feat(extensions): add authenticated Xquik MCP integration - #1279
Open
kriptoburak wants to merge 1 commit into
Open
feat(extensions): add authenticated Xquik MCP integration#1279kriptoburak wants to merge 1 commit into
kriptoburak wants to merge 1 commit into
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Allow bundled Streamable HTTP integrations to authenticate through OpenFang's credential resolver. Add Xquik as the first remote HTTP integration.
The template model already supported HTTP transports. The generated MCP config always discarded authentication headers, so any authenticated remote template connected without credentials. An unauthenticated request to the Xquik MCP endpoint reproduces this as
401 Unauthorized.Changes
Testing
cargo fmt --all -- --checkcargo clippy -p openfang-extensions --all-targets -- -D warningscargo test -p openfang-extensions --lib(55 passed)cargo check -p openfang-kernel --libcargo test --workspacepasses200. The MCP endpoint returns the expected401without credentials. No real API key or production request was used.Security
Header templates contain only a header name, static prefix, and credential key. OpenFang resolves the value at runtime and keeps the existing HTTP header parser as the validation boundary.
Xquik is an independent third-party service. Not affiliated with X Corp. "Twitter" and "X" are trademarks of X Corp.