Repository navigation
v20260920a
REST + ConnectRPC ported from Pocket ID.
Changelog
- ef6113b: Merge pull request #5 from riipandi/refactor-connectrpc (@riipandi)
- 0e6d2d0: chore(yaak): complete the request collection against the endpoint reference (@riipandi)
- db88c5b: chore(yaak): generate a unique identity for the create-user request (@riipandi)
- 7da3d63: chore(yaak): generate fixture values with the faker plugin (@riipandi)
- 723c1d3: chore(yaak): keep credentials out of the tracked workspace (@riipandi)
- 310e7d2: chore(yaak): read the account identity from the environment (@riipandi)
- a0fea7c: chore(yaak): read the sign-in credentials from the environment (@riipandi)
- b512a72: chore(yaak): reorganize the workspace around the endpoint reference (@riipandi)
- a23ddcd: chore(yaak): retire stale requests and strip committed credentials (@riipandi)
- 539e7ae: chore: add ConnectRPC refactor remediation plan (@riipandi)
- e3f7524: chore: enable http2 nginx (@riipandi)
- 9362786: chore: exclude gen directory from git (@riipandi)
- 8e515d2: chore: exclude gen directory from git (@riipandi)
- c775140: chore: inherit auth Yaak requests (@riipandi)
- 4a095a6: chore: reformat yaak request body (@riipandi)
- ee4e790: chore: remove generated files (@riipandi)
- fdffde2: chore: update AGENTS.md (@riipandi)
- b551c7a: chore: update Yaak API requests parameter (@riipandi)
- 96dc265: chore: update Yaak folders (@riipandi)
- d6ea484: chore: update Yaak requests (@riipandi)
- cf6db7f: chore: update connectrpc refactor plan (@riipandi)
- f887f28: chore: update docker compose stack (@riipandi)
- 2a1a133: chore: update docker compose stack (@riipandi)
- 8663dc2: chore: update gitignore (@riipandi)
- fe5baca: ci: fix cleanup gh actions workflow (@riipandi)
- c13aea7: ci: fix container build gh actions workflow (@riipandi)
- 15b2f0c: ci: fix container build gh actions workflow (@riipandi)
- a255397: docs(remediation): correct the phase 06 record and close the phase files (@riipandi)
- dfaeac7: docs(remediation): record the phase 01 decisions and gate (@riipandi)
- 7cd8aae: docs(remediation): record the phase 02 results (@riipandi)
- 90b4423: docs(remediation): record the phase 03 results (@riipandi)
- 89c1d89: docs(remediation): record the phase 04 results (@riipandi)
- de956d7: docs(remediation): record the phase 05 and 06 outcomes (@riipandi)
- 501fc5b: docs(remediation): record the working local development credential (@riipandi)
- ce2148f: docs(rpc): close the connectrpc remediation (@riipandi)
- 7393b1e: docs(rpc): correct the HTTP method for connect procedures (@riipandi)
- 1371953: docs(rpc): correct the connectrpc plan record (@riipandi)
- 6635cb0: docs(rpc): document the remaining connect procedures (@riipandi)
- d0a64f0: docs(rpc): mark the connectrpc refactor plan complete (@riipandi)
- 283f7b9: feat(auth): accept password and remember on sign-in (@riipandi)
- d9baca8: feat(config): resolve every authentication lifetime from the environment (@riipandi)
- bd71558: feat(rpc): accept X-API-KEY on the admin application API (@riipandi)
- 730ac0f: feat(rpc): cut apis, appconfig, audit logs, and custom claims over to ConnectRPC (@riipandi)
- bc58675: feat(rpc): cut device approval and version metadata over to ConnectRPC (@riipandi)
- 3a81924: feat(rpc): cut oidc clients, consents, and scim providers over to ConnectRPC (@riipandi)
- 4fbb1df: feat(rpc): cut signup, MFA, one-time access, and email verification over to ConnectRPC (@riipandi)
- 4d96c5d: feat(rpc): cut users, groups, and account over to ConnectRPC (@riipandi)
- 14f0f8c: feat(rpc): cut webhooks over to ConnectRPC (@riipandi)
- 4e3a092: feat(rpc): expose version and api-key services over /rpc (@riipandi)
- c6650e9: feat(rpc): freeze protobuf contracts and code generation (@riipandi)
- 308f7f4: feat(rpc): issue internal bearer tokens and ship the auth worker (@riipandi)
- 25c5e60: feat(transport): mount ConnectRPC /rpc surface with smoke HealthService (@riipandi)
- a518f23: fix(api-client): drop the removed device-approval REST calls (@riipandi)
- a6deb0b: fix(build): generate the ConnectRPC code in every build path (@riipandi)
- 1477550: fix(build): repair the generated-file ignore rules and the codegen policy (@riipandi)
- 23b2bcb: fix(deploy): allow the rpc headers in the nginx cors layer (@riipandi)
- f125111: fix(rpc): align the served transports with the documented contract (@riipandi)
- 40e4ae6: fix(rpc): allow the rpc credential headers in cors (@riipandi)
- 7afb033: fix(rpc): answer an unknown user with not_found on the consent listing (@riipandi)
- 689b7cd: fix(rpc): answer rate limits with a connect error (@riipandi)
- f5eb5ee: fix(rpc): normalize the rate limit key so budgets apply (@riipandi)
- a0e633b: fix(rpc): restrict the machine credential to the documented surface (@riipandi)
- fbfc60b: fix(rpc): serve snake_case field names on every json transport (@riipandi)
- 19112f3: fix(rpc): serve the public bootstrap configuration anonymously (@riipandi)
- a26f270: fix(security): satisfy the gosec rules without suppression (@riipandi)
- 1ed9e32: fix(session): answer an unparseable session id with not_found (@riipandi)
- a378a95: fix(validate): report the real validation failure instead of malformed JSON (@riipandi)
- 9fb4e80: fix(yaak): generate the api key name so the request can repeat (@riipandi)
- 83ad2ce: fix(yaak): send the page window in the shape each procedure declares (@riipandi)
- 5f34cc4: refactor(auth): drop cookies and issue every credential in the body (@riipandi)
- 638f301: refactor(config): drop the dead session_duration setting (@riipandi)
- 1f6b99f: refactor(config): keep the smtp relay settings environment-only (@riipandi)
- 9405f80: refactor(identity): drop the empty package files (@riipandi)
- 4845392: refactor(oidc): build every redirect target from its parts (@riipandi)
- 6ca011c: refactor(rpc): align the response metadata and list shape with REST (@riipandi)
- 4210c75: refactor(rpc): drop the self-profile duplicates from AccountService (@riipandi)
- 6c2c049: refactor(rpc): drop the unused rpc middleware (@riipandi)
- 2106ad5: refactor(rpc): retire the remaining internal REST surface (@riipandi)
- daa8eb9: refactor(rpc): spell the api service procedures with the API initialism (@riipandi)
- 76ee220: refactor(rpc): state the recovery contract and use rpcerr for it (@riipandi)
- 6c68ee5: refactor(rpc): use ofetch in the auth worker and untrack the contract stamp (@riipandi)
- e6416a0: refactor: change proto file generated output (@riipandi)
- 5de068a: refactor: delete the no-op plumbing the cutover left behind (@riipandi)
- ff32a16: style: format the device login SDK module (@riipandi)
- 6a3698e: test(rpc): pin the connect service and retained-rest route inventories (@riipandi)