makecindy / makecindy/cindy

维护者确认: PR #1816 fix(plugin): 将 OAuth scope 上限提高到 256

Open
#1,820 1 comment 0 reactions 0 assignees View on GitHub
Dominant language
TypeScript
Stars
2.7k
Forks
395
Avg merge
21h 48m
Merged PRs (30d)
776

Description

## 维护者确认

**PR**: https://github.com/makecindy/cindy/pull/1816
**触发类别**: pluginBase
**触发原因**: 改到插件基座文件 ghostOauthEndpoint.ts、ghost.ts、mcpServer.ts 等,调整 OAuth scope 上限,影响全部已装插件的 OAuth 权限模型。

需维护者确认此改动对存量已装插件的兼容性无影响(上限放大是否有安全考量,已授权的插件行为是否不变)。

---

**确认方式**: 在 PR 上直接 Approve;需要修改就 Request Changes,作者改完后重新 Approve 即放行。

---
关联 PR:#1816(作者 @GaoWeiLiuXD);本 issue 由 review-pr 流程自动创建,用于先讨论该 PR 涉及的插件基座改动(影响全部已装插件),维护者确认后 PR 会恢复推进。

Contributor guide

Open the contributing guide

Research direction

Start with PR #1816 and inspect the changes to ghostOauthEndpoint.ts, ghost.ts, and mcpServer.ts. Check compatibility for already-installed plugins, the security implications of increasing the OAuth scope limit, and whether existing authorization behavior remains unchanged; done means approving the PR or requesting changes.

Written by the indexing model from the issue text.

Assessment

Tech stack
typescript
Domain
authorization, security
Issue type
Feature
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Clearly specified
Newbie friendliness
18/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.