Allowlist.Check now takes ctx: when the caller authenticated with their own Gitea PAT (pass-through, v0.12.0), it skips the static GITEA_MCP_ALLOWED_OWNERS check entirely — Gitea's own permission model already gates that caller's access more precisely than a coarse owner-name list can. The static list still applies unchanged for the shared static-token/JWT path, where it's the only defense against the service token's blast radius. Mechanical: every tool call site already had ctx in scope, so this is a signature-only change at 41 call sites, no other tool behavior changes. Closes the "Deferred" item from #59. Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
74 lines
2.1 KiB
Go
74 lines
2.1 KiB
Go
package tools
|
|
|
|
import (
|
|
"context"
|
|
"encoding/json"
|
|
|
|
"git.d-ma.be/mathias/gitea-mcp/internal/allowlist"
|
|
"git.d-ma.be/mathias/gitea-mcp/internal/gitea"
|
|
"git.d-ma.be/mathias/gitea-mcp/internal/registry"
|
|
)
|
|
|
|
type ReleaseCreate struct {
|
|
c *gitea.Client
|
|
a *allowlist.Allowlist
|
|
}
|
|
|
|
func NewReleaseCreate(c *gitea.Client, a *allowlist.Allowlist) *ReleaseCreate {
|
|
return &ReleaseCreate{c: c, a: a}
|
|
}
|
|
|
|
func (t *ReleaseCreate) Descriptor() registry.ToolDescriptor {
|
|
return registry.ToolDescriptor{
|
|
Name: "release_create",
|
|
Description: "Create a release (and tag if it doesn't exist) for a repository.",
|
|
InputSchema: json.RawMessage(`{
|
|
"type":"object",
|
|
"properties":{
|
|
"owner":{"type":"string"},
|
|
"repo":{"type":"string"},
|
|
"tag_name":{"type":"string","description":"Tag to create or use, e.g. 'v1.0.0'."},
|
|
"release_name":{"type":"string","description":"Display name for the release."},
|
|
"body":{"type":"string","description":"Release notes / changelog."},
|
|
"draft":{"type":"boolean"},
|
|
"prerelease":{"type":"boolean"},
|
|
"target":{"type":"string","description":"Branch or commit SHA to tag. Defaults to repo default branch."}
|
|
},
|
|
"required":["owner","repo","tag_name"]
|
|
}`),
|
|
}
|
|
}
|
|
|
|
type releaseCreateArgs struct {
|
|
Owner string `json:"owner"`
|
|
Repo string `json:"repo"`
|
|
TagName string `json:"tag_name"`
|
|
ReleaseName string `json:"release_name"`
|
|
Body string `json:"body"`
|
|
Draft bool `json:"draft"`
|
|
Prerelease bool `json:"prerelease"`
|
|
Target string `json:"target"`
|
|
}
|
|
|
|
func (t *ReleaseCreate) Call(ctx context.Context, raw json.RawMessage) (json.RawMessage, error) {
|
|
var args releaseCreateArgs
|
|
if err := parseArgs(raw, &args); err != nil {
|
|
return nil, err
|
|
}
|
|
if err := t.a.Check(ctx, args.Owner); err != nil {
|
|
return nil, err
|
|
}
|
|
rel, err := t.c.CreateRelease(ctx, args.Owner, args.Repo, gitea.CreateReleaseArgs{
|
|
TagName: args.TagName,
|
|
Name: args.ReleaseName,
|
|
Body: args.Body,
|
|
Draft: args.Draft,
|
|
Prerelease: args.Prerelease,
|
|
Target: args.Target,
|
|
})
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
return textOK(rel)
|
|
}
|