mirror of
https://github.com/navidrome/navidrome.git
synced 2026-10-08 02:17:25 +02:00
Adds the seven auth operations to the spec (createAccessToken, listGrants, revokeGrant and logout in core; login, setupFirstAdmin and changePassword in the password module), the bearerAuth/grantAuth schemes, and vacuum rules requiring explicit security and a known x-scope. The strict handlers sit on core/apiauth and are covered end to end against a real SQLite database. The first operations with parameters make the generated code import github.com/oapi-codegen/runtime. An oapi-codegen overlay renames the shared offset/limit parameter types, since a generated Offset clashes with Ginkgo's dot-imported Offset in this package's tests; the published spec is unchanged.
5 lines
267 B
YAML
5 lines
267 B
YAML
type: string
|
|
description: |
|
|
A permission scope. Scopes mirror capability modules; `x:write` includes `x`. `all` appears only on
|
|
grants and means every scope the user is entitled to, now and in future releases. New scopes may be added.
|
|
enum: [all, read, password]
|