Problem: the hexagonal refactor churns the backend tree for nine more phases; the UI delivery stack (web/ SPA, cmd/desktop Wails wrapper, compose/web image) must move to its own repo first so doc/layout rewrites land once on a backend-only tree. Change: - New repo git.hubris.network/dtoro/oikos-web (v0.33.0): web/, desktop/ (updateURL repointed to oikos-web releases), compose/, own CI (web + desktop jobs), own deploy script (CI-green gate, TOCTOU guard, version-tagged images, prune-to-3), own webhook receiver on :9798 + launchd unit, own compose project publishing the same 8091:80. - Cutover executed on mac-mini in order: oikos stack's web service stopped+removed, oikos-web project brought up on 8091; outer Caddy untouched (targets the published port) — serving + Authentik flow + /wails 404 quirk verified post-cutover. - Stripped from oikos: web/, cmd/desktop/, compose/web/, desktop CI workflow, ci.yml web job, Makefile ui/desktop/desktop-package/install targets, the compose web service, oikos-web from deploy.sh's fallback prune list; wails + go-keyring dropped from go.mod, vendor synced. - README / CONTRIBUTING / AGENTS.md / .agents dev+operations docs now point at the new repo; mbse + mascot design docs carry a path note. Risk: production SPA serving depends on the new pipeline now; rollback is versioned-image re-up of the old web service from a pre-split checkout (port 8091). Desktop builds installed before the split still check dtoro/oikos releases — one manual reinstall, noted in the oikos-web release notes. Verification: go vet, make test (race), make generate-check, golangci (no new findings; baseline down 400→365); post-cutover curls — localhost:8091 200, /wails/runtime.js 404, outer Caddy 302 Authentik.
55 lines
1.9 KiB
TypeScript
55 lines
1.9 KiB
TypeScript
/**
|
|
* Cookie prefixes are a way to indicate that a given cookie was set with a set of attributes simply by inspecting the
|
|
* first few characters of the cookie's name. These are defined in {@link https://datatracker.ietf.org/doc/html/draft-ietf-httpbis-rfc6265bis-13#section-4.1.3 | RFC6265bis - Section 4.1.3}.
|
|
*
|
|
* The following values can be used to configure how a {@link CookieJar} enforces attribute restrictions for Cookie prefixes:
|
|
*
|
|
* - `silent` - Enable cookie prefix checking but silently ignores the cookie if conditions are not met. This is the default configuration for a {@link CookieJar}.
|
|
*
|
|
* - `strict` - Enables cookie prefix checking and will raise an error if conditions are not met.
|
|
*
|
|
* - `unsafe-disabled` - Disables cookie prefix checking.
|
|
* @public
|
|
*/
|
|
export declare const PrefixSecurityEnum: {
|
|
readonly SILENT: "silent";
|
|
readonly STRICT: "strict";
|
|
readonly DISABLED: "unsafe-disabled";
|
|
};
|
|
export declare const IP_V6_REGEX_OBJECT: RegExp;
|
|
/**
|
|
* A JSON representation of a {@link CookieJar}.
|
|
* @public
|
|
*/
|
|
export interface SerializedCookieJar {
|
|
/**
|
|
* The version of `tough-cookie` used during serialization.
|
|
*/
|
|
version: string;
|
|
/**
|
|
* The name of the store used during serialization.
|
|
*/
|
|
storeType: string | null;
|
|
/**
|
|
* The value of {@link CreateCookieJarOptions.rejectPublicSuffixes} configured on the {@link CookieJar}.
|
|
*/
|
|
rejectPublicSuffixes: boolean;
|
|
/**
|
|
* Other configuration settings on the {@link CookieJar}.
|
|
*/
|
|
[key: string]: unknown;
|
|
/**
|
|
* The list of {@link Cookie} values serialized as JSON objects.
|
|
*/
|
|
cookies: SerializedCookie[];
|
|
}
|
|
/**
|
|
* A JSON object that is created when {@link Cookie.toJSON} is called. This object will contain the properties defined in {@link Cookie.serializableProperties}.
|
|
* @public
|
|
*/
|
|
export type SerializedCookie = {
|
|
key?: string;
|
|
value?: string;
|
|
[key: string]: unknown;
|
|
};
|