feat: Phase 1 — extract the client (web SPA + desktop) to dtoro/oikos-web
Some checks failed
ci / build-test (push) Has been cancelled
ci / docker-build (push) Has been cancelled

Problem: the hexagonal refactor churns the backend tree for nine more
phases; the UI delivery stack (web/ SPA, cmd/desktop Wails wrapper,
compose/web image) must move to its own repo first so doc/layout
rewrites land once on a backend-only tree.

Change:
- New repo git.hubris.network/dtoro/oikos-web (v0.33.0): web/, desktop/
  (updateURL repointed to oikos-web releases), compose/, own CI (web +
  desktop jobs), own deploy script (CI-green gate, TOCTOU guard,
  version-tagged images, prune-to-3), own webhook receiver on :9798 +
  launchd unit, own compose project publishing the same 8091:80.
- Cutover executed on mac-mini in order: oikos stack's web service
  stopped+removed, oikos-web project brought up on 8091; outer Caddy
  untouched (targets the published port) — serving + Authentik flow +
  /wails 404 quirk verified post-cutover.
- Stripped from oikos: web/, cmd/desktop/, compose/web/, desktop CI
  workflow, ci.yml web job, Makefile ui/desktop/desktop-package/install
  targets, the compose web service, oikos-web from deploy.sh's fallback
  prune list; wails + go-keyring dropped from go.mod, vendor synced.
- README / CONTRIBUTING / AGENTS.md / .agents dev+operations docs now
  point at the new repo; mbse + mascot design docs carry a path note.

Risk: production SPA serving depends on the new pipeline now; rollback
is versioned-image re-up of the old web service from a pre-split
checkout (port 8091). Desktop builds installed before the split still
check dtoro/oikos releases — one manual reinstall, noted in the
oikos-web release notes.

Verification: go vet, make test (race), make generate-check, golangci
(no new findings; baseline down 400→365); post-cutover curls —
localhost:8091 200, /wails/runtime.js 404, outer Caddy 302 Authentik.
This commit is contained in:
2026-08-15 22:27:52 +02:00
parent e074f04bdf
commit d4d99a7473
18854 changed files with 2615729 additions and 173735 deletions

View File

@@ -0,0 +1,3 @@
[ 65ms] [ERROR] Failed to load resource: the server responded with a status of 404 (Not Found) @ http://localhost:5173/wails/runtime.js:0
[ 217ms] [VERBOSE] [DOM] Input elements should have autocomplete attributes (suggested: "new-password"): (More info: https://goo.gl/9p2vKq) %o @ http://localhost:5173/:0
[ 62110ms] [VERBOSE] [DOM] Input elements should have autocomplete attributes (suggested: "new-password"): (More info: https://goo.gl/9p2vKq) %o @ http://localhost:5173/:0

View File

@@ -0,0 +1,4 @@
[ 5732ms] [ERROR] Access to fetch at 'https://oikos.hubris.network/api/v1/audit?limit=5' from origin 'null' has been blocked by CORS policy: The request client is not a secure context and the resource is in more-private address space `local`. @ about:blank:0
[ 5732ms] [ERROR] Failed to load resource: net::ERR_FAILED @ https://oikos.hubris.network/api/v1/audit?limit=5:0
[ 21353ms] [ERROR] Access to fetch at 'https://oikos.hubris.network/api/v1/audit?limit=3' from origin 'null' has been blocked by CORS policy: The request client is not a secure context and the resource is in more-private address space `local`. @ about:blank:0
[ 21353ms] [ERROR] Failed to load resource: net::ERR_FAILED @ https://oikos.hubris.network/api/v1/audit?limit=3:0

View File

@@ -0,0 +1,14 @@
- generic [ref=e7]:
- generic [ref=e13]:
- heading "Connect to Oikos" [level=1] [ref=e14]
- paragraph [ref=e15]: Configure your control room connection
- generic [ref=e16]:
- generic [ref=e17]: Server URL
- textbox "Server URL" [ref=e19]:
- /placeholder: https://oikos.hubris.network
- generic [ref=e20]:
- button "Login with Authentik" [ref=e21] [cursor=pointer]
- generic [ref=e22]: or use
- generic [ref=e26]:
- textbox "Bearer token" [ref=e28]
- button "Connect" [ref=e29] [cursor=pointer]