mirror of
https://github.com/navidrome/navidrome.git
synced 2026-10-08 02:17:25 +02:00
Adds the seven auth operations to the spec (createAccessToken, listGrants, revokeGrant and logout in core; login, setupFirstAdmin and changePassword in the password module), the bearerAuth/grantAuth schemes, and vacuum rules requiring explicit security and a known x-scope. The strict handlers sit on core/apiauth and are covered end to end against a real SQLite database. The first operations with parameters make the generated code import github.com/oapi-codegen/runtime. An oapi-codegen overlay renames the shared offset/limit parameter types, since a generated Offset clashes with Ginkgo's dot-imported Offset in this package's tests; the published spec is unchanged.
19 lines
541 B
YAML
19 lines
541 B
YAML
type: object
|
|
description: The user a grant belongs to.
|
|
required: [id, userName, name, isAdmin, passwordChangeable]
|
|
properties:
|
|
id:
|
|
type: string
|
|
description: User id.
|
|
userName:
|
|
type: string
|
|
description: Login name.
|
|
name:
|
|
type: string
|
|
description: Display name.
|
|
isAdmin:
|
|
type: boolean
|
|
description: Whether the user is an administrator.
|
|
passwordChangeable:
|
|
type: boolean
|
|
description: "Whether `POST /auth/password` can change this user's password. Clients hide \"change password\" when false."
|