systemprompt_security/authz/types/
decision.rs1use std::borrow::Cow;
7use std::fmt;
8
9use serde::{Deserialize, Serialize};
10use systemprompt_identifiers::{McpToolName, PolicyId, SecretPatternId, UserId};
11use thiserror::Error;
12
13use super::entity_ref::EntityRef;
14use super::kinds::RuleType;
15use crate::policy::types::{AccessScope, RateLimitWindow, SecretLocation};
16
17#[derive(Debug, Clone, PartialEq, Eq, Serialize, Deserialize)]
21#[serde(tag = "kind", rename_all = "snake_case")]
22pub enum MatchedBy {
23 UserAllow,
24 RoleAllow {
25 role: String,
26 },
27 AttributeAllow {
28 rule_type: RuleType,
29 value: String,
30 },
31 DefaultIncluded,
32 PolicyAllow {
33 policy_id: PolicyId,
34 detail: Cow<'static, str>,
35 },
36}
37
38#[derive(Debug, Clone, PartialEq, Eq, Serialize, Deserialize, Error)]
47#[serde(tag = "kind", rename_all = "snake_case")]
48pub enum DenyReason {
49 #[error("user {user_id} explicitly denied for {entity}")]
50 UserDeny {
51 entity: EntityRef,
52 user_id: UserId,
53 #[serde(default, skip_serializing_if = "Option::is_none")]
54 justification: Option<String>,
55 },
56 #[error("role {role} denied for {entity}")]
57 RoleDeny {
58 entity: EntityRef,
59 role: String,
60 #[serde(default, skip_serializing_if = "Option::is_none")]
61 justification: Option<String>,
62 },
63 #[error("{rule_type} {value} denied for {entity}")]
64 AttributeDeny {
65 entity: EntityRef,
66 rule_type: RuleType,
67 value: String,
68 #[serde(default, skip_serializing_if = "Option::is_none")]
69 justification: Option<String>,
70 },
71 #[error(
72 "{entity}: not assigned to user {user_id} with roles {roles:?} (no allow rule; \
73 default_included = false). Add an allow rule in services/access-control/roles.yaml."
74 )]
75 NotAssigned {
76 entity: EntityRef,
77 user_id: UserId,
78 roles: Vec<String>,
79 },
80 #[error(
81 "{entity}: unknown to access control. Add an entity row via the publish pipeline or \
82 roles.yaml."
83 )]
84 UnknownEntity { entity: EntityRef },
85 #[error("authz hook unavailable for policy {policy}: {detail}")]
90 HookUnavailable {
91 policy: String,
92 #[serde(default)]
93 detail: String,
94 },
95 #[error("{detail}")]
96 PolicyViolation {
97 policy: String,
98 detail: Cow<'static, str>,
99 },
100 #[error("secret detected: {pattern_name} at {location}")]
101 SecretLeak {
102 pattern_id: SecretPatternId,
103 pattern_name: Cow<'static, str>,
104 location: SecretLocation,
105 },
106 #[error("tool {tool} requires {required} scope")]
107 ScopeViolation {
108 tool: McpToolName,
109 required: AccessScope,
110 },
111 #[error("tool {tool} blocked by list {list_id}")]
112 ToolBlocked { tool: McpToolName, list_id: String },
113 #[error("rate limit {window:?} exceeded; retry after {retry_after_ms}ms")]
114 RateLimitExceeded {
115 window: RateLimitWindow,
116 retry_after_ms: u64,
117 },
118}
119
120#[derive(Debug, Clone, PartialEq, Eq, Serialize, Deserialize, Error)]
128#[serde(tag = "kind", rename_all = "snake_case")]
129pub enum PendingReason {
130 #[error("tool {tool} requires human approval (matched {rule})")]
131 ApprovalRequired { tool: McpToolName, rule: String },
132}
133
134#[derive(Debug, Clone, PartialEq, Eq, Serialize, Deserialize)]
147#[serde(tag = "decision", rename_all = "lowercase")]
148pub enum Decision {
149 Allow { matched_by: MatchedBy },
150 Warn { reason: DenyReason },
151 Deny { reason: DenyReason },
152 Pending { reason: PendingReason },
153}
154
155impl Decision {
156 #[must_use]
157 pub const fn tag(&self) -> DecisionTag {
158 match self {
159 Self::Allow { .. } => DecisionTag::Allow,
160 Self::Warn { .. } => DecisionTag::Warn,
161 Self::Deny { .. } => DecisionTag::Deny,
162 Self::Pending { .. } => DecisionTag::Pending,
163 }
164 }
165
166 #[must_use]
170 pub const fn permits(&self) -> bool {
171 matches!(self, Self::Allow { .. } | Self::Warn { .. })
172 }
173}
174
175#[derive(Debug, Clone, Copy, PartialEq, Eq, Hash, Serialize, Deserialize, sqlx::Type)]
182#[sqlx(type_name = "TEXT", rename_all = "lowercase")]
183#[serde(rename_all = "lowercase")]
184pub enum DecisionTag {
185 Allow,
186 Warn,
187 Deny,
188 Pending,
189}
190
191impl DecisionTag {
192 #[must_use]
193 pub const fn as_str(self) -> &'static str {
194 match self {
195 Self::Allow => "allow",
196 Self::Warn => "warn",
197 Self::Deny => "deny",
198 Self::Pending => "pending",
199 }
200 }
201}
202
203impl fmt::Display for DecisionTag {
204 fn fmt(&self, f: &mut fmt::Formatter<'_>) -> fmt::Result {
205 f.write_str(self.as_str())
206 }
207}
208
209impl From<&super::request::AuthzDecision> for DecisionTag {
210 fn from(d: &super::request::AuthzDecision) -> Self {
211 match d {
212 super::request::AuthzDecision::Allow => Self::Allow,
213 super::request::AuthzDecision::Deny { .. } => Self::Deny,
214 }
215 }
216}