Skip to content

fix: keep mountpoint credentials out of sandbox commands#3429

Open
seratch wants to merge 2 commits into
mainfrom
fix/redact-mountpoint-credentials
Open

fix: keep mountpoint credentials out of sandbox commands#3429
seratch wants to merge 2 commits into
mainfrom
fix/redact-mountpoint-credentials

Conversation

@seratch
Copy link
Copy Markdown
Member

@seratch seratch commented May 16, 2026

This pull request fixes mountpoint-backed S3/GCS mounts so temporary AWS credentials are no longer embedded directly in the shell command used to invoke mount-s3.

The mountpoint pattern now writes credentials to an owner-only runtime env file under the sandbox workspace, sources that file from a credential-free command, redirects mount output away from exec instrumentation, and redacts known credential values from mount failure stderr before raising MountCommandError. The sandbox mount tests now cover command construction, credential file writes, failure redaction, and audit-event payloads so access keys, secret keys, and session tokens do not leak through command metadata or error context.

ref: #3421

Copy link
Copy Markdown

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 1cfbc4bd8a

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread src/agents/sandbox/entries/mounts/patterns.py
@seratch seratch force-pushed the fix/redact-mountpoint-credentials branch from fd1b98b to 81cef78 Compare May 16, 2026 02:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant