-
Notifications
You must be signed in to change notification settings - Fork 29
Pull requests: GenAI-Security-Project/finbot-ctf
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
feat: Add CD001 - OrchestratorAgent Unit Tests (CD001, #27)
#461
opened Apr 4, 2026 by
steadhac
Loading…
Fix(finstripe): validate vendor_account against registered bank account before transfer
#458
opened Apr 3, 2026 by
Jean-Regis-M
Loading…
10 tasks done
Fix(chat): resolve response_complete event/DB inconsistency on attachments
#457
opened Apr 3, 2026 by
Jean-Regis-M
Loading…
6 tasks done
feat: Add CHAT-ASSIST — VendorChatAssistant & CoPilotAssistant Unit Tests for for Chat Streaming Layer Summary
#456
opened Apr 3, 2026 by
steadhac
Loading…
Fix(chat): resolve None vendor_id silently dispatched to orchestrator
#455
opened Apr 2, 2026 by
Jean-Regis-M
Loading…
7 tasks done
Fix(findrive): reject empty/whitespace content in upload_file before DB write
#454
opened Apr 2, 2026 by
Jean-Regis-M
Loading…
8 tasks done
fix:Make vendor CTF sidecar navigation fully clickable
#453
opened Apr 2, 2026 by
nitinawari
Loading…
Fix(chat): resolve stale system-prompt date with explicit per-call evaluation
#451
opened Apr 1, 2026 by
Jean-Regis-M
Loading…
4 tasks done
Fix(systemutils): resolve missing filepath allowlist validation in read_config
#450
opened Apr 1, 2026 by
Jean-Regis-M
Loading…
7 tasks done
Fix(findrive): resolve missing negative-limit guard in search_files
#449
opened Apr 1, 2026 by
Jean-Regis-M
Loading…
5 tasks done
Fix(chat): resolve missing None-guard in _call_start_workflow crashing on both fields absent
#448
opened Apr 1, 2026 by
Jean-Regis-M
Loading…
10 tasks done
Fix(chat): resolve CAPABILITIES/RULES tool-name contradiction with minimal prompt patch
#447
opened Mar 31, 2026 by
Jean-Regis-M
Loading…
Fix(finstripe): resolve missing cross-vendor ownership guard in create_transfer
#446
opened Mar 31, 2026 by
Jean-Regis-M
Loading…
Fix(finstripe): validate invoice ownership against vendor_id before transfer
#445
opened Mar 31, 2026 by
Jean-Regis-M
Loading…
6 tasks done
FIX: Handle None description in _call_start_workflow
#441
opened Mar 31, 2026 by
BhagyasriUddandam
Loading…
DOC: Fix broken markdown link formatting for .env.example
#440
opened Mar 31, 2026 by
BhagyasriUddandam
Loading…
Fix(chat): resolve pre-tool text accumulation in stream_response
#439
opened Mar 30, 2026 by
Jean-Regis-M
Loading…
Fix(finmail): resolve unbounded sender_name storage with length guard
#438
opened Mar 30, 2026 by
Jean-Regis-M
Loading…
5 tasks done
Fix(finmail): reject malformed addresses before routing cascade (MCP-FM-ADDR-002)
#437
opened Mar 30, 2026 by
Jean-Regis-M
Loading…
Fix(findrive): reject empty/whitespace filenames before DB write in upload_file
#436
opened Mar 30, 2026 by
Jean-Regis-M
Loading…
Fix(findrive): resolve path traversal validation gap in upload_file
#435
opened Mar 30, 2026 by
Jean-Regis-M
Loading…
Fix: replace unused loop variable
round_idx with _ in stream_response
#434
opened Mar 29, 2026 by
arohi06
Loading…
Fix(chat): resolve empty-string TIN bypass masking with is not None guard
#433
opened Mar 29, 2026 by
Jean-Regis-M
Loading…
Fix(finstripe): reject zero-and-negative amount transfers with pre-DB guard
#432
opened Mar 29, 2026 by
Jean-Regis-M
Loading…
Fix(finstripe): reject vendor portal session with no vendor identity before transfer
#431
opened Mar 29, 2026 by
Jean-Regis-M
Loading…
Previous Next
ProTip!
Type g i on any issue or pull request to go back to the issue listing page.