Repository navigation
Fixed relation privilege checks - #3451
Conversation
Footnotes
|
|
SummaryCoverage spans database authorization happy paths and adversarial access attempts, including protected reads and writes, nested queries, concurrent access, connection recovery, and granted views across different schemas. Most permission boundaries behave correctly, but view authorization behavior remains faulty for both reads and denial reporting. Merge with caution — this PR introduces a medium-severity authorization regression that makes explicitly granted views unusable, plus a minor issue where denied view writes identify the underlying table instead of the view. Unauthorized writes remain blocked, but the broken granted-view behavior affects intended access and warrants follow-up before treating the change as fully safe. Tests run by ItoTip Reply with @itoqa to send us feedback on this test run. |
|
@Hydrocharged DOLT
|
|
Diff SummaryCoverage spans normal authorized database reads, denied access and write attempts, nested queries and views, transaction rollback, connection recovery, and clear permission errors. Overall, the exercised authorization behavior remains healthy: allowed operations work, protected data and changes stay blocked, and failed operations do not alter stored data. Safe to merge — the only failure is a minor, pre-existing error-message issue unrelated to this PR, while the tested authorization behavior shows no PR-attributable regressions or new failures. The unrelated issue is suitable for follow-up rather than a merge blocker. Tests run by ItoAdditional Findings DetailsThese findings are unrelated to the current changes but were observed during testing. ⚪ View write errors name the wrong relation
Evidence Package
Tip Reply with @itoqa to send us feedback on this test run. |
3b7a063 to
b2c4d44
Compare
Commit: SummaryCoverage focused on database access control: permitted reads and writes, denied operations, restricted metadata, views, upserts, nested queries, and recovery after access errors. It exercised both expected user flows and adversarial permission-boundary and data-integrity cases, with the application behavior broadly matching the intended safeguards. Safe to merge — the only observed failure is a medium-severity, pre-existing authorization error that is explicitly not attributable to this PR, and no regression or new PR-related failure was identified. It is a flag for later rather than a merge blocker. Tests run by ItoAdditional Findings DetailsThese findings are unrelated to the current changes but were observed during testing. 🟡 Denied view returns the wrong database error
Evidence PackageTip Reply with @itoqa to send us feedback on this test run. |


Fixes:
Lets all roles read from the public system tables, and corrects table and view permissions. Some tests are skipped due to pre-existing issues that are outside the scope of this PR.
Builds on: