Skip to content

[Security][CODE] Use purpose-bound credentials at every desktop Alpha entry point #405

Description

@jinjunnn

Covers

jinjunnn/alpha-work#8:桌面所有 Alpha 生产入口使用 purpose-bound credential,并由 main-owned action client 选择服务端授权动作;renderer 不持有 service credential。

Boundary

Desktop identity/account/billing/job/artifact client wiring、credential selection/storage boundary、typed authorization errors、contract tests 与 docs。

Out of scope

服务端 token 签发/验证矩阵;OS vault 的 custom provider secret(alpha-code#226);旧 user JWT、scope-less token 或 fallback credential 兼容。

Design notes and risks

必须盘点深链、重试、后台恢复和 MCP/tool 入口,避免只有主 UI 切换;token 不得进入 renderer/log。

Exit condition

Merged PR + bin/check green + each production entry wiring test green + docs handled。运行时拒绝矩阵归 VERIFY。

Parent

Refs jinjunnn/alpha-work#8

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    area:contractsContracts, schemas, or compatibilityarea:integrationRepository, API, or external integrationarea:securitySecurity or access controltype:featureNew user or system capability

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions