Vladimir Bugorskiy

SYSTEM LOG /

Reliable notification delivery with audit trail and retries

Multimodal Input Pipeline now includes a background service for delivering HTTP notifications. Events are sent, temporary errors are retried, unsafe redirects are blocked, and deliveries have a safe audit trail. Project owners/administrators can inspect their own channel history; platform administrators can view an operational summary and retry only failed deliveries.

The commit adds a complete HTTP notification delivery loop to Multimodal Input Pipeline. A separate background service claims a delivery from the queue, restores protected headers and renders only documented ID-only event/project fields before calling the existing bounded HTTP client that does not follow redirects. Before each attempt, DNS answers are rechecked through the SSRF guard. 2xx responses are recorded as SENT. Network failures and 408, 429, or 5xx statuses receive bounded exponential backoff; redirects and other 4xx statuses become terminal errors. Safe delivery history APIs were added: project owners/administrators see only their own channels, while the platform administrator sees an operational cross-project summary without opening project package or source content. Manual retry is available only for failed deliveries and creates a new auditable attempt. Migration V38 stores the SENT outcome and manual-retry marker, which becomes a separate audit attempt row on the next claim. History includes only the channel target origin, status, time, HTTP status/duration, and bounded generic diagnostics, without headers, rendered body, response, secrets, requesting-user details, or internal configuration identities.
← All system notes