惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

M
MIT News - Artificial intelligence
罗磊的独立博客
Hugging Face - Blog
Hugging Face - Blog
Apple Machine Learning Research
Apple Machine Learning Research
Last Week in AI
Last Week in AI
S
SegmentFault 最新的问题
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
美团技术团队
人人都是产品经理
人人都是产品经理
WordPress大学
WordPress大学
The Cloudflare Blog
IT之家
IT之家
雷峰网
雷峰网
小众软件
小众软件
博客园 - 叶小钗
博客园 - 聂微东
爱范儿
爱范儿
博客园 - 司徒正美
博客园 - 三生石上(FineUI控件)
V
Visual Studio Blog
博客园 - 【当耐特】
V
V2EX
博客园_首页
T
Tailwind CSS Blog

Recent Commits to openclaw:main

test: merge chat side-result checks · openclaw/openclaw@ddd2c2a test: merge cron history checks · openclaw/openclaw@f7eb746 test: merge responsive navigation shell checks · openclaw/openclaw@c2e4b47 docs(changelog): add codex oauth fixes · openclaw/openclaw@628e6cd test: merge navigation routing cases · openclaw/openclaw@5d8cecb Tests: mock channel registry bundled fallback · openclaw/openclaw@2b08233 Secrets: avoid broad web search discovery for single plugin config · openclaw/openclaw@a464f59 test: merge config view browser checks · openclaw/openclaw@20cf511 fix(status): align oauth health with runtime · openclaw/openclaw@eed7116 feat: add macOS screen snapshots for monitor preview (#67954) thanks … · openclaw/openclaw@f377db1 fix: report shared auth scopes in hello-ok (#67810) thanks @BunsDev · openclaw/openclaw@0b6c39b Auto-reply: avoid eager bundled route fallback · openclaw/openclaw@3ea1bf4 Tests: narrow session binding contract setup · openclaw/openclaw@54e4e16 fix(macOS): enable undo/redo in webchat composer text input (#34962) · openclaw/openclaw@00951dc Tests: speed up channel setup promotion · openclaw/openclaw@82b529a Docs: refresh agent instructions · openclaw/openclaw@5775fe2 fix(auth): serialize OAuth refresh across agents to fix #26322 (#67876) · openclaw/openclaw@8e79080 test: allow ollama public surface boundary test · openclaw/openclaw@7d4f1a6 Docs: add test performance guardrails · openclaw/openclaw@89706d3 Tests: restore context-engine usage proof · openclaw/openclaw@e4c4f95 Tests: slim context engine runtime coverage · openclaw/openclaw@74c198f ci: retry failed custom checkouts · openclaw/openclaw@0ee5baf test: trim duplicate provider auth onboarding cases · openclaw/openclaw@1ffc02e matrix: fix sessions_spawn --thread subagent session spawning (#67643) · openclaw/openclaw@1ce2596 test: reduce auth choice fixture churn · openclaw/openclaw@857b9cd test: mock health status config boundaries · openclaw/openclaw@9d5ab4a test: mock onboard config io boundary · openclaw/openclaw@299694d test: mock legacy state plugin boundaries · openclaw/openclaw@2713089 test: mock channel install boundaries · openclaw/openclaw@b945248 test: mock doctor preview channel boundaries · openclaw/openclaw@b1a3ad4
Enforce gateway command scopes by caller context [AI] (#8...
pgondhi987 · 2026-05-12 · via Recent Commits to openclaw:main

@@ -3,6 +3,7 @@ import { isCommandFlagEnabled } from "../../config/commands.js";

33

import type { OpenClawConfig } from "../../config/config.js";

44

import type { MsgContext } from "../templating.js";

55

import { handleBashChatCommand } from "./bash-command.js";

6+

import { requireGatewayClientScope } from "./command-gates.js";

67

import { handleConfigCommand, handleDebugCommand } from "./commands-config.js";

78

import type { HandleCommandsParams } from "./commands-types.js";

89

import { parseInlineDirectives } from "./directive-handling.parse.js";

@@ -458,6 +459,76 @@ describe("command gating", () => {

458459

expect(replaceConfigFileMock.mock.calls.length).toBe(previousWriteCount);

459460

});

460461462+

it("enforces gateway client permissions when the command channel is external", () => {

463+

const result = requireGatewayClientScope(

464+

{

465+

ctx: {

466+

Provider: "internal",

467+

OriginatingChannel: "telegram",

468+

GatewayClientScopes: ["operator.write"],

469+

},

470+

command: {

471+

channel: "telegram",

472+

},

473+

} as unknown as HandleCommandsParams,

474+

{

475+

label: "/config write",

476+

allowedScopes: ["operator.admin"],

477+

missingText: "/config set|unset requires operator.admin for gateway clients.",

478+

},

479+

);

480+481+

expect(result?.shouldContinue).toBe(false);

482+

expect(result?.reply?.text).toContain("requires operator.admin");

483+

expect(isInternalMessageChannelMock).not.toHaveBeenCalled();

484+

});

485+486+

it("enforces gateway client permissions when the scope list is empty", () => {

487+

const result = requireGatewayClientScope(

488+

{

489+

ctx: {

490+

Provider: "internal",

491+

OriginatingChannel: "telegram",

492+

GatewayClientScopes: [],

493+

},

494+

command: {

495+

channel: "telegram",

496+

},

497+

} as unknown as HandleCommandsParams,

498+

{

499+

label: "/config write",

500+

allowedScopes: ["operator.admin"],

501+

missingText: "/config set|unset requires operator.admin for gateway clients.",

502+

},

503+

);

504+505+

expect(result?.shouldContinue).toBe(false);

506+

expect(result?.reply?.text).toContain("requires operator.admin");

507+

expect(isInternalMessageChannelMock).not.toHaveBeenCalled();

508+

});

509+510+

it("does not require gateway client permissions when scopes are absent", () => {

511+

const result = requireGatewayClientScope(

512+

{

513+

ctx: {

514+

Provider: "telegram",

515+

OriginatingChannel: "telegram",

516+

},

517+

command: {

518+

channel: "telegram",

519+

},

520+

} as unknown as HandleCommandsParams,

521+

{

522+

label: "/config write",

523+

allowedScopes: ["operator.admin"],

524+

missingText: "/config set|unset requires operator.admin for gateway clients.",

525+

},

526+

);

527+528+

expect(result).toBeNull();

529+

expect(isInternalMessageChannelMock).not.toHaveBeenCalled();

530+

});

531+461532

it("enforces gateway client permissions for /config commands", async () => {

462533

const baseCfg = { commands: { config: true, text: true } } as OpenClawConfig;

463534

@@ -469,7 +540,6 @@ describe("command gating", () => {

469540

blockedParams.command.channelId = "webchat";

470541

blockedParams.command.surface = "webchat";

471542

blockedParams.command.senderIsOwner = true;

472-

isInternalMessageChannelMock.mockReturnValueOnce(true);

473543

const blockedResult = await handleConfigCommand(blockedParams, true);

474544

expect(blockedResult?.shouldContinue).toBe(false);

475545

expect(blockedResult?.reply?.text).toContain("requires operator.admin");

@@ -485,7 +555,7 @@ describe("command gating", () => {

485555

showParams.command.channel = "webchat";

486556

showParams.command.channelId = "webchat";

487557

showParams.command.surface = "webchat";

488-

isInternalMessageChannelMock.mockReturnValueOnce(true);

558+

showParams.command.senderIsOwner = true;

489559

const showResult = await handleConfigCommand(showParams, true);

490560

expect(showResult?.shouldContinue).toBe(false);

491561

expect(showResult?.reply?.text).toContain("Config messages.ackReaction");

@@ -502,7 +572,6 @@ describe("command gating", () => {

502572

setParams.command.channelId = "webchat";

503573

setParams.command.surface = "webchat";

504574

setParams.command.senderIsOwner = true;

505-

isInternalMessageChannelMock.mockReturnValueOnce(true);

506575

const setResult = await handleConfigCommand(setParams, true);

507576

expect(setResult?.shouldContinue).toBe(false);

508577

expect(setResult?.reply?.text).toContain("Config updated");