feat: enforce marketplace restrictions at plugin entry points#21459
Open
viyatb-oai wants to merge 1 commit intocodex/viyatb/managed-plugin-core-requirementsfrom
Open
feat: enforce marketplace restrictions at plugin entry points#21459viyatb-oai wants to merge 1 commit intocodex/viyatb/managed-plugin-core-requirementsfrom
viyatb-oai wants to merge 1 commit intocodex/viyatb/managed-plugin-core-requirementsfrom
Conversation
8c02e63 to
9a5c49d
Compare
5285721 to
d6f1e19
Compare
9a5c49d to
c251553
Compare
d6f1e19 to
9b4c779
Compare
c251553 to
641f65a
Compare
9b4c779 to
294f4f9
Compare
Co-authored-by: Codex noreply@openai.com
294f4f9 to
c7e7818
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Why
The core plugin manager can reject disallowed marketplaces, but enterprise policy also needs to hold at the entry points that add marketplaces or call remote plugin APIs. Those paths are where a user or automation would otherwise keep widening the local state.
What changed
Example
config.tomlWith the managed requirements stack applied, an approved marketplace can still appear in user
config.tomllike this:There is intentionally no user-writable
allowed_sourceskey inconfig.toml; skill-source restrictions are enforced only from managed requirements.Verification
codex-rs/core-plugins/src/marketplace_add.rs.codex-rs/app-server/tests/suite/v2/plugin_read.rs.Stack
--> feat: enforce marketplace restrictions at plugin entry points #21459: plugin entrypoint enforcement