From e15a93ab34f1dd92c2133b8a12bcddb54ed24be2 Mon Sep 17 00:00:00 2001 From: Peter Lindsey Date: Tue, 30 Jun 2026 23:04:39 +0800 Subject: [PATCH] fix(provider-transport-fetch): raise SSE sanitize buffer cap to 16 MiB MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit The 64 KiB inter-event SSE sanitize buffer added in #96989 rejects a single legitimate event larger than 64 KiB — e.g. a large gpt-5.5 reasoning summary on the openai-chatgpt-responses API — throwing "SSE response exceeded max buffer size (65536 bytes) without event boundary" and failing the whole request. The default ChatGPT-subscription gpt-5.5 path is unusable (present in v2026.6.11-beta.1). Decouple the two bounds: keep the non-OK error-body cap tight at 64 KiB (SSE_NONOK_BODY_MAX_BYTES), and raise the inter-event sanitize buffer to the same 16 MiB ceiling as the JSON-synthesis path. The guard still trips on a genuinely boundary-less (hostile/broken) stream, just not on a real large event. Co-Authored-By: Claude Opus 4.8 (cherry picked from commit 81d60ca30dfdf48e4ec069ac283dc95c5659e5bd) --- src/agents/provider-transport-fetch.test.ts | 2 +- src/agents/provider-transport-fetch.ts | 8 +++++--- 2 files changed, 6 insertions(+), 4 deletions(-) diff --git a/src/agents/provider-transport-fetch.test.ts b/src/agents/provider-transport-fetch.test.ts index 78294feb1f30..8e6e98c18734 100644 --- a/src/agents/provider-transport-fetch.test.ts +++ b/src/agents/provider-transport-fetch.test.ts @@ -1370,7 +1370,7 @@ describe("buildGuardedModelFetch", () => { }); it("errors on oversized SSE body without event boundary in sanitizer", async () => { - const oversized = "x".repeat(65 * 1024); + const oversized = "x".repeat(16 * 1024 * 1024 + 1024); const encoder = new TextEncoder(); fetchWithSsrFGuardMock.mockResolvedValue({ response: new Response( diff --git a/src/agents/provider-transport-fetch.ts b/src/agents/provider-transport-fetch.ts index f8a22bb0752a..75cfcde76428 100644 --- a/src/agents/provider-transport-fetch.ts +++ b/src/agents/provider-transport-fetch.ts @@ -52,9 +52,11 @@ const log = createSubsystemLogger("provider-transport-fetch"); const SSE_SYNTHESIZE_JSON_MAX_BYTES = 16 * 1024 * 1024; /** Max bytes for the internal SSE sanitization buffer between event boundaries. - * A response that cannot find a \n\n boundary within this many characters is - * almost certainly hostile or broken — cap the buffer rather than let it grow. */ -const SSE_SANITIZE_BUFFER_MAX_BYTES = 64 * 1024; + * A single legitimate event (e.g. a large reasoning summary on the chatgpt-responses + * API) can far exceed 64 KiB, so bound this at the same 16 MiB ceiling as the + * JSON-synthesis path: only a genuinely boundary-less (hostile/broken) stream trips + * the guard, not a real large event. */ +const SSE_SANITIZE_BUFFER_MAX_BYTES = 16 * 1024 * 1024; const BLOCKED_EXACT_ORIGIN_TRUST_HOSTNAME_LABELS = new Set(["instance-data"]); const PLAIN_DECIMAL_NUMBER_RE = /^\d+(?:\.\d+)?$/;