Skip to content

[auth] swap CIMD SSRF wording for IETF draft reference#1840

Merged
pcarleton merged 1 commit intomainfrom
pcarleton/cimd-reference-draft-security-considerations
Nov 20, 2025
Merged

[auth] swap CIMD SSRF wording for IETF draft reference#1840
pcarleton merged 1 commit intomainfrom
pcarleton/cimd-reference-draft-security-considerations

Conversation

@pcarleton
Copy link
Copy Markdown
Member

Motivation and Context

In #1296 it came up that the wording around SSRF was a bit ambiguous. Since there is also a section in the IETF draft that covers that, it seems better to reference those and not re-state it in the spec. If we want additional concerns to be flagged, it seems better to include those in the IETF draft.

How Has This Been Tested?

n/a

Breaking Changes

no

Types of changes

  • Bug fix (non-breaking change which fixes an issue)
  • New feature (non-breaking change which adds functionality)
  • Breaking change (fix or feature that would cause existing functionality to change)
  • Documentation update

Checklist

  • I have read the MCP Documentation
  • My code follows the repository's style guidelines
  • New and existing tests pass locally
  • I have added appropriate error handling
  • I have added or updated documentation as needed

Additional context

@pcarleton pcarleton requested a review from a team as a code owner November 19, 2025 11:49
@pcarleton pcarleton requested a review from a team November 19, 2025 11:49
@pcarleton pcarleton changed the title [auth] reference CIMD draft security considerations [auth] swap CIMD SSRF wording for IETF draft reference Nov 19, 2025
@localden localden added the rc-high-priority Related to an upcoming specification release and needs to be addressed with a high priority. label Nov 20, 2025
@localden localden moved this to In review in 2025-11-25 Implementation Nov 20, 2025
@pcarleton pcarleton merged commit 0dd3f15 into main Nov 20, 2025
7 checks passed
@pcarleton pcarleton deleted the pcarleton/cimd-reference-draft-security-considerations branch November 20, 2025 10:11
@github-project-automation github-project-automation bot moved this from In review to Done in 2025-11-25 Implementation Nov 20, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

rc-high-priority Related to an upcoming specification release and needs to be addressed with a high priority.

Projects

Status: Done

Development

Successfully merging this pull request may close these issues.

2 participants