Skip to content

fix: enforce tool and agent config authorization - #819

Merged
yaojin3616 merged 1 commit into
mainfrom
agent/debugger/6e6a1207
Aug 5, 2026
Merged

fix: enforce tool and agent config authorization#819
yaojin3616 merged 1 commit into
mainfrom
agent/debugger/6e6a1207

Conversation

@yaojin3616

@yaojin3616 yaojin3616 commented Aug 5, 2026

Copy link
Copy Markdown
Collaborator

Summary: enforce tenant/object authorization for tool management and Agent tool configuration, including MCP and sandbox-adjacent configuration paths; sensitive company configuration fields remain masked in API responses.

Verification: PYTHONPATH=. uv run pytest tests/test_tool_tenant_scope.py; uv run ruff check app/api/tools.py tests/test_tool_tenant_scope.py.

@yaojin3616
yaojin3616 merged commit 687e4e1 into main Aug 5, 2026
1 check was pending
@yaojin3616
yaojin3616 deleted the agent/debugger/6e6a1207 branch August 5, 2026 07:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant