Agent-Hellboy / Agent-Hellboy/mcp-runtime

feat(ui): link audit events to MCPAccessGrant and MCPAgentSession detail pages

未关闭
#309 0 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看
主要语言
Go
星标
6
派生
1
平均合并
11 小时 33 分钟
30 天内合并 PR
13

描述

## Summary

Once audit events carry `matched_grant` and `matched_session` fields (see companion issue), wire up the Sentinel UI so users can navigate from an audit event directly to the grant or session object that caused it.

## Motivation

Right now the UI shows audit events (ClickHouse) and cluster objects (MCPAccessGrant, MCPAgentSession) as completely separate views. You cannot click from a deny event to understand *why* — you have to manually look up the grant in a different screen.

This connects the three pillars of the platform that are currently siloed:

```
MCPAgentSession ←——→ Audit Events ←——→ MCPAccessGrant
```

## UI changes

### Audit event row
- `matched_grant` value → clickable link → `MCPAccessGrant` detail page
- `matched_session` value → clickable link → `MCPAgentSession` detail page

### MCPAccessGrant detail page
- Add **"Recent activity"** tab: audit events matched against this grant (last 7 days), with allow/deny breakdown

### MCPAgentSession detail page
- Add **"Tool call timeline"** tab: ordered list of every tool call in this session with allow/deny/would_deny status

## Dependencies
- Requires `matched_grant` + `matched_session` fields in audit events (feat(audit): matched grant and session attribution in audit events)

## Acceptance criteria
- [ ] Audit event table shows `matched_grant` and `matched_session` as clickable links
- [ ] Clicking `matched_grant` navigates to the grant detail page
- [ ] Clicking `matched_session` navigates to the session detail page
- [ ] Grant detail page shows recent audit activity filtered by that grant
- [ ] Session detail page shows full tool call timeline for that session

🤖 Generated with [Claude Code](https://claude.com/claude-code)

贡献指南

这个仓库没有索引到贡献指南

评估

这个 Issue 还没有评估数据。

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。