KamoCRM

SecurityService read-proxy for MLOS Governance

FeatureSecurityService
Shipped
3 ஜூலை, 2026 அன்று 3:21 AM UTC
Author
Kamo
Commit
f79dfb1

One controller/client pair fronting MLOSGovernanceService's five reads (both its steward-feedback and pull-through-policy modules share /api/governance). organizationId resolved from the OTK session, never the browser. Tenant guards: org-injected passthrough for the two by-org reads; flat top-level-org fail-closed (404) for the single active-policy read; per-row post-filter for the by-decision feedback trail + policy version history (drop foreign rows, re-count), with a downstream-404 normalized to an empty 200 so unknown/foreign/empty are indistinguishable (no cross-org AiDecision existence oracle). Adds mlos.governance.url.

All changes

Like what you see shipping?

All of it arrives in your workspace on its own. Start on the free plan and read this page again in a month.

Start Free ForeverView Pricing