github / github/github-mcp-server

Optional "Receipt Required" guard for destructive tools (delete_repo, permissions)

Đang mở
#2,761 2 bình luận 0 reaction 0 người được giao Xem trên GitHub
enhancement
Ngôn ngữ chính
Go
Star
33k
Fork
5k
Merge trung bình
2 ngày 1 giờ
Pull request đã merge (30 ngày)
52

Mô tả

This server exposes irreversible tools (`delete_repository`, visibility/permission changes). I maintain EMILIA's open **Receipt Required** rail (Apache-2.0): a small, **opt-in** gate so an irreversible tool refuses to run unless a named human signed an authorization receipt for that *exact* action.

The four-step behavior (CI-verified):
- missing receipt → `428 Receipt Required`
- valid, action-bound receipt → runs
- same receipt replayed → refused (one-time consumption)
- forged receipt → refused

It's **disabled by default, no protocol lock-in** — purely additive. There's a runnable `github-admin` example mirroring `delete_repo`, plus a 10-minute guide. Would you be open to a PR adding this behind an opt-in flag? Happy to author it.

Spec + guide: https://github.com/emiliaprotocol/emilia-protocol/blob/main/docs/guides/RECEIPT-REQUIRED-MCP.md

Hướng dẫn đóng góp

Mở hướng dẫn đóng góp

Hướng nghiên cứu

Read the linked RECEIPT-REQUIRED-MCP.md guide and inspect the existing delete_repository, visibility, and permission tool entry points in github-mcp-server. Compare the proposed github-admin example with the server’s current tool behavior; done means an opt-in, additive guard that rejects missing, replayed, or forged receipts while allowing valid action-bound receipts.

Do mô hình lập chỉ mục viết ra từ nội dung của issue.

Đánh giá

Công nghệ
github, go
Lĩnh vực
api, authorization, security
Loại issue
Tính năng
Độ khó
5/5
Thời gian dự kiến
Hơn một tuần
Mức độ hoạt động
Sôi nổi
Độ rõ ràng
Khá rõ ràng
Mức phù hợp với người mới
35/100

Nhận issue mới trong hộp thư của bạn

Bản tóm tắt ngắn những issue GitHub phù hợp với người mới.