Repository navigation
Resolved table and CTE authorization - #3941
Conversation
|
SummaryCoverage spans normal authorized reads and writes, including inserts, updates, deletes, truncation, and common table-expression queries. It also exercises edge and adversarial cases such as missing tables, denied permissions, ambiguous names, independent source/destination access, and ensuring rejected operations leave data unchanged. Safe to merge — the run found no regressions or PR-attributable failures across the authorization, data-change, and safety behaviors exercised. No merge blocker is indicated; overall risk is low. Tests run by Ito
Tip Reply with @itoqa to send us feedback on this test run. |
5c1d3c1 to
e2b5565
Compare
Commit: SummaryCoverage spans normal reads and writes, including common-table-expression queries, inserts, upserts, and table truncation, along with edge cases such as missing targets and cross-database object resolution. It also exercises adversarial permission scenarios, confirming unauthorized access is blocked and authorization can be disabled without affecting planning. Safe to merge — the exercised application behaviors passed without any PR-attributable regressions or new failures, including permission enforcement and write-operation checks. No merge-blocking issue was identified. Tests run by Ito
Tip Reply with @itoqa to send us feedback on this test run. |

Fixes a bug where subqueries could bypass permissions in some instances (test cases are now returning errors), and also adds an interface for: