Release
0.6 — Real MCP
Objective
Scope policies for MCP tools.
Problem
- No fine-grained tool scoping
- All tools share same access level
Fix
mcp_tool_scopes table: (tool_id, scope, required_capability)
- Admin UI to configure tool scopes
- Enforce at MCP auth layer
- Scope attenuation per delegation hop
Files
internal/storage/sqlite.go
internal/mcp/scopes.go
admin/src/components/mcp_tools.tsx (new)
Acceptance Criteria
Release
0.6 — Real MCP
Objective
Scope policies for MCP tools.
Problem
Fix
mcp_tool_scopestable:(tool_id, scope, required_capability)Files
internal/storage/sqlite.gointernal/mcp/scopes.goadmin/src/components/mcp_tools.tsx(new)Acceptance Criteria