Skip to content

v2.7.0 — DYNAMIC scan flags, CSV upload + download fixes

Choose a tag to compare

@cdot65 cdot65 released this 13 May 18:52
· 265 commits to main since this release
c46a673

What's new

Features

  • --goals, --depth, --breadth flags for airs redteam scan --type DYNAMIC (#66) — pass attack goals as inline JSON or a JSON file; tune agent depth and breadth. Without --goals, DYNAMIC scans still run in fully automated mode (no behavior change).

Fixes

  • airs redteam prompt-sets upload no longer fails with File must be a CSV (#67) — upload now sends a File (with filename) instead of a bare Blob, so the server can identify the multipart content type.
  • airs redteam prompt-sets download no longer crashes with Cannot read properties of undefined (#68) — bumped @cdot65/prisma-airs-sdk to ^0.8.3 and replaced the 30-line OAuth workaround with a direct SDK call. The SDK fix is in prisma-airs-sdk v0.8.3.

Internal

  • Hardened CLI flag parsing for DYNAMIC scans: positive-integer guard for --depth/--breadth, non-empty string-array validation for --goals, and parseAttackGoals/parsePositiveInt helpers with unit tests.
  • New "Dynamic Scan (Agent-Driven)" section in docs/redteam/scanning.md.

Changesets: 0015–0017.