[Fix] Session artifact helpers allow non-human metadata reads - #2594
Merged
roomote-roomote[bot] merged 2 commits intoSep 12, 2026
Merged
Conversation
roomote-roomote
Bot
requested review from
brunobergher,
daniel-lxs and
mrubens
as code owners
September 12, 2026 07:00
Contributor
daniel-lxs
approved these changes
Sep 12, 2026
roomote-roomote
Bot
deleted the
fix/session-artifact-helper-auth-1whina8s7azis
branch
September 12, 2026 18:23
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
What changed
Why this change was made
The live tRPC callers already authorize Session reads, but the exported helpers accepted an auth context without enforcing it. Checking again at the data-access boundary prevents direct or future internal callers from bypassing the established Session policy.
Impact
No user-facing behavior change is intended for authorized Session reads. This adds defense in depth without removing the existing caller checks; 31 focused artifact tests, web TypeScript, web ESLint, changed-file formatting/lint, and the full pre-push gates pass.