Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
1 change: 1 addition & 0 deletions .gitattributes
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
*.sh text eol=lf
2 changes: 1 addition & 1 deletion docker-compose.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ services:

postgres:
container_name: postgres
image: "postgres:latest"
image: "postgres:17"
ports:
- "5432:5432"
environment:
Expand Down
1 change: 0 additions & 1 deletion idp/go.mod
Original file line number Diff line number Diff line change
Expand Up @@ -28,7 +28,6 @@ require (
cloud.google.com/go/auth v0.23.3 // indirect
cloud.google.com/go/auth/oauth2adapt v0.2.8 // indirect
cloud.google.com/go/compute/metadata v0.9.1 // indirect
github.com/andybalholm/brotli v1.2.4 // indirect
github.com/boombuler/barcode v1.1.0 // indirect
github.com/cenkalti/backoff/v5 v5.0.3 // indirect
github.com/cespare/xxhash/v2 v2.3.0 // indirect
Expand Down
66 changes: 4 additions & 62 deletions idp/go.sum

Large diffs are not rendered by default.

58 changes: 2 additions & 56 deletions idp/initial_schema.dbml
Original file line number Diff line number Diff line change
Expand Up @@ -379,13 +379,6 @@ Enum account_credentials_type {
"mcp"
}

Enum transport {
"http"
"https"
"stdio"
"streamable_http"
}

Enum client_subject_type {
"public"
"pairwise"
Expand All @@ -407,7 +400,6 @@ Table account_credentials as AC {
// Internal for checks
domain "varchar(250)" [not null]
creation_method creation_method [not null]
transport transport [not null]
version integer [not null, default: 1]

// Client ID generated internally
Expand Down Expand Up @@ -793,11 +785,6 @@ Ref: UCK.account_id > A.id [delete: cascade]
Enum app_type {
"web" // Web apps with server-side logic
"native" // Native apps with client-side logic
"spa" // Single-page apps
"backend" // Backend apps
"device" // Device apps
"service" // Service apps
"mcp" // Model Context Protocol apps
}

Enum app_username_column {
Expand All @@ -808,6 +795,7 @@ Enum app_username_column {

Enum grant_type {
"authorization_code"
"implicit"
"refresh_token"
"client_credentials"
"urn:ietf:params:oauth:grant-type:device_code"
Expand Down Expand Up @@ -852,7 +840,6 @@ Table apps as APP {

// Common on all OAuth2 apps
domain varchar(250) [not null]
transport transport [not null]
allow_user_registration bool [not null]
auth_providers "auth_provider[]" [not null]
username_column app_username_column [not null]
Expand Down Expand Up @@ -947,47 +934,6 @@ Ref: APK.account_id > A.id [delete: cascade]
Ref: APK.app_id > APP.id [delete: cascade]
Ref: APK.credentials_key_id > CK.id [delete: cascade]

Table app_related_apps as ARA {
account_id integer [not null]
app_id integer [not null]
related_app_id integer [not null]

created_at timestamptz [not null, default: `now()`]
updated_at timestamptz [not null, default: `now()`]

Indexes {
(app_id, related_app_id) [pk]
(account_id) [name: 'app_related_apps_account_id_idx']
(app_id) [name: 'app_related_apps_app_id_idx']
(related_app_id) [name: 'app_related_apps_related_app_id_idx']
(app_id, related_app_id) [unique, name: 'app_related_apps_app_id_related_app_id_uidx']
}
}
Ref: ARA.account_id > A.id [delete: cascade]
Ref: ARA.app_id > APP.id [delete: cascade]
Ref: ARA.related_app_id > APP.id [delete: cascade]

Table app_service_configs as ASCONF {
id serial [pk]

account_id integer [not null]
app_id integer [not null]

user_auth_method "auth_method" [not null]
user_grant_types "grant_type[]" [not null]
allowed_domains "varchar(250)[]" [not null]

created_at timestamptz [not null, default: `now()`]
updated_at timestamptz [not null, default: `now()`]

Indexes {
(account_id) [name: 'app_service_configs_account_id_idx']
(app_id) [unique, name: 'app_service_configs_app_id_uidx']
}
}
Ref: ASCONF.account_id > A.id [delete: cascade]
Ref: ASCONF.app_id > APP.id [delete: cascade]

Table app_designs as AD {
id serial [pk]

Expand Down Expand Up @@ -1065,7 +1011,7 @@ Table app_dynamic_registration_configs as APDRC {
initial_access_token_ttl integer [not null, default: 3600] // 1 hour
initial_access_token_max_uses int [not null, default: 1]

allowed_grant_types "grant_type[]" [not null, default: '{ "authorization_code", "refresh_token", "client_credentials", "urn:ietf:params:oauth:grant-type:device_code", "urn:ietf:params:oauth:grant-type:jwt-bearer" }']
allowed_grant_types "grant_type[]" [not null, default: '{ "authorization_code", "implicit", "refresh_token", "client_credentials", "urn:ietf:params:oauth:grant-type:device_code", "urn:ietf:params:oauth:grant-type:jwt-bearer" }']
allowed_response_types "response_type[]" [not null, default: '{ "code", "code id_token" }']
allowed_token_endpoint_auth_methods "auth_method[]" [not null, default: '{ "none", "client_secret_post", "client_secret_basic", "client_secret_jwt", "private_key_jwt" }']
max_redirect_uris int [not null, default: 10]
Expand Down
2 changes: 0 additions & 2 deletions idp/internal/controllers/account_credentials.go
Original file line number Diff line number Diff line change
Expand Up @@ -62,7 +62,6 @@ func (c *Controllers) CreateAccountCredentials(ctx fiber.Ctx) error {
SoftwareID: body.SoftwareID,
SoftwareVersion: body.SoftwareVersion,
Algorithm: body.Algorithm,
Transport: body.Transport,
},
)
if serviceErr != nil {
Expand Down Expand Up @@ -181,7 +180,6 @@ func (c *Controllers) UpdateAccountCredentials(ctx fiber.Ctx) error {
ClientID: urlParams.ClientID,
Name: body.Name,
Scopes: body.Scopes,
Transport: body.Transport,
Domain: body.Domain,
ClientURI: body.ClientURI,
RedirectURIs: body.RedirectURIs,
Expand Down
Loading