Skip to content

[0.5.0] Enterprise Access Control — release tracking #316

@erichare

Description

@erichare

AI Workbench 0.5.0 — Enterprise Access Control

Tracking issue for the 0.5.0 release. Turns the access-control story from prototype + coarse roles into enforced, fine-grained, audited — safe for on-prem/self-hosted enterprises to run multi-team retrieval workloads where "who can see what" actually holds at the data plane.

Milestone: 0.5.0 — Enterprise Access Control · ~1 quarter · open to larger rework · full quality bar (cross-runtime conformance · 80%+ coverage on new code · Playwright E2E · docs + what's-new + migration notes).

Key finding: two of three must-haves are partially built — the policy engine + REST enforcement exist (gaps: chunk tagging, agent retrieval, admin UI); client-side MCP tool-calling shipped in 0.4.0 (remaining: hardening + scoping). The release is correctness + integration + one new scope axis, not greenfield.

Feature ① — RLAC enforcement (flagship) epic:rlac

Feature ② — Fine-grained auth scopes epic:auth-scopes

Feature ③ — Agent MCP tool-calling epic:mcp-tools

Release

Stretch (pull in if the quarter allows, in order) stretch

Suggested sequencing

Cross-cutting guardrails

Metadata

Metadata

Assignees

No one assigned

    Labels

    0.5.0AI Workbench 0.5.0 — Enterprise Access Control release

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions