Cover public labels for search_users - #12033
Conversation
Co-authored-by: lpcox <15877973+lpcox@users.noreply.github.com>
search_users
There was a problem hiding this comment.
Pull request overview
Adds search_users to a public-metadata label test, duplicating existing coverage.
Changes:
- Adds
search_usersto the shared label assertion table.
Show a summary per file
| File | Description |
|---|---|
guards/github-guard/rust-guard/src/labels/tool_rules.rs |
Extends the public GitHub metadata test table. |
Review details
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
- Files reviewed: 1/1 changed files
- Comments generated: 1
- Review effort level: Balanced
This comment has been minimized.
This comment has been minimized.
This comment has been minimized.
This comment has been minimized.
This comment has been minimized.
This comment has been minimized.
Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com>
🔒 mcpg Read-Only Stress — gVisorSurface coverage: MCP tool calls + proxied CLI (REST) + GraphQL mutations
Overall: INCONCLUSIVE
No write succeeded in any part. ✅ No enforcement gap detected; INCONCLUSIVE gaps noted above. References: §33184877360
|
🔒 mcpg Read-Only Stress — docker-sbxSurface coverage: MCP tool calls + proxied CLI (REST) + GraphQL mutations
Overall: INCONCLUSIVE
No write leaked. Run ID: §33184877430
|
🔒 mcpg Read-Only Stress — default AWFSurface coverage: MCP tool calls + proxied CLI (REST) + GraphQL mutations
Overall: INCONCLUSIVE
Run: §33184877416
|
GitHub guard coverage identified operations lacking explicit DIFC rule coverage. The production rules already label
search_usersas public GitHub-controlled metadata; this adds the missing regression assertion.search_usersin the existing public-metadata label test.project:githubintegrity.