f4eafd9a0fa92e42c78eae24f48b4c11fe240579
Roles from the id_token's rolesClaim are now diffed against stored system roles on each OIDC login. Missing roles are added, revoked roles are removed. Group memberships (manually assigned) are never touched. This propagates scope revocations from the OIDC provider on next user login. Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
Description
Observability server for Cameleer agents
Languages
Java
61.6%
TypeScript
30.2%
HTML
5.2%
CSS
2.9%