fix(security): rate limit web_fetch tool to mitigate DDoS via prompt injection (#19567)

Co-authored-by: gemini-code-assist[bot] <176961590+gemini-code-assist[bot]@users.noreply.github.com>
This commit is contained in:
matt korwel
2026-02-20 11:18:07 -06:00
committed by GitHub
parent c7e309efc9
commit 0f855fc0c4
9 changed files with 166 additions and 1 deletions

View File

@@ -208,6 +208,7 @@ export interface ParsedLog {
stdout?: string;
stderr?: string;
error?: string;
error_type?: string;
prompt_id?: string;
};
scopeMetrics?: {
@@ -1255,6 +1256,8 @@ export class TestRig {
success: boolean;
duration_ms: number;
prompt_id?: string;
error?: string;
error_type?: string;
};
}[] = [];
@@ -1272,6 +1275,8 @@ export class TestRig {
success: logData.attributes.success ?? false,
duration_ms: logData.attributes.duration_ms ?? 0,
prompt_id: logData.attributes.prompt_id,
error: logData.attributes.error,
error_type: logData.attributes.error_type,
},
});
}