Closed (fixed)
Project:
MCP Sentinel
Version:
2.2.0
Component:
Code
Priority:
Major
Category:
Task
Assigned:
Unassigned
Reporter:
Created:
31 Jul 2026 at 03:46 UTC
Updated:
31 Jul 2026 at 18:07 UTC
Jump to comment: Most recent
After making mcp_admin a non-is_admin enumerated break-glass role, grants still attached the role if a site widened it with extra permissions (including approve mcp sentinel operations). The five-permission list is only a security boundary if it is enforced at elevation time.
McpBreakGlassManager::ALLOWED_PERMISSIONS (must match optional role YAML).grant() refuses any permission outside that allowlist; proper subset still grants.GitHub companion: Wilkes-Liberty/mcp_sentinel#87. Related status-report drift: #88 / d.o companion once filed.
Comments
Comment #2
jmcerdaFixed in 2.2.0.
GitHub companion #87 closed as completed; shipped via PR #90 (grant-time allowlist seal).
Comment #4
jmcerdaClosed (fixed): grant-time permission allowlist seal shipped in 2.2.0 (GitHub #87). Grants refuse when mcp_admin holds permissions outside ALLOWED_PERMISSIONS.
https://www.drupal.org/project/mcp_sentinel/releases/2.2.0
https://github.com/Wilkes-Liberty/mcp_sentinel/issues/87