Release
0.7 — A2A Auth Layer
Objective
A2A delegation narrows scopes and resources at each hop.
Problem
- Delegation preserves full scopes
- No attenuation
Fix
- Scope narrowing at each delegation
- Resource restriction
- Enforce in token issuance
- Validate in middleware
Files
internal/oauth/a2a_exchange.go
internal/api/a2a_handlers.go
Acceptance Criteria
Release
0.7 — A2A Auth Layer
Objective
A2A delegation narrows scopes and resources at each hop.
Problem
Fix
Files
internal/oauth/a2a_exchange.gointernal/api/a2a_handlers.goAcceptance Criteria