FieldOps/packages/db/prisma/schema.prisma
Pedro Gomes 1bc837e606 MAI CALL - auth v0.2
# O que mudou
1 Schema: failedAttempts + lockedUntil em User; migration auth_v0_2_lockout aplicada; crypto.ts com hashSecret/verifySecret (Node scrypt nativo, zero deps)
2 packages/api/src/auth.ts — authenticateCredential com lockout de 5 tentativas
3 Seed reescrito: admin hashed admin1234, operadores hashed 1111/2222/3333
4 Porta das traseiras fechada: AUTH_DEV_AUTOLOGIN ignorado quando NODE_ENV=production, em ambas as apps
5 operator-pwa: Credentials provider usa PIN + allowedRoles:['OPERATOR']; cookies fieldops-op.*
6 Picker em 2 estados: lista → teclado PIN (botões grandes, dots de progresso, mensagem de erro sem dar pistas)
7 admin-web: Auth.js completo (auth.config, auth.ts, route handler, middleware, /login page, AUTH_SECRET no env) com cookies fieldops-admin.*
8 scripts/auth-smoke.ts (11/11 ✓); .env.example e README atualizados
2026-05-30 11:54:38 +01:00

118 lines
3.2 KiB
Plaintext

// FieldOps — initial scaffold schema.
//
// All models except Tenant carry tenantId. Tenant scoping is enforced at runtime
// by the Prisma extension in src/tenant-extension.ts — see that file's header for
// the operations it covers and (more importantly) those it does NOT.
generator client {
provider = "prisma-client-js"
}
datasource db {
provider = "postgresql"
url = env("DATABASE_URL")
}
enum UserRole {
ADMIN
SUPERVISOR
OPERATOR
}
enum MaintenanceRequestStatus {
OPEN
CLAIMED
RESOLVED
}
model Tenant {
id String @id @default(cuid())
name String
createdAt DateTime @default(now())
users User[]
workstations Workstation[]
events DomainEvent[]
maintenanceRequests MaintenanceRequest[]
}
model User {
id String @id @default(cuid())
tenantId String
email String
passwordHash String?
role UserRole @default(OPERATOR)
createdAt DateTime @default(now())
failedAttempts Int @default(0)
lockedUntil DateTime?
tenant Tenant @relation(fields: [tenantId], references: [id], onDelete: Cascade)
reportedRequests MaintenanceRequest[] @relation("reported")
claimedRequests MaintenanceRequest[] @relation("claimed")
resolvedRequests MaintenanceRequest[] @relation("resolved")
@@unique([tenantId, email])
@@index([tenantId])
}
model Workstation {
id String @id @default(cuid())
tenantId String
code String
name String
area String
tenant Tenant @relation(fields: [tenantId], references: [id], onDelete: Cascade)
maintenanceRequests MaintenanceRequest[]
@@unique([tenantId, code])
@@index([tenantId])
}
model DomainEvent {
id String @id @default(cuid())
tenantId String
aggregateType String
aggregateId String
eventType String
payload Json
occurredAt DateTime @default(now())
processedAt DateTime?
tenant Tenant @relation(fields: [tenantId], references: [id], onDelete: Cascade)
@@index([tenantId])
@@index([tenantId, processedAt])
@@index([tenantId, aggregateType, aggregateId])
}
model MaintenanceRequest {
id String @id @default(cuid())
tenantId String
workstationId String
reportedByUserId String
description String
photoKey String?
status MaintenanceRequestStatus @default(OPEN)
clientRequestId String
createdAt DateTime @default(now())
claimedByUserId String?
claimedAt DateTime?
resolvedByUserId String?
resolvedAt DateTime?
resolutionNote String?
tenant Tenant @relation(fields: [tenantId], references: [id], onDelete: Cascade)
workstation Workstation @relation(fields: [workstationId], references: [id])
reportedBy User @relation("reported", fields: [reportedByUserId], references: [id])
claimedBy User? @relation("claimed", fields: [claimedByUserId], references: [id])
resolvedBy User? @relation("resolved", fields: [resolvedByUserId], references: [id])
@@unique([tenantId, clientRequestId])
@@index([tenantId, status, createdAt])
@@index([tenantId, reportedByUserId])
}