Add X API research ingestion and familiar publishing
Implement a local-first X API integration for Cave. Research Desk must be able to retrieve current X post data, save normalized source snapshots, and attach them to familiar-scoped research work. The appropriate familiar workspace room must support drafting and explicitly approved publishing to X without leaking credentials or silently retrying external writes. Scope includes secure account connection, cost-aware bounded reads, durable provenance, room-specific UX, and end-to-end tests.
Bead metadata
-
Bead ID: cave-8i8q5
-
Status: open
-
Priority: P1
-
Surface: Missing
-
Authoritative owner: GitHub Copilot CLI
-
Labels: comms, integrations, research, security, x-api
-
Parent: None
-
Dependencies: None
Acceptance criteria
An X account/app can be connected without exposing credentials to the browser or familiar subprocesses; Research Desk can look up X post URLs and run bounded recent searches, save normalized durable snapshots, and attach saved posts to a research mission; Comms Operations can draft an X post and publish only after explicit human confirmation, then record the returned post ID and canonical URL; data and actions are correctly familiar-scoped; auth expiry, rate limits, billing exhaustion, malformed responses, deleted posts, and ambiguous write failures are handled fail-closed; focused tests, API contracts, lint, typecheck, design gates, and native-room verification pass.
Source of truth
Beads is authoritative. This draft card is a GitHub Teamwork visibility mirror and should be reconciled from the Bead rather than edited as an independent task.
Add X API research ingestion and familiar publishing
Implement a local-first X API integration for Cave. Research Desk must be able to retrieve current X post data, save normalized source snapshots, and attach them to familiar-scoped research work. The appropriate familiar workspace room must support drafting and explicitly approved publishing to X without leaking credentials or silently retrying external writes. Scope includes secure account connection, cost-aware bounded reads, durable provenance, room-specific UX, and end-to-end tests.
Bead metadata
Bead ID:
cave-8i8q5Status: open
Priority: P1
Surface: Missing
Authoritative owner: GitHub Copilot CLI
Labels:
comms,integrations,research,security,x-apiParent: None
Dependencies: None
Acceptance criteria
An X account/app can be connected without exposing credentials to the browser or familiar subprocesses; Research Desk can look up X post URLs and run bounded recent searches, save normalized durable snapshots, and attach saved posts to a research mission; Comms Operations can draft an X post and publish only after explicit human confirmation, then record the returned post ID and canonical URL; data and actions are correctly familiar-scoped; auth expiry, rate limits, billing exhaustion, malformed responses, deleted posts, and ambiguous write failures are handled fail-closed; focused tests, API contracts, lint, typecheck, design gates, and native-room verification pass.
Source of truth
Beads is authoritative. This draft card is a GitHub Teamwork visibility mirror and should be reconciled from the Bead rather than edited as an independent task.