slack_live: real slack_sdk poster. slack_listener: Socket Mode inbound; trust boundary = app-token auth + an explicit owner allowlist on the sender (fail-closed, rejects all if AGENT_TEAM_SLACK_OWNER_IDS unset) + the open-status CAS as anti-replay. Closes the AUTHZ-01 missing-sender-authz finding from the security review. |
||
|---|---|---|
| .. | ||
| __init__.py | ||
| base.py | ||
| claude_code_adapter.py | ||
| github_adapter.py | ||
| slack_adapter.py | ||
| slack_listener.py | ||
| slack_live.py | ||