- .env.example: полный шаблон, защита секретов - .gitignore: явное исключение .env.* и секретов - layout.tsx: XSS — заменён dangerouslySetInnerHTML на next/script для SW - ESLint: no-console error (allow warn/error), ignore scripts/ - scripts/remove-console-logs.js: очистка console.log без glob - backend/routes/modules: README с планом рефакторинга крупных файлов - SECURITY.md: гид по секретам, XSS, CORS, auth, линту - .husky/pre-commit: запуск npm run lint + прочие правки приложения и бэкенда Co-authored-by: Cursor <cursoragent@cursor.com>
26 lines
1.0 KiB
Python
26 lines
1.0 KiB
Python
from datetime import datetime, date
|
|
from sqlalchemy import String
|
|
from sqlalchemy.orm import Mapped, mapped_column
|
|
|
|
from app.db.base import Base
|
|
from app.models.common import TimestampMixin, uuid4_str
|
|
|
|
|
|
class User(Base, TimestampMixin):
|
|
"""Local projection of a user from ASU TK-IB.
|
|
|
|
In production, user data should be mastered by IB, and KLG stores
|
|
minimal attributes for caching and ownership logic.
|
|
"""
|
|
|
|
__tablename__ = "users"
|
|
|
|
id: Mapped[str] = mapped_column(String(36), primary_key=True, default=uuid4_str)
|
|
external_subject: Mapped[str] = mapped_column(String(255), unique=True, index=True, nullable=False)
|
|
display_name: Mapped[str] = mapped_column(String(255), nullable=False)
|
|
email: Mapped[str | None] = mapped_column(String(255), nullable=True)
|
|
role: Mapped[str] = mapped_column(
|
|
String(64), nullable=False, doc="admin|authority_inspector|operator_user|operator_manager|mro_user|mro_manager"
|
|
)
|
|
organization_id: Mapped[str | None] = mapped_column(String(36), nullable=True)
|