Skip to content

docs(automation): the flows guide routes an http node's outbound credential to a connector's credentialRef, and replaces its secret-bearing webhook-url example (the docs half of #20590) #20655

Description

@objectstack-fleet

This card carries the content/docs half of #20590. Filing gate: ④ a coordination node, a per-layer child in the #20618 pattern.

Why this is owed

Triage's direction on #20590 (5891721503) is A, taken whole. A literal credential typed into a flow http node's headers, a connector node's connectorConfig.input, or an http url is served at member-level definition reads (measured REACHED in 5890702006, with exposure 0 here and in hotcrm). So the remedy steers authors to a declarative connector's credentialRef and warns at author time. ⛔ Nothing is withheld. Clause-②: no for the guidance faces.

The deliverable (triage's text, point 1)

  • content/docs/automation/flows.mdx, the http section, says that a flow definition is served to every member who can read flows, and routes an outbound credential to a declarative connector's credentialRef. That page already links credentialRef only from the connector paragraph.
  • Its secret-bearing incoming-webhook url example (about :266 on main) is replaced by the connector route, or says plainly that the url is served. That is position 6's guidance half.
  • content/docs/automation/connectors.mdx's rest provider request action accepts headers in its input with no word about credentials. One line there, pointing to auth.credentialRef, closes the same gap.

Dedupe

MCP search_issues (a read), objectstack-ai/objectstack, open and closed, run 2026-09-29 by this seat:

Dedupe words: flows.mdx http credential · webhook url secret docs example

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

area:accessPermissions that actually hold — RLS/FLS, sharing model, write-path guardsdocumentationImprovements or additions to documentationdomain:devxpriority:p1High: required for production / M2

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions