feat(cua-driver): add local consent UI and complete Wayland certification - #2597
Merged
Conversation
added 15 commits
July 27, 2026 02:17
f-trycua
marked this pull request as ready for review
July 27, 2026 11:04
This was referenced Jul 27, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
What changed
same_desktop_best_effort, and document that ordinary same-desktop UI is not a secure-desktop or biometric boundaryWhy
Standard mode previously failed closed without a host confirmation provider, while the authorization status and browser tool discovery did not consistently describe the exact runtime enforcement. The release also still carried three reproducible GNOME Wayland certification failures.
The native confirmation surface gives standalone interactive CLI/MCP users a visible, request-bound approval and revocation flow. Its assurance is intentionally labeled as best-effort because another process that can operate the same desktop may activate ordinary desktop UI.
Final validation
Validated from source commit
806da8573cb8d46cb52b38dccc21bbc449f1ecf1.list_windowscall after local approvalcargo test -p overlay-ui: 15/15 passedRecordings
macOS semantic cursor states
macos-semantic-cursor-clean.mp4
Linux GNOME Wayland Electron child window
linux-wayland-electron-child-window.mp4
Closes #2594