Scott Idem
6937f9dca4
Saving these changes in a working state. Just in case.
2026-01-07 16:54:56 -05:00
Scott Idem
caf2868d02
Saving things while they work again!!! Still working on adding a special exception or something for site domain search.
2026-01-07 16:25:18 -05:00
Scott Idem
cf96d93246
fix: import SearchFilter in api_crud_v3.py to resolve NameError
2026-01-07 14:25:58 -05:00
Scott Idem
6d13b952c4
Implement V3 API security hardening and multi-tenant data isolation
...
- Enhanced AuthContext with role-aware fields (administrator, manager, super).
- Implemented deferred database lookups for user roles in get_v3_auth_context.
- Added global account isolation in api_crud_v3.py using check_account_access and apply_forced_account_filter.
- Hardened all V3 CRUD endpoints (GET, POST, PATCH, DELETE) and nested routes with ownership verification.
- Enforced forced account filtering at the SQL level for Listing and Searching.
- Updated documentation with details on the new security and data isolation architecture.
2026-01-07 13:34:38 -05:00
Scott Idem
d584457997
fix(legacy): resolve 422 error on site domain lookup and enhance V3 filtering
2026-01-06 16:29:09 -05:00
Scott Idem
459bd89198
feat(v3): implement schema discovery endpoint
2026-01-06 16:03:54 -05:00
Scott Idem
a42f32acf4
Added more documentation. Improved CRUD V3 endpoints and better responses.
2026-01-06 13:52:05 -05:00
Scott Idem
9c06b07665
Saving changes now that most things have been migrated to CRUD V3 and appear to be working. This still needs testing though.
2026-01-06 13:11:03 -05:00
Scott Idem
314a031dd1
Now with some soft delete options for safer operations.
2026-01-05 19:49:28 -05:00
Scott Idem
53d252b23d
Fix: Add robust JSON parsing for V3 query params and fix missing Any import causing startup failure.
2026-01-02 20:24:51 -05:00
Scott Idem
09ec231303
Security: Implement recursion depth limits and field allowlists for Advanced Search; add reference SQL exports.
2026-01-02 19:38:37 -05:00
Scott Idem
bf16f988c5
Saving recommended updates by the Svelte Gemini agent.
2026-01-02 18:57:37 -05:00
Scott Idem
2f24a5588b
Feature: Implement advanced POST-based search with recursive logical grouping and unique parameterization (Verified Working).
2026-01-02 17:09:29 -05:00
Scott Idem
7b9ec69e7b
Refactor: Add legacy V2 support to modern object definitions and document V3 architecture.
2026-01-02 16:14:41 -05:00
Scott Idem
c1353fc971
More work on getting things working and ready for my CRUD v3 stuff. This may have been related to import loops or something.
2026-01-02 15:48:08 -05:00
Scott Idem
4a62eecf83
Work after logging related fixes.
2026-01-02 15:17:43 -05:00
Scott Idem
98b980cf2b
The basics are now working for v3.
2025-12-03 18:44:14 -05:00
Scott Idem
d0654e9f37
Another quick save. Looking pretty so far.
2025-12-03 18:35:40 -05:00
Scott Idem
8f3a38cb0d
WARNING: This is where Gemini is starting to work on the version 3 of the CRUD catch all endpoints. This seems like a good start.
2025-12-03 18:16:11 -05:00