Skip to content

SEP: ui/message user consent #60

@idosal

Description

@idosal

The ui/message UI action allows apps to send messages on behalf of the user, which may be a sensitive operation.

While the ability to inject context from an MCP server already exists, this (potentially) new attack surface may warrant user consent.

Raised by @PederHP (see SEP PR) and @ochafik.

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions