project-codeflare / project-codeflare/codeflare-sdk
Update AppWrapper Generation Logic
Nobody has claimed this yet.
- Dominant language
- Python
- Stars
- 35
- Forks
- 66
- Avg merge
- 48m
- Merged PRs (30d)
- 7
Description
The appwrapper generated by the sdk includes a route without any authentication tied to it -- this means that our Ray instance is available to anyone to access. We should update the appwrapper template to include an oauth proxy container at a minimum.
cc @MichaelClifford
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Locate the appwrapper template and the SDK logic that generates it, then inspect the route exposed without authentication. Determine how an OAuth proxy should be included at minimum; done means generated appwrappers no longer expose the Ray instance through an unauthenticated route.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- python
- Domain
- authentication, security
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 35/100