aws / aws/amazon-q-developer-cli

[Feature Request] Customizing bash command permissions.

Aperta
#2,401 0 commenti 4 reazioni 0 assegnatari Vedi su GitHub
Lingua principale
Rust
Stelle
2k
Fork
439
Metriche di merge delle PR
Nessuna PR unita negli ultimi 30g

Descrizione

In Q CLI, you are given two tool trust options: trust on a per-command basis, and trust on every command basis. However, for the execute_bash tool, it is very hard for developers to provide full trust to this tool, since there are a wide variety of bash commands. However, the user may want to give trust to some bash commands (for example, mkdir and cd for file navigation and directory creation). Giving the user customization options over which bash commands are acceptable will help increase developer trust with using Q CLI tools, especially in agent script usage where they trust certain parts of the script to run autonomously using bash commands, but don't trust every command.

If needed, I can help take a look at adding this functionality. I had done a small pr for Q CLI a month ago, and am eager to learn more about the codebase as well.

Thank you!

Guida per i contributori

Apri la guida per i contributori

Direzione di ricerca

La issue nomina Q CLI, lo strumento execute_bash e le opzioni di attendibilità esistenti per comando e per ogni comando, ma non indica file o test. Inizia individuando execute_bash e quei percorsi di gestione dell’attendibilità; il lavoro è completo quando una configurazione definita e una regola verificabile consentono di autorizzare comandi bash selezionati senza considerare attendibile ogni comando.

Scritto dal modello di indicizzazione a partire dal testo della issue.

Valutazione

Stack tecnologico
bash, rust
Ambito
cli, security
Tipo di issue
Funzionalità
Difficoltà
5/5
Tempo stimato
Più di una settimana
Stato di attività
Ferma
Chiarezza
Da chiarire
Idoneità per principianti
25/100

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.