Skip to content

Test organization settings MFA and ordinary access - #2120

Merged
RhysSullivan merged 2 commits into
security/org-page-mfafrom
security/org-page-mfa-tests
Sep 25, 2026
Merged

RhysSullivan merged 2 commits into
security/org-page-mfafrom
security/org-page-mfa-tests

Conversation

@RhysSullivan

@RhysSullivan RhysSullivan commented Sep 25, 2026 •

Copy link
Copy Markdown
Collaborator

Test organization-settings MFA through signed proofs, HTTP endpoints, and the browser using the published WorkOS MFA emulator. Cover cookie security, session binding, replay rejection, rate limits, locked settings, role restrictions, and continued API-key, OAuth, MCP and workspace access.

Update existing settings fixtures to verify before making protected changes, retaining their original permission, deletion-retry, and seat-limit assertions.

Full unit suite passes, including 504 cloud tests; typecheck and lint pass. All 18 targeted end-to-end scenarios pass, including browser enrollment, organization settings, backend email lookup, API keys, OAuth, MCP, integration creation, membership isolation, seat limits, and seat billing reconciliation. Format and e2e typecheck pass.

Verified that the production AuthKit environment-wide MFA requirement is disabled; this change leaves that policy untouched. All 43 checks on the combined stack pass.

@RhysSullivan
RhysSullivan added this pull request to stack #2121 September 25, 2026 03:54
@cloudflare-workers-and-pages

cloudflare-workers-and-pages Bot commented Sep 25, 2026 •

Copy link
Copy Markdown

Deploying with  Cloudflare Workers  Cloudflare Workers

The latest updates on your project. Learn more about integrating Git with Workers.

Status Name Latest Commit Updated (UTC)
✅ Deployment successful!
View logs
executor-cloud 7353cd8 Sep 25 2026, 04:03 AM

@cloudflare-workers-and-pages

cloudflare-workers-and-pages Bot commented Sep 25, 2026 •

Copy link
Copy Markdown

Deploying with  Cloudflare Workers  Cloudflare Workers

The latest updates on your project. Learn more about integrating Git with Workers.

Status Name Latest Commit Preview URL Updated (UTC)
✅ Deployment successful!
View logs
executor-marketing 7353cd8 Commit Preview URL

Branch Preview URL
Sep 25 2026, 04:01 AM

@github-actions

github-actions Bot commented Sep 25, 2026 •

Copy link
Copy Markdown
Contributor

Cloudflare preview

Torn down — the PR is closed.

@pkg-pr-new

pkg-pr-new Bot commented Sep 25, 2026 •

Copy link
Copy Markdown

Open in StackBlitz

@executor-js/cli

npm i https://pkg.pr.new/@executor-js/cli@2120

@executor-js/config

npm i https://pkg.pr.new/@executor-js/config@2120

@executor-js/execution

npm i https://pkg.pr.new/@executor-js/execution@2120

@executor-js/sdk

npm i https://pkg.pr.new/@executor-js/sdk@2120

@executor-js/codemode-core

npm i https://pkg.pr.new/@executor-js/codemode-core@2120

@executor-js/runtime-quickjs

npm i https://pkg.pr.new/@executor-js/runtime-quickjs@2120

@executor-js/plugin-file-secrets

npm i https://pkg.pr.new/@executor-js/plugin-file-secrets@2120

@executor-js/plugin-graphql

npm i https://pkg.pr.new/@executor-js/plugin-graphql@2120

@executor-js/plugin-keychain

npm i https://pkg.pr.new/@executor-js/plugin-keychain@2120

@executor-js/plugin-mcp

npm i https://pkg.pr.new/@executor-js/plugin-mcp@2120

@executor-js/plugin-onepassword

npm i https://pkg.pr.new/@executor-js/plugin-onepassword@2120

@executor-js/plugin-openapi

npm i https://pkg.pr.new/@executor-js/plugin-openapi@2120

executor

npm i https://pkg.pr.new/executor@2120

commit: 7353cd8

@RhysSullivan
RhysSullivan marked this pull request as ready for review September 25, 2026 04:14
@RhysSullivan
RhysSullivan merged commit a0b0d91 into main Sep 25, 2026
44 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant