12a5926f6a
Audit of every notify() path found self-exclusion + 15-min age checks duplicated across nearly all of them, with two inconsistencies (DM kind 4 and zap kind 9735 were missing explicit self-checks). Reactions, zaps, and chess also re-ran isTaggedUser even though consumeFromCache already routes by the same `p` tag. Collapse the duplication into two layers: - Observer layer (NotificationDispatcher): 15-min rolling age cutoff is now enforced by a predicate on LocalCache.observeNewEvents, before any account routing happens. The Nostr Filter grammar's `since` is a fixed value from dispatcher start; the predicate re-evaluates TimeUtils. fifteenMinutesAgo() per event so the window rolls forward as wall-clock time advances. - Per-account layer (dispatchForAccount): right after the call/wake-up branch and the MainActivity.isResumed gate, drop events authored by the current account. Kept per-account (not observer-wide) because in a multi-account session account A's outgoing event legitimately becomes account B's incoming notification on the same device, so a device-wide author-exclusion set would swallow A→B. Mechanically, NewEventMatchingFilter now takes an optional predicate so observers can reject on fields the Filter grammar can't express (like a moving `createdAt` cutoff). LocalCache.observeNewEvents adds a matching overload that forwards it. With the gates centralized, every notify() method drops its own age and self-author checks (and for reaction/zap, the redundant isTaggedUser). notifyWelcome keeps its own guards because it's dispatched directly from processMarmotWelcomeFlow, bypassing the observer and dispatchForAccount. Calls and wake-ups also bypass the shared gates by their short-circuit return before the shared block. https://claude.ai/code/session_01GQDJxiHPogdzCNhUBN7Pjc