GenerAI / worldmonitor /docs /archive /todos /068-pending-p2-inconsistent-hash-algorithm-framework-cache-key.md
metadata
status: pending
priority: p2
issue_id: '068'
tags:
- code-review
- caching
- architecture
- analytical-frameworks
dependencies: []
Inconsistent hash algorithms for framework cache key: FNV-1a vs SHA-256
Problem Statement
Two different hash algorithms are used for the same semantic cache key segment (framework/systemAppend):
src/utils/summary-cache-key.ts:34— useshashString(systemAppend).slice(0, 8)— FNV-1a (base-36)server/worldmonitor/intelligence/v1/get-country-intel-brief.ts:42-45— usessha256Hex(frameworkRaw).slice(0, 8)— SHA-256 (hex)server/worldmonitor/intelligence/v1/deduct-situation.ts— usessha256Hex(framework).slice(0, 8)— SHA-256
The summary-cache-key.ts module was designed to be shared between client and server (see file header comment). Using FNV-1a there while intel handlers use SHA-256 is an inconsistency that confuses contributors and makes the key scheme harder to reason about.
Proposed Solution
Standardize on SHA-256 (the more collision-resistant algorithm for user-controlled text):
- Update
summary-cache-key.tsto usesha256Hexfromserver/_shared/hash.ts(or a shared utility) - Or standardize on FNV-1a for performance (already available client-side via
hashString)
Note: client-side summary-cache-key.ts may not have access to sha256Hex — pick the option that works in both runtimes.
Technical Details
- Files:
src/utils/summary-cache-key.ts:34,server/worldmonitor/intelligence/v1/get-country-intel-brief.ts:42-45 - Effort: Small | Risk: Low
Acceptance Criteria
- All framework/systemAppend cache key hash segments use the same algorithm
- Algorithm choice works in both browser (summary-cache-key.ts) and server (intel handlers)
Work Log
- 2026-03-28: Identified by architecture-strategist during PR #2386 review