Commit acd300d
authored
fix(gateway): add missing validation for custom JWT claim values (#644)
matchValueString and matchValueStringList items lacked regex validation,
allowing characters (e.g. / :) that the API rejects at deploy time.
Also blocks 'client_id' as a reserved custom claim name (server-side
business rule) and fixes stale mcp.json references in comments.
Validation constraints sourced from the ClaimMatchValueType and
CustomClaimValidationType API reference documentation.
- matchValueString: added regex [A-Za-z0-9_.-]+ and max(255)
- matchValueStringList items: same regex and max(255) per item
- inboundTokenClaimName: added max(255) and reserved name blocklist
- Updated stale mcp.json comment references to agentcore.json1 parent e1e2bbf commit acd300d
4 files changed
Lines changed: 27 additions & 8 deletions
File tree
- src
- cli
- operations/fetch-access
- primitives
- tui/screens/mcp/__tests__
- schema/schemas
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
206 | 206 | | |
207 | 207 | | |
208 | 208 | | |
209 | | - | |
| 209 | + | |
210 | 210 | | |
211 | 211 | | |
212 | 212 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
143 | 143 | | |
144 | 144 | | |
145 | 145 | | |
146 | | - | |
| 146 | + | |
147 | 147 | | |
148 | 148 | | |
149 | 149 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
58 | 58 | | |
59 | 59 | | |
60 | 60 | | |
61 | | - | |
62 | | - | |
| 61 | + | |
| 62 | + | |
63 | 63 | | |
64 | | - | |
| 64 | + | |
65 | 65 | | |
66 | 66 | | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
46 | 46 | | |
47 | 47 | | |
48 | 48 | | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
49 | 55 | | |
50 | 56 | | |
51 | 57 | | |
52 | 58 | | |
53 | 59 | | |
54 | | - | |
55 | | - | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
| 65 | + | |
| 66 | + | |
| 67 | + | |
| 68 | + | |
| 69 | + | |
| 70 | + | |
56 | 71 | | |
57 | 72 | | |
58 | 73 | | |
| |||
70 | 85 | | |
71 | 86 | | |
72 | 87 | | |
73 | | - | |
| 88 | + | |
| 89 | + | |
| 90 | + | |
| 91 | + | |
| 92 | + | |
74 | 93 | | |
75 | 94 | | |
76 | 95 | | |
| |||
0 commit comments