a18f96912d
interfaces - refactor: split UserRepository into AuthUserRepository and AdminUserRepository capabilities - refactor: split SessionRepository into AuthSessionRepository and repository-owned CLI/admin methods - refactor: replace generic Repository Update/Delete with operation-specific params and ownership predicates - refactor: replace CredentialRepository generic CRUD with passkey-specific methods - refactor: replace FileRepository generic Create/Update/Delete with UploadedFileParams, DirectoryParams, and owned soft-delete - refactor: remove repository fields from WebApp struct; repositories are now composition-time wiring only - feat: add domain error kinds ErrParentNotFound, ErrParentNotDir, ErrDirectoryNotEmpty, ErrInvalidMove - feat: add CredentialTypeAppPasskey constant - feat: add testutil.SetUserAdmin for test fixture setup that bypasses production service ports - test: add architecture test banning GORM Save in repository package - test: add capability interface contract tests ensuring each service receives the minimal interface - test: add blockingStorage helper for concurrent promotion tests - test: add preserved DSN parameter test for sqliteImmediateDSN - docs: update architecture decisions with repository write rules and capability separation - docs: update roadmap to clarify atomic single-use refresh sessions - docs: add -race test target to development docs
22 lines
759 B
Go
22 lines
759 B
Go
package model
|
|
|
|
import (
|
|
"time"
|
|
)
|
|
|
|
// CredentialTypeAppPasskey identifies an application passkey credential.
|
|
const CredentialTypeAppPasskey = "app_passkey"
|
|
|
|
// Credential represents an alternative authentication credential for a user.
|
|
// The primary password is stored on the User model; additional credentials
|
|
// (app passkeys, WebAuthn, OAuth) are stored here with a type discriminator.
|
|
type Credential struct {
|
|
ID string `gorm:"primaryKey;type:varchar(36)"`
|
|
UserID string `gorm:"index;type:varchar(36);not null"`
|
|
Type string `gorm:"index;type:varchar(32);not null"`
|
|
Label string `gorm:"type:varchar(128)"`
|
|
SecretHash string `gorm:"uniqueIndex;type:varchar(255);not null" json:"-"`
|
|
LastUsedAt *time.Time
|
|
CreatedAt time.Time
|
|
}
|