mirror of
https://github.com/openai/codex.git
synced 2026-09-07 15:40:00 +00:00
## Why App widgets need to read resources using the app and account context of the tool call that produced them, including after a thread is restored. ## What changed - Add an optional `originCallId` to `mcpServer/resource/read` requests and return it on successful scoped reads. - Track bounded provenance for successful app tool calls in thread history and use the current tool binding, account link, and app policy when reading the associated widget resource. - Reject missing, mismatched, failed, or ambiguous origins, while keeping app-only tools available for widget reads without exposing them to the model. ## Testing Add app-server coverage for scoped widget reads across both history modes, ephemeral and persistent threads, server restarts, app-only visibility, and invalid origin cases. GitOrigin-RevId: 11eaefc066b2a3b639599e4cbdef680233d150a2
76 lines
1.6 KiB
JSON
Generated
76 lines
1.6 KiB
JSON
Generated
{
|
|
"$schema": "http://json-schema.org/draft-07/schema#",
|
|
"definitions": {
|
|
"ResourceContent": {
|
|
"anyOf": [
|
|
{
|
|
"properties": {
|
|
"_meta": true,
|
|
"mimeType": {
|
|
"type": [
|
|
"string",
|
|
"null"
|
|
]
|
|
},
|
|
"text": {
|
|
"type": "string"
|
|
},
|
|
"uri": {
|
|
"description": "The URI of this resource.",
|
|
"type": "string"
|
|
}
|
|
},
|
|
"required": [
|
|
"text",
|
|
"uri"
|
|
],
|
|
"type": "object"
|
|
},
|
|
{
|
|
"properties": {
|
|
"_meta": true,
|
|
"blob": {
|
|
"type": "string"
|
|
},
|
|
"mimeType": {
|
|
"type": [
|
|
"string",
|
|
"null"
|
|
]
|
|
},
|
|
"uri": {
|
|
"description": "The URI of this resource.",
|
|
"type": "string"
|
|
}
|
|
},
|
|
"required": [
|
|
"blob",
|
|
"uri"
|
|
],
|
|
"type": "object"
|
|
}
|
|
],
|
|
"description": "Contents returned when reading a resource from an MCP server."
|
|
}
|
|
},
|
|
"properties": {
|
|
"contents": {
|
|
"items": {
|
|
"$ref": "#/definitions/ResourceContent"
|
|
},
|
|
"type": "array"
|
|
},
|
|
"originCallId": {
|
|
"description": "Originating call when the server applied app-specific resource scoping.",
|
|
"type": [
|
|
"string",
|
|
"null"
|
|
]
|
|
}
|
|
},
|
|
"required": [
|
|
"contents"
|
|
],
|
|
"title": "McpResourceReadResponse",
|
|
"type": "object"
|
|
} |