Skip to content

Core

Restore Agent checkpoint access

0.7.2

Preserve Gateway conversation storage access with restricted tenant Core roles.

Core 0.7.2

Tenant migrations can now grant the configured Gateway database login access to its checkpoint, usage-delivery, and input-deadline tables. This fixes Agent requests failing with a checkpoint permission error after a tenant is provisioned with separate Core runtime and migration roles. The grant does not expose other tenant tables or App schemas.

Before migrating tenants, set AGENT_CHECKPOINT_DATABASE_ROLE in Core and its private database operator to the PostgreSQL login used by Gateway's AGENT_CHECKPOINT_DSN_TEMPLATE. The login must already exist. Refresh both configuration caches, then run tenant migrations through the private operator. Leave the setting empty only when Gateway storage access is managed separately. Existing Gateway credentials, SDK/App versions, and frontend bundles are unchanged.