Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
25 commits
Select commit Hold shift + click to select a range
78bcebc
refactor(webkit): extract error classes into dedicated module (#706 1/5)
shaun0927 May 7, 2026
f5b0492
refactor(webkit): extract protocol transport (#706 2/5)
shaun0927 May 7, 2026
eb2d833
refactor(webkit): extract target session manager (#706 3/5)
shaun0927 May 7, 2026
5004964
refactor(webkit): extract browser command implementations (#706 4/5)
shaun0927 May 7, 2026
a9fccd5
fix(webkit): address review feedback on browser-commands
shaun0927 May 7, 2026
b7cb2a5
fix(webkit): use RFC 6265 domain matching for getCookies filter
shaun0927 May 7, 2026
59b19c2
refactor(webkit): apply review feedback to error class extraction
shaun0927 May 7, 2026
3bbf26e
refactor(webkit): apply review feedback to protocol transport
shaun0927 May 7, 2026
6f629b8
fix(webkit): address second-round review on browser-commands
shaun0927 May 7, 2026
91a1b11
fix(webkit): route throwing protocol-event handler through transport:…
shaun0927 May 7, 2026
d81e61a
fix(webkit): keep clearCookies effective on document.cookie fallback
shaun0927 May 7, 2026
55becfe
refactor(webkit): extract typed event adapters and finalize facade (#…
shaun0927 May 7, 2026
a7c78e1
fix(webkit): address review feedback on EventBridge
shaun0927 May 7, 2026
c44d260
fix(webkit): use direct host.emit in EventBridge transport forwarding
shaun0927 May 7, 2026
70d4e3e
refactor(webkit): extract typed events and finalize facade (#706 5/5)…
shaun0927 May 8, 2026
227c9a4
refactor(webkit): extract protocol transport (#706 2/5) (#734)
shaun0927 May 8, 2026
9ca8e45
refactor(webkit): extract browser command implementations (#706 4/5) …
shaun0927 May 8, 2026
3970329
Merge refactor/706b-protocol-transport into refactor/706c-target-session
hermes-agent May 8, 2026
27bd4f3
refactor(webkit): extract target session manager (#706 3/5) (#735)
shaun0927 May 8, 2026
df81cf6
Merge remote-tracking branch 'origin/refactor/706b-protocol-transport…
hermes-agent May 8, 2026
50ae2b8
Merge develop into refactor/706a-errors
shaun0927 May 8, 2026
3e6510a
fix(tests): pass httpInsecure + httpHighRiskTools to auth verificatio…
shaun0927 May 8, 2026
a831782
fix(tests, audit): align with develop's HTTP transport hardening
shaun0927 May 8, 2026
bdcda4e
Preserve behavior contracts flagged by review
shaun0927 May 12, 2026
1d9abf4
Keep PR #732 mergeable with current develop
shaun0927 May 12, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion src/mcp-server.ts
Original file line number Diff line number Diff line change
Expand Up @@ -357,7 +357,7 @@ export class MCPServer {
const isHighRiskHttp = context.transport === 'http' && highRiskTool !== undefined;

if (isHighRiskHttp && !this.httpHighRiskToolsEnabled) {
logAuditEntry(name, sessionId, args, undefined, 'blocked');
logAuditEntry(name, sessionId, args, undefined, 'denied');
return {
jsonrpc: '2.0',
id: request.id,
Expand Down
2 changes: 1 addition & 1 deletion src/security/audit-logger.ts
Original file line number Diff line number Diff line change
Expand Up @@ -241,7 +241,7 @@ export function logAuditEntry(
tool,
domain: extractDomain(pageUrl || (args.url as string)),
sessionId,
...(status ? { status } : {}),
...(status !== undefined ? { status } : {}),
args_summary: summarizeArgs(args),
};

Expand Down
Loading
Loading