Skip to content

Remove custom memos from tempo - #76

Merged
ksn-stripe merged 6 commits into
mainfrom
ksn/remove-custom-memos
Sep 18, 2026
Merged

ksn-stripe merged 6 commits into
mainfrom
ksn/remove-custom-memos

Conversation

@ksn-stripe

@ksn-stripe ksn-stripe commented Sep 17, 2026 •

Copy link
Copy Markdown
Contributor

Breaking change. Remove custom memo capability for tempo servers to match the security fix from stripe/mpp-java#31.

Custom merchant memos bypassed challenge binding, allowing a caller to redeem another payer's unclaimed transaction. Remove custom-memo configuration and request plumbing, and require challenge-bound attribution memos in direct Tempo verification.

ksn-stripe and others added 3 commits September 17, 2026 13:21
Committed-By-Agent: codex
Co-authored-by: codex <noreply@openai.com>
Committed-By-Agent: codex
Co-authored-by: codex <noreply@openai.com>
Committed-By-Agent: codex
Co-authored-by: codex <noreply@openai.com>
@ksn-stripe ksn-stripe changed the title fix(tempo)!: remove custom charge memos Remove custom memos from tempo Sep 18, 2026
@ksn-stripe
ksn-stripe marked this pull request as ready for review September 18, 2026 15:42
ksn-stripe and others added 3 commits September 18, 2026 11:44
Committed-By-Agent: codex
Co-authored-by: codex <noreply@openai.com>
Committed-By-Agent: codex
Co-authored-by: codex <noreply@openai.com>
Committed-By-Agent: codex
Co-authored-by: codex <noreply@openai.com>
@brendanjryan

Copy link
Copy Markdown
Contributor

LGTM

@ksn-stripe
ksn-stripe merged commit 5182909 into main Sep 18, 2026
10 checks passed
@ksn-stripe
ksn-stripe deleted the ksn/remove-custom-memos branch September 18, 2026 17:35
brendanjryan added a commit to tempoxyz/mpp-go that referenced this pull request Sep 24, 2026
Remove custom primary Tempo charge memos, matching [mppx
#904](wevm/mppx#904) and [mpp-rb
#76](stripe/mpp-rb#76). Clients always generate
attribution memos bound to the challenge and realm, and both calldata
and receipt verification require that binding.

Breaking API change: remove primary `Memo` fields from charge
parameters, method configuration, and method details. Legacy primary
memo fields are ignored when parsing requests; split-specific memos
remain supported. Includes a release note and updated client, request,
and verification tests.

Validation: `go test ./...`, `go vet ./...`, and formatting passed with
Go 1.26.0. Live-chain integration tests were not run.

Prompted by: @brendanjryan

Co-authored-by: Brendan Ryan <1572504+brendanjryan@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants