Repository navigation
feat: audit MCP server config changes #27943
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Changes from 1 commit
329ca37
f7d4945
9682815
a72d5cf
0a32b24
08a7219
09fb6fb
86d42a7
197a759
a04fd6f
6316be4
a848d84
db41667
a0a84be
7dfb53e
9eed1a3
a3af59d
bb776b8
e39972f
d3d9854
f48ed8f
146d8c8
a03f5ff
b0ffee0
File filter
Filter by extension
Conversations
Jump to
Diff view
Diff view
Create, update, and delete of MCP server configs now produce enterprise audit log entries with field diffs. Secret material (oauth2_client_secret, api_key_value, custom_headers) renders as a redacted change marker and never appears in the diff; dbcrypt key-id bookkeeping columns are excluded entirely. Write-denied mutations on a readable config record an audited 403. Read-denied callers stay concealed with 404 by the param middleware and record nothing.
- Loading branch information
There are no files selected for viewing
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -0,0 +1 @@ | ||
| -- No-op, enum values can't be dropped. |
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -0,0 +1,2 @@ | ||
| ALTER TYPE resource_type | ||
| ADD VALUE IF NOT EXISTS 'mcp_server_config'; |
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.
Uh oh!
There was an error while loading. Please reload this page.