JuliusBrussee/caveman · error

vertex request path %q does not name a publisher, model, and

Error message

vertex request path %q does not name a publisher, model, and method

What it means

ResolveUpstreamURL could not split the client's /vertex request path into the three segments the aiplatform upstream contract requires: publisher, model, and method (expected shape .../publishers/{pub}/models/{model}:{method}). It fires when the path after the /vertex prefix is truncated or malformed, before any allowlist, SSRF, or URL-resolution logic runs.

Source

Thrown at proxy/providers/vertex/routing.go:35

// the families this gateway prices/supports keeps a client from invoking an
// unpriced partner model whose cost the catalog does not cover.
var defaultPublishers = []string{"google", "anthropic"}

// defaultModelPrefixes is the built-in model-id allowlist, matched as prefixes
// so versioned ids (gemini-2.5-pro, claude-sonnet-4-5@20250929) are covered.
// Operators override it with CAVE_VERTEX_MODEL_ALLOWLIST.
var defaultModelPrefixes = []string{"gemini-", "claude-"}

// ResolveUpstreamURL validates the Vertex request shape (publisher + model on
// the allowlist), enforces SSRF/host constraints against the aiplatform
// endpoint, and resolves the upstream URL. The /vertex prefix is stripped so the
// upstream path is the native aiplatform path
// (/v1/projects/{p}/locations/{l}/publishers/{pub}/models/{model}:{method}). The
// query string (e.g. ?alt=sse) is preserved unchanged — byte-safe passthrough.
func (a Adapter) ResolveUpstreamURL(ctx context.Context, req *http.Request, route providers.RouteContext) (*url.URL, error) {
	publisher, model, method := parsePredictPath(req.URL.Path)
	if publisher == "" || model == "" || method == "" {
		return nil, fmt.Errorf("vertex request path %q does not name a publisher, model, and method", req.URL.Path)
	}
	if !methodAllowed(publisher, method) {
		return nil, fmt.Errorf("vertex method %q is not allowed for publisher %q", method, publisher)
	}
	if !publisherAllowed(publisher) {
		return nil, fmt.Errorf("vertex publisher %q is not on the allowlist", publisher)
	}
	if !modelAllowed(model) {
		return nil, fmt.Errorf("vertex model %q is not on the allowlist", model)
	}

	baseURL := a.BaseURL
	if route.BaseURL != "" {
		baseURL = route.BaseURL
	}
	base, err := url.Parse(baseURL)
	if err != nil {
		return nil, fmt.Errorf("vertex base url invalid: %w", err)

View on GitHub (pinned to 766dce6b13)

Solutions

  1. Fix the request URL so it contains publishers/{publisher}/models/{model}:{method} under the /vertex prefix
  2. Check the client/proxy configuration that built the path for a missing model or method segment
Defensive patterns

Strategy: validation

When it happens

Trigger: Thrown at proxy/providers/vertex/routing.go:35 when the library encounters an invalid state.

Common situations: See trigger scenarios.


AI-assisted analysis of JuliusBrussee/caveman@766dce6b13 (2026-08-18). Data as JSON: /api/errors/90b70c1a207b0465. Report an issue: GitHub.