* feat: session authentication and god-mode implementation (#4302) * dev: move authentication to base class for credentials * chore: new account creation * dev: return error as query parameter * dev: accounts and profile endpoints for user * fix: user store updates * fix: store fixes * fix: type fixes * dev: set is_password_autoset and is_email_verifier for auth providers * dev: move all auth configuration to different apps * dev: fix circular imports * dev: remove unused imports * dev: fix imports for authentication * dev: update endpoints to use rest framework api viewa * fix: onboarding fixes * dev: session model changes * fix: session model and add check for last name first name and avatar * dev: fix referer redirect * dev: remove auth imports * dev: fix imports * dev: update migrations * fix: instance admin login * comflict: conflicts resolved * dev: fix import errors and email check endpoint * fix: error messages and redirects after login * dev: configs api * fix: is github enabled boolean * dev: merge config and instance api * conflict: merge conflict resolved * dev: instance admin sign up endpoint * dev: enable magic link login * dev: configure instance variables for github and google enabled * chore: typo fixes * fix: god mode docker file changes * build-error: resolved build errors * fix: docker compose changes * dev: add email credential check endpoint * fix: minor package changes * fix: docker related changes * dev: add nginx rules in the nginx template * dev: refactor the url patterns * fix: docker changes * fix: docker files for god-mode * fix: static export * fix: nginx conf * dev: smtp sender refused exception * fix: godmode fixes * chore: god mode revamp. * dev: add csrf secured flag * fix: oauth redirect uri and session settings * chore: god mode app changes. (#3982) * chore: send test email functionality. * style: authentication methods page UI revamp. * chore: create workspace popup. * fix: user me endpoint * dev: fix redirection after authentication * dev: handle god mode redirection * fix: redirections * fix: auth related hooks * fix: store related fixes * dev: fix session authentication for rest apis * fix: linting errors * fix: removing references of useStore= * dev: fix redirection and password validation * dev: add useUser hook * fix: build fixes and lint issues * fix: removing useApplication hook * fix: build errors * fix: delete unused files * fix: auth build fixes * fix: bugfixes * dev: alter avatar to support more than 255 chars * dev: fix profile endpoint and increase session expiry time and update session on every request * chore: resolved the migration * chore: resolved merge conflicts * dev: error codes and error messages for the auth flow * dev: instance admin sign up and sign in endpoint * dev: use zxcvbn to validate password strength * dev: add extra parameters when error handling on instance god mode * chore: auth init * chore: signin/ signup form ui updates and password strength meter. * chore: update password fields. * chore: validations and error handling. * chore: updated sign-up form * chore: updated workflow and updated the code structure * chore: instance empty state for god-mode. * chore: instance and auth wrappers update * fix: renaming godmode * fix: docker changes * chore: updated authentication wrappers * chore: updated the authentication workflow and rendered all pages * fix: build errors * fix: docker related fixes * fix: tailing slash added to space and admin for valid nginx locations * chore: seperate pages for signup and login * git-action modified for admin file changes * feature build action updated for admin app * self host modified * chore: resolved build errors and handled signin and signup in a seperate route * chore: sign-in and sign-up revamp. * fix: migration conflicts * dev: migrations * chore: handled redirection * dev: admin url * dev: create seperate endpoint for instance admin me * dev: instance admin endpoint * git action fixed * chore: handled auth wrappers * dev: add serializer and remove print logs * fix: build errors * dev: fix migrations * dev: instance folder structuring * fix: linting errors * chore: resolved build errors * chore: updated store and auth workflow and updates api service types * chore: Replaced Next Link with Anchoer tag for god-mode redirection * add 3333 port to allowed origins * make password login working again * dev: fix redirection, add admin signout endpoint and fix email credential check endpoint * fix unique code sign in * fix small build error * enable sign out * dev: add google client secret variable to configure instance * dev: add referer for redirection * fix origin urls for oauths * admin setup and login separation * dev: fix user redirection and tour completed endpoint * fix build errors * dev: add set password endpoint * dev: remove user creation logic for redirection * fix unique code page * fix forgot password * chore: onboarding revamp. * dev: fix workspace slug redirection in login * chore: invited user onboarding flow update. * chore: fix switch or delete account modal. * fix members exception * refactor auth flows and add invitations to auth flow * fix sig in sign up url * fix action url * fix build errors * dev: fix user set password when logging in * dev: reset password endpoint * chore: confirm password validation for signup and onboarding. * enable reset password * fix build error * chore: minor UI updates. * chore: forgot and reset password UI revamp. * fix authentication re directions * dev: auth redirections * change url paths for signup and signin * dev: make the user logged in when changing passwords * dev: next path redirection for web and space app * dev: next path for magic sign in endpoint * dev: github space endpoint * chore: minor ui updates and fixes in web app. * set password screen * fix multiple unique code generation * dev: next path base redirection * dev: remove print logs * dev: auth space endpoints * fix build errors * dev: invalidate cache on configuration update, god mode exception errors and authentication failed code * dev: fix space endpoints and add extra endpoints * chore: space auth revamp. * dev: add sign up for space app * fix: build errors. * fix: auth redirection logic. * chore: space app onboarding revamp. --------- Co-authored-by: pablohashescobar <nikhilschacko@gmail.com> Co-authored-by: NarayanBavisetti <narayan3119@gmail.com> Co-authored-by: gurusainath <gurusainath007@gmail.com> Co-authored-by: Prateek Shourya <prateekshourya29@gmail.com> Co-authored-by: Manish Gupta <59428681+mguptahub@users.noreply.github.com> Co-authored-by: Manish Gupta <manish@mgupta.me> Co-authored-by: = <=> Co-authored-by: rahulramesha <rahulramesham@gmail.com> * chore: updated file structure for admin * chore: updated admin-sidebar * chore: auth error handling * chore: onboarding UI updates and dark mode fixes. * chore: add `user personalization` step to onboarding profile setup screen. * chore: fix minor UI bugs * chore: authentication workflow changes * chore: handled signin workflow * style: switch or delete account workflow * chore: god mode redirection URL * feat(dashboard): improve label readability (#4321) change none label for all time in dashbard filters * chore: god-mode redirection * chore: onboarding ui updates and accept invitation workflow updates. * chore: rename unique code auth form. * style: space auth ux copy. * chore: updated intance and auth wrapper logic * chore: update default layout style. * chore: update confirm password. * chore: backend redirection * style: update banner ui * chore: minor ui updates and validation fix. * chore: removed old auth hook * chore: handled auth wrapper * chore: handled store loaders in the user * chore: handled logs * chore: add loading spinners for all auth and onboarding form buttons. * chore: add background pattern in admin auth forms and minor ui fixes. * chore: UI changes and revamp components for authentication * chore: auth UI consistency in web, space and admin. * chore: resolved build errors * chore: removed old auth hooks * chore: handled lint errors in use accounts * chore: updated authentication wrapper logic in web app * [WEB -1149] dev: update dependencies (#4333) * dev: upgrade dependencies remove unwanted dependency and add ruff as local dependency * dev: add comments * chore: authentication wrapper fetch user * chore: updated store loader * chore: removed old auth wrapper and replaced the imports with new auth wrapper * chore: join workspace invitation workflow updates * chore: build error resolved in deploy * chore: handled onboarding step error in web app * chore: SMTP Name and Password validation removed * chore: handled seo and signout logic and new user popup * chore: added redirection to plane in the sidebar * chore: resolved build errors * dev: admin session cookie update * chore: updated cookie session time for admin * dev: add start date and end date to projects (#4355) * chore: add email security dropdown and remove SMTP username and password validation. * chore: add tooltip to admin sidebar help-section. * chore: add dropdown to collapsed admin sidebar. * chore: profile themning * chore: updated page error messages and theme in command palette * dev: add email validation in email check apis * dev: remove start date and end date from project * chore: updated space folder structure and updated the store hooks * dev: error codes for authentication * chore: handled authentication in space and web apps * chore: banner redirect handling the email * dev: god mode error codes * chore: updated error codes * chore: updated onboarding images * dev: signout endpoints and saving login domain while creating sessions * feat: Self Host Data Backup (#4383) * feat: implemented backup , support for docker-compose tool, readme updated * minor fix in shell script * codacy fixes * chore: handled build errors in web * chore: updated react, react-dom, and next versions * chore: updated password autioset in the signin * dev: add logo prop to views and pages * chore: updated api service and handled the set password in store * chore: handled build errors and code cleanup * dev: return 401 when the session is not valid * dev: users/me exception for api * chore: installed lodash in space app * dev: add auth route in nginx --------- Co-authored-by: pablohashescobar <nikhilschacko@gmail.com> Co-authored-by: NarayanBavisetti <narayan3119@gmail.com> Co-authored-by: gurusainath <gurusainath007@gmail.com> Co-authored-by: Prateek Shourya <prateekshourya29@gmail.com> Co-authored-by: Manish Gupta <59428681+mguptahub@users.noreply.github.com> Co-authored-by: Manish Gupta <manish@mgupta.me> Co-authored-by: rahulramesha <rahulramesham@gmail.com> Co-authored-by: Aaryan Khandelwal <aaryankhandu123@gmail.com> Co-authored-by: Daniel Alba <56451942+redrum15@users.noreply.github.com> Co-authored-by: Nikhil <118773738+pablohashescobar@users.noreply.github.com>
302 lines
9 KiB
Python
302 lines
9 KiB
Python
# Python imports
|
|
from uuid import uuid4
|
|
|
|
# Django imports
|
|
from django.conf import settings
|
|
from django.core.validators import MaxValueValidator, MinValueValidator
|
|
from django.db import models
|
|
|
|
# Modeule imports
|
|
from plane.db.mixins import AuditModel
|
|
|
|
# Module imports
|
|
from .base import BaseModel
|
|
|
|
ROLE_CHOICES = (
|
|
(20, "Admin"),
|
|
(15, "Member"),
|
|
(10, "Viewer"),
|
|
(5, "Guest"),
|
|
)
|
|
|
|
|
|
def get_default_props():
|
|
return {
|
|
"filters": {
|
|
"priority": None,
|
|
"state": None,
|
|
"state_group": None,
|
|
"assignees": None,
|
|
"created_by": None,
|
|
"labels": None,
|
|
"start_date": None,
|
|
"target_date": None,
|
|
"subscriber": None,
|
|
},
|
|
"display_filters": {
|
|
"group_by": None,
|
|
"order_by": "-created_at",
|
|
"type": None,
|
|
"sub_issue": True,
|
|
"show_empty_groups": True,
|
|
"layout": "list",
|
|
"calendar_date_range": "",
|
|
},
|
|
}
|
|
|
|
|
|
def get_default_preferences():
|
|
return {"pages": {"block_display": True}}
|
|
|
|
|
|
class Project(BaseModel):
|
|
NETWORK_CHOICES = ((0, "Secret"), (2, "Public"))
|
|
name = models.CharField(max_length=255, verbose_name="Project Name")
|
|
description = models.TextField(
|
|
verbose_name="Project Description", blank=True
|
|
)
|
|
description_text = models.JSONField(
|
|
verbose_name="Project Description RT", blank=True, null=True
|
|
)
|
|
description_html = models.JSONField(
|
|
verbose_name="Project Description HTML", blank=True, null=True
|
|
)
|
|
network = models.PositiveSmallIntegerField(
|
|
default=2, choices=NETWORK_CHOICES
|
|
)
|
|
workspace = models.ForeignKey(
|
|
"db.WorkSpace",
|
|
on_delete=models.CASCADE,
|
|
related_name="workspace_project",
|
|
)
|
|
identifier = models.CharField(
|
|
max_length=12,
|
|
verbose_name="Project Identifier",
|
|
)
|
|
default_assignee = models.ForeignKey(
|
|
settings.AUTH_USER_MODEL,
|
|
on_delete=models.CASCADE,
|
|
related_name="default_assignee",
|
|
null=True,
|
|
blank=True,
|
|
)
|
|
project_lead = models.ForeignKey(
|
|
settings.AUTH_USER_MODEL,
|
|
on_delete=models.CASCADE,
|
|
related_name="project_lead",
|
|
null=True,
|
|
blank=True,
|
|
)
|
|
emoji = models.CharField(max_length=255, null=True, blank=True)
|
|
icon_prop = models.JSONField(null=True)
|
|
module_view = models.BooleanField(default=True)
|
|
cycle_view = models.BooleanField(default=True)
|
|
issue_views_view = models.BooleanField(default=True)
|
|
page_view = models.BooleanField(default=True)
|
|
inbox_view = models.BooleanField(default=False)
|
|
cover_image = models.URLField(blank=True, null=True, max_length=800)
|
|
estimate = models.ForeignKey(
|
|
"db.Estimate",
|
|
on_delete=models.SET_NULL,
|
|
related_name="projects",
|
|
null=True,
|
|
)
|
|
archive_in = models.IntegerField(
|
|
default=0, validators=[MinValueValidator(0), MaxValueValidator(12)]
|
|
)
|
|
close_in = models.IntegerField(
|
|
default=0, validators=[MinValueValidator(0), MaxValueValidator(12)]
|
|
)
|
|
logo_props = models.JSONField(default=dict)
|
|
default_state = models.ForeignKey(
|
|
"db.State",
|
|
on_delete=models.SET_NULL,
|
|
null=True,
|
|
related_name="default_state",
|
|
)
|
|
archived_at = models.DateTimeField(null=True)
|
|
|
|
def __str__(self):
|
|
"""Return name of the project"""
|
|
return f"{self.name} <{self.workspace.name}>"
|
|
|
|
class Meta:
|
|
unique_together = [["identifier", "workspace"], ["name", "workspace"]]
|
|
verbose_name = "Project"
|
|
verbose_name_plural = "Projects"
|
|
db_table = "projects"
|
|
ordering = ("-created_at",)
|
|
|
|
def save(self, *args, **kwargs):
|
|
self.identifier = self.identifier.strip().upper()
|
|
return super().save(*args, **kwargs)
|
|
|
|
|
|
class ProjectBaseModel(BaseModel):
|
|
project = models.ForeignKey(
|
|
Project, on_delete=models.CASCADE, related_name="project_%(class)s"
|
|
)
|
|
workspace = models.ForeignKey(
|
|
"db.Workspace", models.CASCADE, related_name="workspace_%(class)s"
|
|
)
|
|
|
|
class Meta:
|
|
abstract = True
|
|
|
|
def save(self, *args, **kwargs):
|
|
self.workspace = self.project.workspace
|
|
super(ProjectBaseModel, self).save(*args, **kwargs)
|
|
|
|
|
|
class ProjectMemberInvite(ProjectBaseModel):
|
|
email = models.CharField(max_length=255)
|
|
accepted = models.BooleanField(default=False)
|
|
token = models.CharField(max_length=255)
|
|
message = models.TextField(null=True)
|
|
responded_at = models.DateTimeField(null=True)
|
|
role = models.PositiveSmallIntegerField(choices=ROLE_CHOICES, default=10)
|
|
|
|
class Meta:
|
|
verbose_name = "Project Member Invite"
|
|
verbose_name_plural = "Project Member Invites"
|
|
db_table = "project_member_invites"
|
|
ordering = ("-created_at",)
|
|
|
|
def __str__(self):
|
|
return f"{self.project.name} {self.email} {self.accepted}"
|
|
|
|
|
|
class ProjectMember(ProjectBaseModel):
|
|
member = models.ForeignKey(
|
|
settings.AUTH_USER_MODEL,
|
|
on_delete=models.CASCADE,
|
|
null=True,
|
|
blank=True,
|
|
related_name="member_project",
|
|
)
|
|
comment = models.TextField(blank=True, null=True)
|
|
role = models.PositiveSmallIntegerField(choices=ROLE_CHOICES, default=10)
|
|
view_props = models.JSONField(default=get_default_props)
|
|
default_props = models.JSONField(default=get_default_props)
|
|
preferences = models.JSONField(default=get_default_preferences)
|
|
sort_order = models.FloatField(default=65535)
|
|
is_active = models.BooleanField(default=True)
|
|
|
|
def save(self, *args, **kwargs):
|
|
if self._state.adding:
|
|
smallest_sort_order = ProjectMember.objects.filter(
|
|
workspace_id=self.project.workspace_id, member=self.member
|
|
).aggregate(smallest=models.Min("sort_order"))["smallest"]
|
|
|
|
# Project ordering
|
|
if smallest_sort_order is not None:
|
|
self.sort_order = smallest_sort_order - 10000
|
|
|
|
super(ProjectMember, self).save(*args, **kwargs)
|
|
|
|
class Meta:
|
|
unique_together = ["project", "member"]
|
|
verbose_name = "Project Member"
|
|
verbose_name_plural = "Project Members"
|
|
db_table = "project_members"
|
|
ordering = ("-created_at",)
|
|
|
|
def __str__(self):
|
|
"""Return members of the project"""
|
|
return f"{self.member.email} <{self.project.name}>"
|
|
|
|
|
|
# TODO: Remove workspace relation later
|
|
class ProjectIdentifier(AuditModel):
|
|
workspace = models.ForeignKey(
|
|
"db.Workspace",
|
|
models.CASCADE,
|
|
related_name="project_identifiers",
|
|
null=True,
|
|
)
|
|
project = models.OneToOneField(
|
|
Project, on_delete=models.CASCADE, related_name="project_identifier"
|
|
)
|
|
name = models.CharField(max_length=12)
|
|
|
|
class Meta:
|
|
unique_together = ["name", "workspace"]
|
|
verbose_name = "Project Identifier"
|
|
verbose_name_plural = "Project Identifiers"
|
|
db_table = "project_identifiers"
|
|
ordering = ("-created_at",)
|
|
|
|
|
|
class ProjectFavorite(ProjectBaseModel):
|
|
user = models.ForeignKey(
|
|
settings.AUTH_USER_MODEL,
|
|
on_delete=models.CASCADE,
|
|
related_name="project_favorites",
|
|
)
|
|
|
|
class Meta:
|
|
unique_together = ["project", "user"]
|
|
verbose_name = "Project Favorite"
|
|
verbose_name_plural = "Project Favorites"
|
|
db_table = "project_favorites"
|
|
ordering = ("-created_at",)
|
|
|
|
def __str__(self):
|
|
"""Return user of the project"""
|
|
return f"{self.user.email} <{self.project.name}>"
|
|
|
|
|
|
def get_anchor():
|
|
return uuid4().hex
|
|
|
|
|
|
def get_default_views():
|
|
return {
|
|
"list": True,
|
|
"kanban": True,
|
|
"calendar": True,
|
|
"gantt": True,
|
|
"spreadsheet": True,
|
|
}
|
|
|
|
|
|
class ProjectDeployBoard(ProjectBaseModel):
|
|
anchor = models.CharField(
|
|
max_length=255, default=get_anchor, unique=True, db_index=True
|
|
)
|
|
comments = models.BooleanField(default=False)
|
|
reactions = models.BooleanField(default=False)
|
|
inbox = models.ForeignKey(
|
|
"db.Inbox",
|
|
related_name="bord_inbox",
|
|
on_delete=models.SET_NULL,
|
|
null=True,
|
|
)
|
|
votes = models.BooleanField(default=False)
|
|
views = models.JSONField(default=get_default_views)
|
|
|
|
class Meta:
|
|
unique_together = ["project", "anchor"]
|
|
verbose_name = "Project Deploy Board"
|
|
verbose_name_plural = "Project Deploy Boards"
|
|
db_table = "project_deploy_boards"
|
|
ordering = ("-created_at",)
|
|
|
|
def __str__(self):
|
|
"""Return project and anchor"""
|
|
return f"{self.anchor} <{self.project.name}>"
|
|
|
|
|
|
class ProjectPublicMember(ProjectBaseModel):
|
|
member = models.ForeignKey(
|
|
settings.AUTH_USER_MODEL,
|
|
on_delete=models.CASCADE,
|
|
related_name="public_project_members",
|
|
)
|
|
|
|
class Meta:
|
|
unique_together = ["project", "member"]
|
|
verbose_name = "Project Public Member"
|
|
verbose_name_plural = "Project Public Members"
|
|
db_table = "project_public_members"
|
|
ordering = ("-created_at",)
|