Skip to content

MSC4140: manage delayed events through an authenticated client - #924

Merged
anoadragon453 merged 1 commit into
matrix-org:mainfrom
barodeur:msc4140-authenticated-management
Oct 8, 2026
Merged

anoadragon453 merged 1 commit into
matrix-org:mainfrom
barodeur:msc4140-authenticated-management

Conversation

@barodeur

@barodeur barodeur commented Sep 23, 2026 •

Copy link
Copy Markdown
Contributor

Note

This PR can be merged before element-hq/synapse#20257

This is a sister PR to element-hq/synapse#20257

Delayed Event (MSC4140) management endpoint should be authenticated.

This PR modifies the existing test to send authenticated requests.

Signed-off-by: Paul Chobert paul@chobert.fr

MSC4140 describes the delayed event management endpoints
(POST /delayed_events/{delay_id}/{cancel,restart,send}) as authenticated,
and scopes them to the requesting user. Make every management call on
a real delay ID, and the negative tests on an unknown delay ID, go
through the user who scheduled the event instead of the unauthenticated
client.

The only unauthenticated call left is the one asserting that the bulk
GET answers 401 without a token.

Signed-off-by: Paul Chobert <paul@chobert.fr>
@barodeur
barodeur force-pushed the msc4140-authenticated-management branch from 9d1df56 to e07d00a Compare October 6, 2026 13:54
@barodeur
barodeur marked this pull request as ready for review October 8, 2026 09:28
@barodeur
barodeur requested review from a team as code owners October 8, 2026 09:28
@barodeur
barodeur requested review from erikjohnston and removed request for a team October 8, 2026 09:28

@anoadragon453 anoadragon453 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This updates the tests to match the merged version of MSC4140.

Thank you!

@anoadragon453
anoadragon453 merged commit 7bcf210 into matrix-org:main Oct 8, 2026
6 checks passed
@anoadragon453
anoadragon453 removed request for a team and erikjohnston October 8, 2026 17:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants