copy Markdown

👋 nadahalli, thanks for creating this pull request!

To help reviewers, please consider creating future PRs as drafts first. This allows you to self-review and make any final changes before notifying the team.

Once you're ready, you can mark it as "Ready for review" to request feedback. Thanks!

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Adds an explicit CODEOWNERS rule for the confidentialrelay action package so that reviews require the intended ownership teams (privacy + foundations), aligning ownership expectations for security-sensitive relay authorization logic.

Changes:

  • Add a CODEOWNERS entry for /pkg/capabilities/v2/actions/confidentialrelay assigning @smartcontractkit/privacy and @smartcontractkit/foundations.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

pavel-raykov
pavel-raykov previously approved these changes Jun 8, 2026
@pavel-raykov pavel-raykov enabled auto-merge June 8, 2026 15:37
Match confidentialhttp: confidentialrelay is purely privacy's code, so assign
it to @smartcontractkit/privacy outright rather than co-owning with foundations.
@nadahalli nadahalli requested a review from pavel-raykov June 9, 2026 13:44
@nadahalli nadahalli changed the title Add privacy + foundations as CODEOWNERS for confidentialrelay Add privacy as CODEOWNER for confidentialrelay and confidentialworkflow Jun 9, 2026
@pavel-raykov pavel-raykov added this pull request to the merge queue Jun 9, 2026
Merged via the queue into main with commit 03d7bd2 Jun 9, 2026
33 checks passed
@pavel-raykov pavel-raykov deleted the tejaswi/codeowners-confidentialrelay branch June 9, 2026 17:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants