a2aproject / a2aproject/a2a-samples

Sample Code where an extended agent card is only returned when a user is actually authenticated

Open
#340 0 comments 2 reactions 0 assignees View on GitHub
Dominant language
Jupyter Notebook
Stars
1.8k
Forks
751
PR merge metrics
No merged PRs in 30d

Description

### Is your feature request related to a problem? Please describe.

The `helloworld` python agent example shows how to configure an extended agent card, and the `test_client.py` script shows how to add a dummy auth token to the request for an extended agent card, but the extended card is returned whether or not the auth token is present in the request, and whether or not the token is a valid token.

Is there an example where an a2a server only serves the extended card for actual authenticated users?

`test_client.py`

https://github.com/a2aproject/a2a-samples/blob/883c8906a60cb48e43599db0480d2217bd02c320/samples/python/agents/helloworld/test_client.py#L63-L69

a2a server code that serves both versions of the agent card regardless of the user's authentication status:

https://github.com/a2aproject/a2a-samples/blob/883c8906a60cb48e43599db0480d2217bd02c320/samples/python/agents/helloworld/__main__.py#L71-L75

### Describe the solution you'd like

I would like sample code that demonstrates how to restrict the extended agent card to only authenticated users.

### Describe alternatives you've considered

_No response_

### Additional context

_No response_

### Code of Conduct

- [x] I agree to follow this project's Code of Conduct

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.