Dashboardopencode-loreEmbedding execution, transaction, and p…

Embedding execution, transaction, and privacy invariants

Category: gotcha
Confidence: 1.00
ID: 01a0aeaf-4fe7-7fc6-ab0f-0fbc70817f7c
Project ID: 6f4be9ff-ed84-4cca-a9e7-732a0b0b8677
Cross-project: No
Recalled in other projects: 0
Source session: 0IiwozJmFR9A6QyFo
Created: 2026-08-31 02:39:31
Updated: 2026-09-17 09:25:19

Content

Check abort immediately before every embedding-provider invocation, including recall bypass and admission handoff; release the exact acquired token on post-grant abort. Track vector-state changes with helper-owned nested transaction frames and shared connection-in-transaction detection: nested commits merge upward, only the outer commit publishes, and rollback discards its frame. At every remote, worker, or custom-provider boundary, replace raw failures with a fixed cause-free EmbeddingProviderError. Reconstruct only allowlisted control errors, guard hostile Proxy and instanceof inspection, keep properties non-enumerable, and never expose provider bodies, statusText, diagnostics, or causes.

Move to: