Files
DocsGPT/application/core
Alex 30397a1905 Expose artifacts as MCP resources and add sandbox egress policy
Expose a user's artifacts through the MCP server as readable resources: each is
listed under an artifact:// URI with its mime type and read on demand as inline
text or a base64 blob, bounded by a size cap and scoped strictly to the owning
principal resolved from the request's API key, so no artifact is served across
tenants. Ship the network-level egress controls the sandbox runner needs but
cannot self-apply: a Kubernetes NetworkPolicy that allows public egress while
denying RFC1918, link-local, and cloud-metadata ranges, an optional
docker-compose egress overlay, and runner network-hardening docs.
2026-06-24 13:57:39 +01:00
..
2026-06-16 10:50:33 +01:00
2023-04-29 15:40:55 +01:00
2026-04-12 00:07:24 +01:00
2026-02-22 11:10:42 +00:00
2026-04-28 00:14:43 +01:00
2026-04-28 00:14:43 +01:00
2026-04-27 22:09:33 +01:00
2026-04-27 22:09:33 +01:00
2026-06-08 15:07:31 +01:00
2025-12-24 17:05:35 +02:00