Skip to content

[BACKEND] Incorporate with Jenkins Authentication/Authorization #78

@berviantoleo

Description

@berviantoleo

What feature do you want to see added?

We may need to consider knowing our users. It will help to understand the previous query or other chats. The current backend only support session based chat. Which may need more context, and we shouldn't expose other chats from the other users. I will consider this as part of work #77.

Security considerations:

  1. Should allow anonymous calls; they didn't share the context, as the current implementation does.
  2. Ensure anonymous calls only access public information
  3. Ensure the logged-in account is only able to access information from their own; don't share information from other users.
  4. Ensure you don't expose PII.
  5. etc...

I expect to have some child issues to track in each phase.


Notes from @berviantoleo:

This is not an actual issue. I'll separate the work into some chunks.
@berviantoleo will close this issue after all child work is completed.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions