mirror of
https://github.com/BerriAI/litellm.git
synced 2026-10-11 03:38:38 +00:00
Positive companion to the Authorization challenge-guard: once a user has
authorized (per-user token stored via the x-litellm-api-key dance), a plain
Authorization: Bearer <key> session needs no dance and the gateway serves
tools using the stored token. Seeds the token via the dance, then lists and
calls over an Authorization-key session, and asserts the upstream received the
stored per-user token (not the key) with no key leak. Claims the previously
unclaimed mcp.{list_tools,call_tool}.bearer.succeeds cells. Green on stock.
|
||
|---|---|---|
| .. | ||
| stub | ||
| auth_forwarder.py | ||
| conftest.py | ||
| mcp_client.py | ||
| test_mcp_concurrency_e2e.py | ||
| test_mcp_oauth_interactive_e2e.py | ||
| test_mcp_tool_access_e2e.py | ||