Skip to content

Process-global config audit and documentation #306

Description

@gbrlcustodio

Part of the hosted on-behalf-of MCP server proposal (#297).

Scope

Audit tools that read process-global configuration for per-user decisions (for example service-account guards) to confirm they are safe for a single-integrator, single-backend hosted deployment. Document the assumption and the rework trigger (one host serving multiple backends with different config).

Acceptance criteria

The assumption is documented; no tool reads mutable global state for a per-user decision outside the documented assumption; affected tools are marked remote-safe only after review.

Dependencies

Informs which tools the default-deny allowlist (#304) can mark.

Metadata

Metadata

Assignees

No one assigned

    Labels

    documentationImprovements or additions to documentationhosted-mcpHosted, multi-user, on-behalf-of MCP server profile

    Type

    No type

    Fields

    No fields configured for issues without a type.

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions