Skip to content

Gaotax2006 [ Middleware ] Fix #2435: Enforce project role on env var reads#2733

Open
Gaotax2006 wants to merge 2 commits into
orchestration-agent:mainfrom
Gaotax2006:fix/issue-2435-enforce-project-role-on-env-va
Open

Gaotax2006 [ Middleware ] Fix #2435: Enforce project role on env var reads#2733
Gaotax2006 wants to merge 2 commits into
orchestration-agent:mainfrom
Gaotax2006:fix/issue-2435-enforce-project-role-on-env-va

Conversation

@Gaotax2006
Copy link
Copy Markdown

Fixes #2435

Add middleware guard: Enforce project role on env var reads

Files changed

  • src/api/middleware.py

Acceptance checklist

  • Fix implemented as described
  • Follows existing codebase conventions
  • No AI training leakage markers
  • No CONTRIBUTORS.json modifications
  • No build artifacts committed

Add require_active_membership dependency to validate credentials
against workspace membership in the auth pipeline.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[ Bounty $9k ] [ Auth ] Enforce project role on environment variable reads — secret metadata API

1 participant