5ec1fc9b05
B1: Remove duplicate get_redis() — singleton no longer overwritten B2: Plugin routes now enforce activation status via require_active_plugin() B3: Fix UploadFile ForwardRef error — remove functools.wraps from wrap_plugin_route B4: DMS upload uses true streaming via save_stream() instead of RAM accumulation B5: Worker on_startup registers plugin event handlers + webhook dispatcher B6: Implement send_password_reset_email job, remove raw token logging B7: Webhook SSRF protection (IP validation, no redirects), secret removed from response B8: RLS repair migration 0044 + separate crm_runtime DB user (NOSUPERUSER, NOBYPASSRLS) B9: Fix .env.docker.example AUTH_SECRET → SECRET_KEY B10: Remove Redis default password, remove exposed DB/Redis ports Also: add frontend_url to config, add SMTP settings to .env.docker.example, update prestart.sh to use MIGRATION_DATABASE_URL for alembic.
50 lines
1.8 KiB
Python
50 lines
1.8 KiB
Python
"""Pydantic schemas for Webhook CRUD."""
|
|
|
|
from __future__ import annotations
|
|
|
|
import uuid
|
|
from datetime import datetime
|
|
|
|
from pydantic import BaseModel, ConfigDict, Field
|
|
|
|
|
|
class WebhookCreate(BaseModel):
|
|
"""Schema for creating a new webhook."""
|
|
|
|
url: str = Field(..., min_length=1, max_length=500, description="Target URL for the webhook")
|
|
events: list[str] = Field(..., min_length=1, description="List of event names to subscribe to")
|
|
secret: str | None = Field(default=None, max_length=255, description="HMAC secret for payload signing")
|
|
is_active: bool = Field(default=True, description="Whether the webhook is active")
|
|
retry_count: int = Field(default=3, ge=0, le=10, description="Number of retry attempts on failure")
|
|
timeout_seconds: int = Field(default=30, ge=1, le=120, description="Request timeout in seconds")
|
|
|
|
|
|
class WebhookUpdate(BaseModel):
|
|
"""Schema for updating an existing webhook."""
|
|
|
|
url: str | None = Field(default=None, max_length=500)
|
|
events: list[str] | None = Field(default=None, min_length=1)
|
|
secret: str | None = Field(default=None, max_length=255)
|
|
is_active: bool | None = Field(default=None)
|
|
retry_count: int | None = Field(default=None, ge=0, le=10)
|
|
timeout_seconds: int | None = Field(default=None, ge=1, le=120)
|
|
|
|
|
|
class WebhookResponse(BaseModel):
|
|
"""Schema for returning a webhook."""
|
|
|
|
model_config = ConfigDict(from_attributes=True)
|
|
|
|
id: uuid.UUID
|
|
tenant_id: uuid.UUID
|
|
url: str
|
|
events: list[str]
|
|
has_secret: bool = False # Only indicate if a secret is set, never return it
|
|
is_active: bool = True
|
|
retry_count: int = 3
|
|
timeout_seconds: int = 30
|
|
created_by: uuid.UUID | None = None
|
|
updated_by: uuid.UUID | None = None
|
|
created_at: datetime
|
|
updated_at: datetime
|