feat(models): enforce provider policy on reads - #14325
Conversation
|
Important Review skippedAuto reviews are disabled on base/target branches other than the default branch. 🗂️ Base branches to auto review (1)
Please check the settings in the CodeRabbit UI or the ⚙️ Run configurationConfiguration used: Path: .coderabbit.yaml Review profile: CHILL Plan: Pro Plus Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
8cc468f to
f7f2493
Compare
b458aee to
2dbc928
Compare
2dbc928 to
e16f76d
Compare
f7f2493 to
82e8066
Compare
…4-provider-policy-reads
de4393b
into
feat/le-1953-approved-provider-policy
✅ Test Coverage AdvisorNo source changes detected without accompanying tests. Thanks for keeping coverage up! 🎉
|
* feat(models): establish provider governance foundation * fix(models): harden provider governance foundation * test(models): use canonical provider ids in policy mocks * feat(models): add approved provider policy store * feat(models): enforce provider policy on reads (#14325) * feat(models): fail closed on denied provider runtime (#14326) * feat(models): enforce provider policy on reads * feat(models): fail closed on denied provider runtime * feat(models): govern provider configuration paths (#14327) * feat(models): enforce provider policy on reads * feat(models): fail closed on denied provider runtime * feat(models): govern provider configuration paths * fix(models): resolve provider IDs in policy test * fix(models): address provider policy review * fix(models): reconcile provider policy with release head
Summary
is_allowedmetadata in responsesStack
Jira
Test plan