225 lines
56 KiB
JSON
225 lines
56 KiB
JSON
{"prompt":"Design a zero-trust machine-identity architecture for services, CI jobs, developer workstations, and edge robots. Cover enrollment, attestation, short-lived credentials, authorization, revocation, offline operation, audit evidence, and migration from shared certificates.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"core","lang":"en"}
|
|
{"prompt":"Implement an OIDC authorization-code flow in Rust with PKCE, rotating refresh tokens, state validation, and session revocation.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Build the browser extension popup for managing site permissions, blocked requests, and per-domain rules.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Set CSP_REPORT_ONLY to false.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Extract JWT claim normalization into one package without changing accepted tokens or authorization outcomes.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"WebAuthn registration fails intermittently on Safari after Face ID succeeds. Find which challenge or navigation state becomes invalid.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Inspect security/key_cache.go and explain whether a revoked signing key can remain usable during cache refresh.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Write an integration guide for partners adopting signed webhook requests and overlapping secret rotation.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"en"}
|
|
{"prompt":"Outline a migration strategy from static robot credentials to hardware-backed identities. I need trust decisions, stages, and rollback criteria, not firmware or server code.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.8,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Add the documented token-exchange fields to openapi.yaml and implement their server-side validation.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.6,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Make the blocked-site indicator more prominent and animate it once when the extension opens.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.3,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Rename req to request in callback.ts.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Rename serviceAccount to workloadIdentity across the monorepo while preserving wire fields and config aliases.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Warum werden abgelaufene Sessions nach einem Redis failover wieder gültig? Finde die unbekannte Ursache.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"boundary","lang":"de"}
|
|
{"prompt":"Explain why the current authorization engine evaluates explicit denies before administrator grants. Assume behavior is correct.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.5,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Turn the existing API-key creation code into a concise security concepts page for developers.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.5,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Map out an autonomy architecture for warehouse robots that must keep operating through control-plane outages. Cover mission leasing, local safety, map versions, conflict avoidance, degraded modes, reconciliation, observability, and staged deployment.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"core","lang":"en"}
|
|
{"prompt":"Create a ROS 2 service that reserves loading bays, enforces lease expiry, and resolves concurrent robot claims.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Implement the React fleet map with live robot positions, mission paths, geofence overlays, and accessible list fallback.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Change the lidar range to 25m.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Consolidate duplicate coordinate-frame conversions while preserving floating-point results and timestamp handling.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"The robot's pose jumps two meters after map relocalization even though scan matching converges. Locate the frame or timestamp error.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Assess whether navigation/path_planner.cpp can route through a zone that becomes restricted during an active mission.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Draft an operator runbook for recovering robots stranded by a failed map deployment.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"en"}
|
|
{"prompt":"Security architecture ticket IAM-2081\n\nObjective: eliminate long-lived credentials used by customer-managed data connectors.\nCurrent state:\n- connectors run in customer Kubernetes clusters\n- each connector receives a static API key during installation\n- keys are scoped to one tenant but remain valid until manually revoked\n- connectors may be offline for several weeks\n- some environments cannot accept inbound traffic\n- installations range from version 2.1 to 7.4\n\nRequirements:\n1. Bootstrap without sending a reusable secret through Helm values\n2. Issue short-lived credentials after proving installation identity\n3. Support planned and emergency rotation\n4. Permit offline buffering without permitting indefinite API access\n5. Expose enrollment, renewal, failure, and revocation evidence\n6. Allow gradual rollout by tenant and connector version\n7. Preserve an emergency recovery path for air-gapped customers\n\nProduce the threat model, protocol design, compatibility approach, and migration plan. No implementation yet.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Backend story SEC-771\n\nAdd one-time recovery codes to the Go identity service.\n\nAcceptance criteria:\n- generate ten high-entropy human-readable codes when MFA is enrolled or regenerated\n- store only an appropriate slow hash\n- each code may be consumed once\n- consumption must be atomic across regions\n- successful use revokes all active refresh tokens except the current recovery session\n- regeneration invalidates every previous unused code\n- audit events record actor, account, and outcome, never the code\n- rate limits apply per account and network source\n- support agents cannot view or generate codes\n- responses should not reveal whether a submitted code was previously used\n\nFollow transaction patterns in internal/mfa and add concurrency, replay, and audit-redaction tests.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.8,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Browser extension design notes:\n\nPage: RulesEditor.tsx\nData model already provides hostname patterns, resource types, action, priority, and enabled state.\n\nDesired behavior:\n- rules appear in priority order and support drag reordering\n- domain patterns have inline validation with an example of matched sites\n- resource types use a searchable multi-select\n- conflicting rules show a non-blocking warning\n- unsaved edits persist if the popup closes\n- a test panel accepts a URL and explains the winning rule\n- screen-reader users need a non-drag method to reorder\n- narrow popup mode uses a full-screen editor for one rule\n- dark theme must distinguish disabled and invalid states without opacity alone\n\nBuild the editor using the existing rules store; do not change matching semantics.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Approved dependency update:\n\nPackage: @simplewebauthn/browser\nCurrent version: 13.1.0\nApproved version: 13.1.2\nFiles in scope:\n- apps/portal/package.json\n- pnpm-lock.yaml\n\nThe security review and browser matrix are complete. Update only this dependency and the lockfile entries produced by the package manager. Do not update @simplewebauthn/server, TypeScript, pnpm, unrelated transitive packages, browser targets, or authentication code. Preserve the existing semver style and workspace configuration.\n\nApply the known patch bump.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.2,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Cleanup note from the identity team:\n\nThe service contains four nearly identical principal builders for HTTP, gRPC, background jobs, and support impersonation. All builders normalize tenant ids, attach roles, resolve feature entitlements, and derive audit identity. Differences are intentional: jobs have no user actor, gRPC includes peer workload identity, and impersonation tracks both real and effective users. Authorization tests assert exact claims and audit records.\n\nExtract shared normalization and construction primitives without merging the distinct entry points. Preserve authorization results, claim ordering, error messages, audit identity, tracing fields, and public interfaces. Avoid a mutable global context. This should be structural cleanup only.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Authentication incident excerpt:\n\n2026-07-28T04:12:10Z token_refresh INFO account=8f1 family=9aa presented=41 issued=42\n2026-07-28T04:12:10Z token_refresh INFO account=8f1 family=9aa presented=41 issued=43\n2026-07-28T04:12:11Z token_refresh WARN reuse_detected family=9aa token=41\n2026-07-28T04:12:11Z session INFO family_revoked family=9aa\n\nThe mobile client sent two refresh requests concurrently after waking. Both database transactions committed, producing two valid descendants. A later retry of the old token revoked the whole family and logged the user out. Refresh rows use PostgreSQL, isolation is read committed, and uniqueness currently covers token hash only. Diagnose the race and implement rotation that permits idempotent network retry without allowing sibling tokens.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.9,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Revisión solicitada, sin cambios:\n\nEl servicio firma access tokens con Ed25519. Las claves privadas viven en KMS y el proceso mantiene claves públicas en memoria durante diez minutos. Un registro de PostgreSQL contiene kid, estado, not_before y not_after. La rotación crea una clave pending, espera la propagación a verificadores, la marca active y después mueve la anterior a retiring. Los verificadores aceptan active y retiring. Un trabajo elimina claves retiring cuando expira el último token posible. Si KMS no responde, la emisión falla cerrada; la verificación local continúa.\n\nEvalúa ventanas de rotación, relojes desincronizados, caché, rollback de base de datos, kid collisions, revocación urgente y eliminación de claves. Entrega hallazgos solamente.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.8,"slice":"pasted-context","lang":"es"}
|
|
{"prompt":"Raw notes for the partner security guide:\n\nRequests use HTTP Message Signatures. Covered components are method, authority, path, content-digest, x-request-id, and created. Partners receive two key ids during rotation. The server accepts signatures created within five minutes and stores request ids for ten minutes to reject replay. Bodies above 10 MB are streamed while computing SHA-256. Proxies may normalize header casing but must not rewrite path encoding. A missing content-digest is allowed only for empty bodies. Clock skew errors return a server timestamp. Verification failures use one generic 401 response, while diagnostics are available through an authenticated support endpoint.\n\nTurn these notes into an integration guide with canonicalization examples, rotation procedure, replay rules, streaming advice, clock troubleshooting, and safe debugging steps.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.5,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Create a phased roadmap for introducing safety-certified motion control into the existing ROS 2 stack, including subsystem boundaries, hazard analysis, validation evidence, fallback modes, ownership, and deployment gates.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"core","lang":"en"}
|
|
{"prompt":"Add a C++ mission executor that persists checkpoints, resumes after process restart, and rejects stale commands.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Render the web-based robot diagnostics panel with live joint states, warning timelines, and a responsive command drawer.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Flip enableMockGps to false.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Split camera calibration loading from validation while preserving accepted files and diagnostics.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"The safety controller enters emergency stop when the system clock steps backward. Determine which deadline calculation uses wall time.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Examine the current obstacle-fusion pipeline and explain how contradictory radar and lidar observations are resolved.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Write a field-maintenance guide for replacing and recalibrating a wheel encoder.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"en"}
|
|
{"prompt":"Plan a delegated-administration model, then implement scoped role grants and revocation in the authorization service.","purpose":"planning","secondary":"backendImpl","mixed":true,"difficulty":0.9,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Implement token introspection caching and document its consistency and revocation behavior for API teams.","purpose":"backendImpl","secondary":"writing","mixed":true,"difficulty":0.7,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Build the extension's certificate viewer and add the native-messaging method that retrieves certificate-chain details.","purpose":"frontendImpl","secondary":"backendImpl","mixed":true,"difficulty":0.8,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Correct the redirect URI in dev.json and add a note to the local-auth troubleshooting page.","purpose":"quickFix","secondary":"writing","mixed":true,"difficulty":0.2,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Reorganize policy evaluators by resource type with identical decisions, then update the architecture overview.","purpose":"refactor","secondary":"writing","mixed":true,"difficulty":0.7,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Determine why robots occasionally execute a canceled mission, fix the race, and document cancellation guarantees for integrators.","purpose":"debugging","secondary":"writing","mixed":true,"difficulty":0.9,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Audit the current administrator impersonation controls, then propose a remediation roadmap for the issues found.","purpose":"review","secondary":"planning","mixed":true,"difficulty":0.8,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Read the permission-matching engine and produce a maintainer guide explaining precedence and extension points.","purpose":"writing","secondary":"review","mixed":true,"difficulty":0.6,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Implement a privacy-preserving rate limiter using keyed hashes so raw account identifiers never enter Redis.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Create the React security-events explorer with facet filters, expandable evidence, and keyboard navigation.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Set sessionMaxAge to 12h.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Explain whether the current CSRF middleware covers requests sent through the extension's native bridge.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Architect a unified secrets platform for Kubernetes, serverless jobs, developer tools, and robots. Address source of truth, delivery, renewal, offline caching, break-glass access, policy, auditing, disaster recovery, and migration from environment variables.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"core","lang":"en"}
|
|
{"prompt":"Rédige un runbook pour révoquer rapidement une clé de signature compromise sans interrompre tous les clients.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.5,"slice":"core","lang":"fr"}
|
|
{"prompt":"Move duplicated nonce parsing into one utility without changing validation or error responses.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"After an extension update, previously denied domains briefly become allowed. Find the ruleset initialization race.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Propose an architecture for secure remote teleoperation over unreliable cellular links. Cover command authority, latency, dead-man behavior, encryption, video degradation, regional relays, auditing, emergency takeover, and rollout. Deliver a design only.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Document the robot heartbeat protocol and implement its timeout and lease-renewal handler.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Add a clear visual distinction between inherited and explicitly granted permissions.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.3,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Move the shield icon 3px right.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Rename authSubject to principal across all services while retaining protobuf and database field names.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Why do revoked browser sessions still receive websocket events? Locate the unknown invalidation gap.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Explain why permission bundles are version-pinned for running workflows. Nothing is known to be broken.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.5,"slice":"boundary","lang":"en"}
|
|
{"prompt":"既存の OAuth consent 処理を、アプリ開発者向けの概念ガイドとしてまとめてください。実装変更は不要です。","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.5,"slice":"boundary","lang":"ja"}
|
|
{"prompt":"Introduce a Python service that validates robot maps, computes compatibility metadata, and publishes immutable revisions.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Build the browser extension onboarding flow with permission explanations, pinning guidance, and an interactive test.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.5,"slice":"core","lang":"en"}
|
|
{"prompt":"Change TOKEN_SKEW_SECONDS to 90.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Assess whether the current certificate-path validator handles name constraints on intermediate CAs correctly.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Develop a migration roadmap from role-based access control to relationship-based authorization. Include modeling, consistency, policy rollout, debugging tools, auditability, data backfill, dual evaluation, performance, and rollback.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"core","lang":"en"}
|
|
{"prompt":"Prepare customer-facing release notes for organization-wide session controls and forced logout.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"en"}
|
|
{"prompt":"Consolidate the three certificate loaders while preserving trust-store precedence and diagnostics.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"The navigation stack oscillates between two paths near a narrow obstacle. Find which planner state prevents convergence.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Platform migration notes:\n\nThe company currently has five independent authorization libraries. Java and Go services evaluate static roles locally; the GraphQL gateway calls a Python policy service; mobile APIs use hard-coded ownership checks; batch jobs rely on warehouse grants. Audit events use different action names, and support cannot explain a denied request consistently. Product plans resource sharing, organization groups, temporary grants, and policy simulation. Availability target is 99.99%, and authorization may not silently fail open. Some data-processing jobs run disconnected for twelve hours.\n\nCreate a target architecture and staged migration plan. Cover policy model, decision API, local versus remote evaluation, version pinning, caching, audit schema, explainability, offline jobs, rollout metrics, dual evaluation, emergency controls, ownership, and rollback. No implementation in this phase.","purpose":"planning","secondary":null,"mixed":false,"difficulty":1.0,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Backend ticket ROB-552\n\nImplement traffic reservations for narrow warehouse aisles. Robots publish route segments with earliest entry, latest exit, width class, and priority. The coordinator must:\n- prevent incompatible overlapping reservations\n- allow compatible same-direction convoys\n- expire reservations when heartbeats stop\n- support atomic replacement during replanning\n- avoid starvation for low-priority robots\n- reject routes using outdated map revisions\n- remain safe during coordinator leader failover\n- emit wait time, conflict, preemption, expiry, and stale-map metrics\n- provide an explain response for denied routes\n\nUse PostgreSQL for durable state and the existing etcd leader lease. Add deterministic simulation tests for crossing traffic, failure during replacement, clock skew, and prolonged high-priority demand.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.9,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Design handoff for SecurityCenter.tsx:\n\nThe page already receives active sessions, enrolled factors, recovery methods, recent security events, and organization policy.\n\nRequired UI:\n- top summary highlights actions the user should take\n- sessions group by device with current session clearly identified\n- terminating another session needs confirmation and pending feedback\n- factors show last-used date and whether policy requires them\n- adding a factor opens an accessible step-by-step dialog\n- recovery methods must not reveal secret material\n- recent events use plain-language summaries with expandable technical details\n- narrow screens stack sections; desktop uses a two-column layout\n- live session changes should not move keyboard focus\n- high-risk warnings need icon and text, not color alone\n\nImplement the page with existing hooks and mutations. No identity API changes.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Failure captured during robot testing:\n\n14:08:22.110 mission=991 waypoint=18 pose=(42.12,18.44) map=v128\n14:08:22.114 map_update received revision=v129 transform_dx=0.31 transform_dy=-0.08\n14:08:22.119 planner canceled generation=771\n14:08:22.121 planner started generation=772 map=v129\n14:08:22.124 controller accepted path generation=771 points=34\n14:08:22.130 planner completed generation=772 points=38\n14:08:22.132 controller WARN path rejected generation=772 active=771\n\nThe robot follows the old path until a collision monitor stops it. Cancellation and completion callbacks run on different ROS executors. Determine how the stale generation becomes active, fix ordering safely, and add a deterministic regression test for map updates during planning.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.9,"slice":"pasted-context","lang":"en"}
|
|
{"prompt":"Flip requireMfaForAdmins to true.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Extract browser-policy serialization from storage without changing persisted JSON or upgrade behavior.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Review the current emergency-stop arbitration and explain which source wins when hardware and remote commands conflict.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Write a short contributor guide for adding new authorization actions and audit names.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.3,"slice":"core","lang":"en"}
|
|
{"prompt":"Implement a signed command queue for intermittently connected robots with expiry, replay protection, and acknowledgements.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Create the Vue policy simulator with resource selectors, decision traces, and side-by-side version comparison.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Replace localhost:3000 with localhost:3001.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Check whether the extension's content-script bridge validates message origins before dispatch.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Draft a strategy for replacing shared administrator accounts with individual privileged access. Address enrollment, just-in-time elevation, approvals, session recording, emergency access, vendor users, legacy devices, evidence retention, and migration milestones.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"core","lang":"en"}
|
|
{"prompt":"Write the incident-response procedure for suspected refresh-token theft.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"en"}
|
|
{"prompt":"Separate policy parsing from decision execution while preserving every existing result and error.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Robot missions remain leased after the coordinator restarts, but their heartbeats are rejected. Find the epoch mismatch.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Design account-recovery governance for high-value enterprise tenants. Produce roles, approvals, evidence, cooldowns, threat mitigations, and staged adoption; don't implement endpoints.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.8,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Add recovery-session examples to the API reference and implement the recovery-session state machine.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Give the permission request dialog clearer grouping and a sticky approval action.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.3,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Increase the lock icon to 18px.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Rename RobotUser to OperatorIdentity across services while retaining database discriminators and API compatibility.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Why does logout clear cookies but leave the desktop native session active? Diagnose the missing revocation path.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Explain why existing access tokens remain valid briefly after a password change. Assume the documented grace period is intentional.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.5,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Convert the current mTLS enrollment implementation into an operator-facing setup guide.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Implement a Go transparency log for signing-key events with inclusion proofs and verifiable checkpoints.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Build the Svelte robot-mission editor with waypoint dragging, validation overlays, and undo history.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Set passwordMinLength to 14.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Assess whether the current audit-event deduplication could hide repeated denied-access attempts.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Create a roadmap for cryptographic agility across stored data, network protocols, tokens, firmware signatures, and customer integrations. Include algorithm inventory, negotiation, downgrade prevention, test infrastructure, migration order, emergency replacement, and ownership.","purpose":"planning","secondary":null,"mixed":false,"difficulty":1.0,"slice":"core","lang":"en"}
|
|
{"prompt":"Write release notes for the new phishing-resistant administrator login flow.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.3,"slice":"core","lang":"en"}
|
|
{"prompt":"Unify duplicated actor-context propagation while preserving tracing and audit fields.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"The extension's service worker stops receiving alarms after the browser suspends it twice. Locate the lifecycle bug.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Plan a safe transition from manually authored robot maps to continuously updated maps. Cover approval, compatibility, localization impact, rollback, partial fleet rollout, validation evidence, stale missions, and operator controls.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Document the policy-bundle signature envelope and implement its verifier in the edge agent.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Make expired-session rows visually distinct and add a one-click cleanup action.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.3,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Correct priviledged to privileged in one enum.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Rename grantId to authorizationId throughout internal code while retaining external field names.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Why do some robots ignore a newly revoked operating-zone permission until reboot? Find the invalidation failure.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Explain why the current consent screen requests host access separately from browser-history access. No UI change requested.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.4,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Resume el flujo actual de alta de dispositivos como una guía para administradores, sin cambiar código.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"boundary","lang":"es"}
|
|
{"prompt":"Implement an encrypted local command journal for a robot controller with power-loss recovery and bounded flash wear.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Build the React session-management drawer with device details, revocation progress, and current-session protection.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Pin jose to 6.1.0.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Examine the robot's map-signature verification and determine whether rollback to an older signed map is possible.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Lay out a migration from one organization-wide encryption key to per-tenant envelope encryption. Include data inventory, key hierarchy, online re-encryption, backups, search indexes, analytics copies, disaster recovery, observability, rollback, and deletion guarantees.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"core","lang":"en"}
|
|
{"prompt":"Document how developers should test browser-extension permissions across Chrome, Firefox, and Edge.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"en"}
|
|
{"prompt":"Move token-hash comparison into a shared constant-time helper without changing supported formats.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Authentication requests spike CPU only when invalid JWTs contain many dotted segments. Find the pathological parsing path.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Design delegated robot-fleet management, then implement scoped fleet invitations and acceptance.","purpose":"planning","secondary":"backendImpl","mixed":true,"difficulty":0.9,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Add authorization decision exports and build the administrator UI for requesting them.","purpose":"backendImpl","secondary":"frontendImpl","mixed":true,"difficulty":0.8,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Create the security-key enrollment wizard and add the endpoint for naming registered credentials.","purpose":"frontendImpl","secondary":"backendImpl","mixed":true,"difficulty":0.8,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Investigate delayed robot revocation, fix cache propagation, and document the revised consistency window.","purpose":"debugging","secondary":"writing","mixed":true,"difficulty":0.8,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Change cookieSameSite to strict.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Extract shared permission-test fixtures without changing their scenario coverage.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.5,"slice":"core","lang":"en"}
|
|
{"prompt":"Review the current password-reset implementation for account-enumeration differences across response paths.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Write a concise ADR for storing authorization policies in versioned bundles.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"en"}
|
|
{"prompt":"Create a Rust service that issues SPIFFE-compatible workload certificates with renewal and revocation.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Implement the browser extension's per-site privacy dashboard with trackers, cookies, and permission history.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Remove the obsolete OAuth scope.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Explain how the existing credential broker prevents one workload from claiming another workload's identity.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Develop an architecture for cross-company access to shared project resources. Cover external identities, trust federation, invitations, lifecycle, policy boundaries, audit evidence, breach containment, data residency, and migration from guest accounts.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"core","lang":"en"}
|
|
{"prompt":"Prepare a troubleshooting guide for clock-skew errors in signed API requests.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.3,"slice":"core","lang":"en"}
|
|
{"prompt":"Separate mission authorization from mission scheduling without changing accepted commands.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Robot telemetry decrypts correctly but fails authentication after packet reordering. Find the nonce-window bug.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Create a phased strategy for replacing security questions with stronger recovery methods. Plan customer communication, legacy accounts, support exceptions, fraud controls, accessibility, metrics, and final removal; no code yet.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.8,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Add examples to the access-review API docs and implement the review-completion transaction.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Give policy-denial messages a clearer hierarchy and expandable technical details.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.3,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Change the key icon from 16px to 17px.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Rename membershipRole to accessRole across packages while retaining GraphQL and database compatibility.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Why do hardware-backed credentials fail only after an Android security patch? Diagnose the attestation-chain issue.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Explain why support impersonation sessions cannot create new API keys. Assume the restriction is intended.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.4,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Transform the current audit-search behavior into a user guide for compliance administrators.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Add a distributed lock service for robot maintenance bays with fencing tokens and lease recovery.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Build the SolidJS access-review table with bulk decisions, inherited context, and sticky identity columns.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Set enrollmentCodeTTL to 15m.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Assess whether the current recovery-code generator introduces modulo bias or ambiguous characters.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Architect a secure software-supply-chain program for robot firmware, browser extensions, backend services, and infrastructure modules. Cover provenance, signing, dependency policy, build isolation, promotion, verification, revocation, incident response, and phased enforcement.","purpose":"planning","secondary":null,"mixed":false,"difficulty":1.0,"slice":"core","lang":"en"}
|
|
{"prompt":"Write customer-facing release notes for improved session visibility and remote sign-out.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.3,"slice":"core","lang":"en"}
|
|
{"prompt":"Consolidate duplicate scope-matching functions without changing wildcard or case behavior.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"The robot control UI shows stale permission state after reconnect even though commands are rejected correctly. Find the subscription issue.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"continue the identity roadmap","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.7,"slice":"vague-eval","lang":"en"}
|
|
{"prompt":"finish the auth endpoint","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.6,"slice":"vague-eval","lang":"en"}
|
|
{"prompt":"make the extension friendlier","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.4,"slice":"vague-eval","lang":"en"}
|
|
{"prompt":"tiny permission config tweak","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.2,"slice":"vague-eval","lang":"en"}
|
|
{"prompt":"clean up the claims code","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"vague-eval","lang":"en"}
|
|
{"prompt":"chase the robot auth issue","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"vague-eval","lang":"en"}
|
|
{"prompt":"look over the key flow","purpose":"review","secondary":null,"mixed":false,"difficulty":0.5,"slice":"vague-eval","lang":"en"}
|
|
{"prompt":"write up access behavior","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"vague-eval","lang":"en"}
|
|
{"prompt":"Implement an append-only authorization audit service with tenant partitions, integrity checkpoints, and retention enforcement.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Create the React robot-access matrix with zone filters, temporary grants, and expiration previews.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Bump Chrome minimum version to 130.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Review the existing DPoP proof verifier for replay behavior across clustered API instances.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Plan a transition from password-based robot technician access to passkeys and device certificates. Include shared workstations, offline sites, lost devices, recovery, authorization, fleet rollout, support, and legacy-controller compatibility.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"core","lang":"en"}
|
|
{"prompt":"Write an administrator guide for configuring conditional access by network zone and device posture.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"en"}
|
|
{"prompt":"Decouple audit serialization from transport while preserving exact event payloads.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"MFA prompts loop forever when two browser tabs complete enrollment simultaneously. Determine the state conflict.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Design the decommissioning process for an identity region. Deliver dependency inventory, session migration, key handling, routing, audit retention, rollback windows, and verification criteria rather than implementation.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.8,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Document robot command delegation and implement its signed delegation-token validator.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Add a compact visual timeline for recent sign-ins and security changes.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.3,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Replace allowInsecure: yes with false.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Rename policyRevision to policyVersion repository-wide while keeping serialized names stable.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Why do certificate renewals fail only for robots that were offline during CA rotation? Find the chain-building failure.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Explain why the browser extension stores granted origins separately from requested origins. No bug is reported.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.5,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Convert the existing privileged-session logic into a concise auditor-facing control description.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.5,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Build a Kotlin service that manages time-limited access grants with approvals, expiry, and immutable audit events.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Implement the browser extension's request-trace viewer with grouped redirects and redacted headers.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Remove the duplicate OAuth callback URL.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Inspect the current policy-cache key and determine whether organization context can collide across regions.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Create a multi-year roadmap for customer-managed encryption keys across databases, object storage, search, queues, and backups. Include control-plane boundaries, key outages, rotation, revocation, migration, support responsibilities, and availability tradeoffs.","purpose":"planning","secondary":null,"mixed":false,"difficulty":1.0,"slice":"core","lang":"en"}
|
|
{"prompt":"Prepare the README for the robot identity simulator, including enrollment and revocation scenarios.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"en"}
|
|
{"prompt":"Split browser storage migration from rules initialization without changing startup behavior.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"A signed robot command validates on x86 but fails on ARM because the canonical payload differs. Find the serialization discrepancy.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Design emergency access governance, then implement time-boxed break-glass sessions with approval evidence.","purpose":"planning","secondary":"backendImpl","mixed":true,"difficulty":0.9,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Add robot-zone grant persistence and build the admin map used to manage grants.","purpose":"backendImpl","secondary":"frontendImpl","mixed":true,"difficulty":0.8,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Create the passkey management screen and implement credential-renaming support in the API.","purpose":"frontendImpl","secondary":"backendImpl","mixed":true,"difficulty":0.7,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Diagnose missing audit actors, fix context propagation, and document the corrected background-job contract.","purpose":"debugging","secondary":"writing","mixed":true,"difficulty":0.8,"slice":"mixed","lang":"en"}
|
|
{"prompt":"Change authTimeoutMs to 5000.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Extract the shared certificate-test builder without altering fixtures or assertions.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.5,"slice":"core","lang":"en"}
|
|
{"prompt":"Assess whether the current robot enrollment QR code leaks reusable bootstrap material.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Write a migration guide for services moving from API keys to workload identity.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"en"}
|
|
{"prompt":"Implement a replay-resistant signed webhook receiver in Python with streaming body verification.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Build the responsive organization-role editor with permission previews and unsaved-change warnings.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Set maxLoginAttempts to 8.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Explain how the existing authorization service preserves consistency during policy-bundle replacement.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Architect secure fleet-to-cloud communication for ten million intermittently connected devices. Cover identity, key rotation, routing, replay protection, protocol versions, revocation distribution, regional failure, manufacturing, observability, and incremental migration.","purpose":"planning","secondary":null,"mixed":false,"difficulty":1.0,"slice":"core","lang":"en"}
|
|
{"prompt":"Draft release notes for improved recovery-code security and session revocation.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.3,"slice":"core","lang":"en"}
|
|
{"prompt":"Unify duplicated organization-id validation while preserving authorization errors.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"The browser occasionally sends requests before the extension restores its deny rules. Locate the startup ordering bug.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Map a strategy for retiring legacy RSA signing keys. Include client inventory, dual signing, verification telemetry, offline robots, emergency rollback, partner communication, and final key destruction.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.8,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Add delegation examples to the SDK docs and implement delegation-chain validation.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Make the security summary card easier to scan with grouped status indicators.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.3,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Change the banner padding to 12px.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Rename credentialFamily to sessionFamily throughout internal code while preserving storage columns.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Why does a robot accept one final command after its certificate is revoked? Identify the unknown caching path.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.7,"slice":"boundary","lang":"en"}
|
|
{"prompt":"Explain why recovery sessions cannot modify MFA factors until reauthentication. Assume this is intentional.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.4,"slice":"boundary","lang":"en"}
|
|
{"prompt":"既存の workload identity 実装を、新しいサービスチーム向けの導入ガイドにまとめてください。","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.5,"slice":"boundary","lang":"ja"}
|
|
{"prompt":"Create a Go policy-bundle distributor with signed revisions, resumable downloads, and stale-client metrics.","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Build the robot incident-review UI with synchronized map playback, logs, and command history.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Pin cryptography to 45.0.5.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Review the current device-attestation verifier for certificate-chain and nonce-binding gaps.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Design a privacy-preserving identity-linking system for users with accounts across multiple acquired products. Cover proof, consent, unlinking, conflicting attributes, bans, deletion, auditability, migration, and support operations.","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.9,"slice":"core","lang":"en"}
|
|
{"prompt":"Write an FAQ for administrators about session duration, idle timeout, and forced reauthentication.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.3,"slice":"core","lang":"en"}
|
|
{"prompt":"Decouple extension rule evaluation from Chrome APIs without changing matching results.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Clock synchronization makes active robot leases expire in bulk. Find which expiry comparisons use wall time.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"pick up the trust plan","purpose":"planning","secondary":null,"mixed":false,"difficulty":0.7,"slice":"vague-eval","lang":"en"}
|
|
{"prompt":"finish the identity service","purpose":"backendImpl","secondary":null,"mixed":false,"difficulty":0.6,"slice":"vague-eval","lang":"en"}
|
|
{"prompt":"Create the mobile-friendly robot enrollment wizard with camera, manual-code, and recovery paths.","purpose":"frontendImpl","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Fix the misspelled AUDIT_RETENTON key.","purpose":"quickFix","secondary":null,"mixed":false,"difficulty":0.1,"slice":"core","lang":"en"}
|
|
{"prompt":"Separate enrollment token parsing from verification without changing accepted tokens.","purpose":"refactor","secondary":null,"mixed":false,"difficulty":0.6,"slice":"core","lang":"en"}
|
|
{"prompt":"Users are logged into the wrong tenant after accepting invitations in two tabs. Find the session-context race.","purpose":"debugging","secondary":null,"mixed":false,"difficulty":0.8,"slice":"core","lang":"en"}
|
|
{"prompt":"Inspect the current policy explanation output and identify where sensitive resource attributes could leak.","purpose":"review","secondary":null,"mixed":false,"difficulty":0.7,"slice":"core","lang":"en"}
|
|
{"prompt":"Rédige une procédure de récupération pour les administrateurs qui perdent leur unique security key.","purpose":"writing","secondary":null,"mixed":false,"difficulty":0.4,"slice":"core","lang":"fr"}
|