fix: allow internal_user to access /project/list and /project/info

Add /project/list and /project/info to self_managed_routes and
admin_viewer_routes in LiteLLMRoutes so non-admin users can reach
these endpoints. The endpoints already enforce team-membership access
control internally (non-admins see only projects from their teams),
but RouteChecks.non_proxy_admin_allowed_routes_check() was rejecting
the request with 401 before the endpoint logic ran.
This commit is contained in:
Ishaan Jaffer 2026-04-24 19:51:53 -07:00
parent d21e90f683
commit de8a52f294
No known key found for this signature in database

View file

@ -681,6 +681,9 @@ class LiteLLMRoutes(enum.Enum):
# Team guardrail submissions - endpoint scopes results to caller's teams (non-admin)
"/guardrails/submissions",
"/guardrails/submissions/{guardrail_id}",
# Project routes - endpoints scope results to caller's teams (non-admin gets only their projects)
"/project/list",
"/project/info",
] # routes that manage their own allowed/disallowed logic
## Org Admin Routes ##
@ -714,6 +717,8 @@ class LiteLLMRoutes(enum.Enum):
"/global/activity",
"/global/activity/model",
"/global/activity/cache_hits",
"/project/list",
"/project/info",
] + info_routes
# All routes accesible by an Org Admin