assemblyai-ci-integration
AssemblyAI Contract-safe CI
Overview
Build AssemblyAI CI with offline REST, Streaming v3, webhook, gateway, secret, and lifecycle tests plus a tightly gated live lane. Treat live audio, transcript content, credentials, spend, and destructive state as separately governed boundaries.
Prerequisites
- The target repository or integration path and the requested operator outcome.
- The AssemblyAI project, environment, region, data classification, and accountable owner.
- Current first-party documentation plus credentials only for a narrowly approved live check.
Current Contract
CI covers required model selection, job states, v3 turns and termination, both webhook schemas, gateway output contracts, retry bounds, and redaction. Live checks require protected secrets, synthetic audio, explicit regional routing, and hard request and spend budgets.
Authentication
For live work, inject ASSEMBLYAI_API_KEY from an approved secret manager and send the raw value only in the AssemblyAI Authorization header to the configured first-party host. Never print, commit, place in a URL, or expose it to an untrusted client. Callback secrets and temporary streaming tokens are separate credentials.