Skip to content

Conversation

Evad0
Copy link
Contributor

@Evad0 Evad0 commented Jun 9, 2025

CRE rule SpiceDB schema validation failure detection (CRE-2025-0085)
Detects schema validation errors that block SpiceDB authorization deployments. Invalid syntax, circular dependencies, and undefined relations prevent schema updates.

  • Add SpiceDB-specific tags: spicedb, schema-error, fine-grained-access-control, schema-corruption
  • Use existing category: authorization-system-problem
  • Validated against real schema validation errors

Reproducible test setup (Maintainers invited) : spicedb-validation-failures

Live CRE Link : CRE PLAYGROUND LINK

/closes #68

@Lyndon-prequel
Copy link
Contributor

Lyndon-prequel commented Jun 9, 2025

@Evad0 This PR did not include a claim tag and therefore was not considered for a specific bounty. However, will be reviewed for a merge.

@Evad0
Copy link
Contributor Author

Evad0 commented Jun 9, 2025

@Lyndon-prequel Yea sure I am aware, I just did that just for it to be merged.

Btw can you reply to your message on slack ?

@tonymeehan tonymeehan merged commit 4bb5586 into prequel-dev:main Jun 13, 2025
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

[New Rule] SpiceDB: Reproduce A High-Severity Failure & Write a Detection Rule
3 participants