fix(ci): tier nested MCP OAuth and flow files as always-human

The two MCP globs only matched files directly under mcp_server, so faults/render_oauth.py, which renders the OAuth and DCR fault responses, scored medium. Both globs now use **/ so nested files match too. The last 400 staging merges still score 217 high, 139 medium, 44 low
This commit is contained in:
mateo-berri 2026-09-07 17:13:39 -07:00
parent 75b4478242
commit 6edc2c1611
2 changed files with 4 additions and 2 deletions

View file

@ -25,8 +25,8 @@ paths:
- "litellm/proxy/_experimental/mcp_server/auth/**"
- "litellm/proxy/_experimental/mcp_server/outbound_credentials/**"
- "litellm/proxy/_experimental/mcp_server/discoverable_endpoints.py"
- "litellm/proxy/_experimental/mcp_server/*oauth*"
- "litellm/proxy/_experimental/mcp_server/*_flow.py"
- "litellm/proxy/_experimental/mcp_server/**/*oauth*"
- "litellm/proxy/_experimental/mcp_server/**/*_flow.py"
- "litellm/proxy/_experimental/mcp_server/proxy_api_credentials.py"
- ".github/**"
- ".circleci/**"

View file

@ -342,6 +342,8 @@ def test_author_factor(risk_tier, rules, author, from_fork, expected):
("litellm/proxy/_experimental/mcp_server/byok_oauth_endpoints.py", "high"),
("litellm/proxy/_experimental/mcp_server/bridge_token_flow.py", "high"),
("litellm/proxy/_experimental/mcp_server/proxy_api_credentials.py", "high"),
("litellm/proxy/_experimental/mcp_server/faults/render_oauth.py", "high"),
("litellm/proxy/_experimental/mcp_server/faults/classify.py", "medium"),
("litellm/proxy/_experimental/mcp_server/server.py", "medium"),
("enterprise/litellm_enterprise/proxy/hooks/x.py", "high"),
("enterprise/litellm_enterprise/proxy/auth/x.py", "high"),