| CARVIEW |
Select Language
HTTP/2 200
date: Sun, 28 Dec 2025 19:15:49 GMT
content-type: text/html; charset=utf-8
vary: X-PJAX, X-PJAX-Container, Turbo-Visit, Turbo-Frame, X-Requested-With,Accept-Encoding, Accept, X-Requested-With
etag: W/"a1c1c6d192903f9211de8ef2c25f61e6"
cache-control: max-age=0, private, must-revalidate
strict-transport-security: max-age=31536000; includeSubdomains; preload
x-frame-options: deny
x-content-type-options: nosniff
x-xss-protection: 0
referrer-policy: no-referrer-when-downgrade
content-security-policy: default-src 'none'; base-uri 'self'; child-src github.githubassets.com github.com/assets-cdn/worker/ github.com/assets/ gist.github.com/assets-cdn/worker/; connect-src 'self' uploads.github.com www.githubstatus.com collector.github.com raw.githubusercontent.com api.github.com github-cloud.s3.amazonaws.com github-production-repository-file-5c1aeb.s3.amazonaws.com github-production-upload-manifest-file-7fdce7.s3.amazonaws.com github-production-user-asset-6210df.s3.amazonaws.com *.rel.tunnels.api.visualstudio.com wss://*.rel.tunnels.api.visualstudio.com github.githubassets.com objects-origin.githubusercontent.com copilot-proxy.githubusercontent.com proxy.individual.githubcopilot.com proxy.business.githubcopilot.com proxy.enterprise.githubcopilot.com *.actions.githubusercontent.com wss://*.actions.githubusercontent.com productionresultssa0.blob.core.windows.net/ productionresultssa1.blob.core.windows.net/ productionresultssa2.blob.core.windows.net/ productionresultssa3.blob.core.windows.net/ productionresultssa4.blob.core.windows.net/ productionresultssa5.blob.core.windows.net/ productionresultssa6.blob.core.windows.net/ productionresultssa7.blob.core.windows.net/ productionresultssa8.blob.core.windows.net/ productionresultssa9.blob.core.windows.net/ productionresultssa10.blob.core.windows.net/ productionresultssa11.blob.core.windows.net/ productionresultssa12.blob.core.windows.net/ productionresultssa13.blob.core.windows.net/ productionresultssa14.blob.core.windows.net/ productionresultssa15.blob.core.windows.net/ productionresultssa16.blob.core.windows.net/ productionresultssa17.blob.core.windows.net/ productionresultssa18.blob.core.windows.net/ productionresultssa19.blob.core.windows.net/ github-production-repository-image-32fea6.s3.amazonaws.com github-production-release-asset-2e65be.s3.amazonaws.com insights.github.com wss://alive.github.com wss://alive-staging.github.com api.githubcopilot.com api.individual.githubcopilot.com api.business.githubcopilot.com api.enterprise.githubcopilot.com; font-src github.githubassets.com; form-action 'self' github.com gist.github.com copilot-workspace.githubnext.com objects-origin.githubusercontent.com; frame-ancestors 'none'; frame-src viewscreen.githubusercontent.com notebooks.githubusercontent.com; img-src 'self' data: blob: github.githubassets.com media.githubusercontent.com camo.githubusercontent.com identicons.github.com avatars.githubusercontent.com private-avatars.githubusercontent.com github-cloud.s3.amazonaws.com objects.githubusercontent.com release-assets.githubusercontent.com secured-user-images.githubusercontent.com/ user-images.githubusercontent.com/ private-user-images.githubusercontent.com opengraph.githubassets.com marketplace-screenshots.githubusercontent.com/ copilotprodattachments.blob.core.windows.net/github-production-copilot-attachments/ github-production-user-asset-6210df.s3.amazonaws.com customer-stories-feed.github.com spotlights-feed.github.com objects-origin.githubusercontent.com *.githubusercontent.com; manifest-src 'self'; media-src github.com user-images.githubusercontent.com/ secured-user-images.githubusercontent.com/ private-user-images.githubusercontent.com github-production-user-asset-6210df.s3.amazonaws.com gist.github.com github.githubassets.com; script-src github.githubassets.com; style-src 'unsafe-inline' github.githubassets.com; upgrade-insecure-requests; worker-src github.githubassets.com github.com/assets-cdn/worker/ github.com/assets/ gist.github.com/assets-cdn/worker/
server: github.com
content-encoding: gzip
accept-ranges: bytes
set-cookie: _gh_sess=UjeiTgc76QDBLHHQhhnRBHt%2FO8ntptyhEzPUraDkhIjus2GGF5wm0SACHJIzcyQ%2BvQ5KWj9wcAmm9kvyRAIAza3I%2F9xgBhAVRWVBMqEqVnTVGxfP0AESYXuzqE8UE4QXsAVrOFHWSGyTkmXRPBc%2BAgZim%2B%2FXtwgxdLtdJOXRxDg0O1H22GP%2BI65xtuoO%2FjL2MDqulRu5PBBDNnZddJUuwVB53u4J8t4BpTUplfahcUcHYjOqvNHCBJzZGkniVpw%2FQt3aumG6xa5%2Bpex4sjBTSA%3D%3D--tu%2F5VDU%2FDv8pjIDN--PTPlwTvHdRa5qIkurZUapA%3D%3D; Path=/; HttpOnly; Secure; SameSite=Lax
set-cookie: _octo=GH1.1.2011492137.1766949348; Path=/; Domain=github.com; Expires=Mon, 28 Dec 2026 19:15:48 GMT; Secure; SameSite=Lax
set-cookie: logged_in=no; Path=/; Domain=github.com; Expires=Mon, 28 Dec 2026 19:15:48 GMT; HttpOnly; Secure; SameSite=Lax
x-github-request-id: A520:3FD896:5380711:64EB938:695181E4
GitHub · Where software is built
Search
Skip to content
Navigation Menu
{{ message }}
-
Notifications
You must be signed in to change notification settings - Fork 162
Issues
is:issue state:open
is:issue state:open
Search results
Authorization errors silently swallowed during list response filtering
bugSomething isn't workingSomething isn't workingStatus: Open.#3169 In stacklok/toolhive;Unknown MCP methods bypass authorization - intentional?
bugSomething isn't workingSomething isn't workinggoPull requests that update go codePull requests that update go codeStatus: Open.#3168 In stacklok/toolhive;CRDs need updates to accommodate authorizer-plugin support
enhancementNew feature or requestNew feature or requestkubernetesItems related to KubernetesItems related to KubernetesStatus: Open.#3157 In stacklok/toolhive;Implement K8SReporter for Kubernetes status updates
apiItems related to the APIItems related to the APIenhancementNew feature or requestNew feature or requestgoPull requests that update go codePull requests that update go codekubernetesItems related to KubernetesItems related to KubernetesvmcpVirtual MCP Server related issuesVirtual MCP Server related issuesStatus: Open.#3149 In stacklok/toolhive;Add StatusReporter abstraction for vMCP runtime (foundation)
apiItems related to the APIItems related to the APIenhancementNew feature or requestNew feature or requestgoPull requests that update go codePull requests that update go codevmcpVirtual MCP Server related issuesVirtual MCP Server related issuesStatus: Open.#3147 In stacklok/toolhive;OIDC configuration fields not properly applied (thvCABundlePath, protectedResourceAllowPrivateIP)
bugSomething isn't workingSomething isn't workingvmcpVirtual MCP Server related issuesVirtual MCP Server related issuesStatus: Open.#3142 In stacklok/toolhive;Add default resource limits to MCPRemoteProxy
enhancementNew feature or requestNew feature or requestgood first issueGood for newcomersGood for newcomerskubernetesItems related to KubernetesItems related to KubernetesStatus: Open.#3131 In stacklok/toolhive;Implement Token Exchange for Microsoft Entra
apiItems related to the APIItems related to the APIenhancementNew feature or requestNew feature or requestStatus: Open.#3128 In stacklok/toolhive;Simplify VMCP Configuration
kubernetesItems related to KubernetesItems related to KubernetesvmcpVirtual MCP Server related issuesVirtual MCP Server related issuesStatus: Open.#3125 In stacklok/toolhive;Support volume:// Named Volumes in CLI Mode
cliChanges that impact CLI functionalityChanges that impact CLI functionalityenhancementNew feature or requestNew feature or requestStatus: Open.#3121 In stacklok/toolhive;Generate client types package
enhancementNew feature or requestNew feature or requestgoPull requests that update go codePull requests that update go codekubernetesItems related to KubernetesItems related to KubernetesStatus: Open.#3120 In stacklok/toolhive;Composite tools: Numeric parameters converted to strings during template expansion
bugSomething isn't workingSomething isn't workingvmcpVirtual MCP Server related issuesVirtual MCP Server related issuesStatus: Open.#3113 In stacklok/toolhive;
You can’t perform that action at this time.