Commit 5593f9c1d6
Verified · cmc
Layout: unified · split
Parity.org +15 −4
| @@ -16,8 +16,10 @@ stranded a capability where only it can reach. | ||
| 16 | 16 | A capability lands over SSH first. If it belongs to the |
| 17 | 17 | triage/review/respond loop, it lands on the web in the same merge |
| 18 | 18 | request. Anything whose input is a credential — secrets, mirror |
| 19 | tokens, API tokens, session minting — stays SSH-only by design: the | |
| 20 | web dispatcher refuses =SSHOnly= commands outright. | |
| 19 | tokens, API tokens — stays SSH-only by design: the web dispatcher | |
| 20 | refuses =SSHOnly= commands outright. Session minting is not one of | |
| 21 | them: what a browser submits to ask for a login link is a username or | |
| 22 | an address, and the credential it gets back travels by mail. | |
| 21 | 23 | |
| 22 | 24 | Rows are one page or one action each. Grouped rows hide gaps, twice |
| 23 | 25 | now: "browse, log, blame, search" read as covered while blame had no |
| @@ -228,6 +230,7 @@ client has no use for one (krz/gitbay#57). | ||
| 228 | 230 | | API token mint | yes | no | no | |
| 229 | 231 | | account export bundle | yes | no | no | |
| 230 | 232 | | profile set | yes | no | no | |
| 233 | | request a login link | n/a | yes | no | | |
| 231 | 234 | |
| 232 | 235 | Notifications land in an inbox row per recipient whether or not the |
| 233 | 236 | instance sends mail, and mail is the second half when SMTP is |
| @@ -237,6 +240,15 @@ web rail carry the unread count. =repo watch= adds you to a | ||
| 237 | 240 | repository's notifications and =repo unwatch= mutes it, and a mute wins |
| 238 | 241 | over owning the repository or having written the thread. |
| 239 | 242 | |
| 243 | A login link is requested from the login page by username or verified | |
| 244 | address, and arrives by mail: it works once and expires in fifteen | |
| 245 | minutes. The row is =n/a= for the CLI because a terminal with a | |
| 246 | registered key runs =web login=, which mints a link directly and needs | |
| 247 | no mail. It exists because an account with no SSH key had no way into | |
| 248 | the web at all (krz/gitbay#155). The page offers the form only when the | |
| 249 | instance has SMTP configured; there is no separate switch. The response | |
| 250 | never says whether the account exists. | |
| 251 | ||
| 240 | 252 | =profile set= carries description, website, about and links. It is not |
| 241 | 253 | =SSHOnly= — nothing about a bio is a credential, and the JSON API runs |
| 242 | 254 | it — but no surface has ever offered a form, so the =no= above is |
| @@ -264,8 +276,7 @@ with the same cursors; iOS pages with them too. | ||
| 264 | 276 | * SSH only, by design |
| 265 | 277 | |
| 266 | 278 | Build secrets, mirror configuration and tokens, custom domain claims, |
| 267 | API token minting, web session minting, deploy keys, account and | |
| 268 | instance administration. Deleting or transferring a repository is also | |
| 279 | API token minting, deploy keys, account and instance administration. Deleting or transferring a repository is also | |
| 269 | 280 | CLI-only: both want a typed confirmation, not a button. |
| 270 | 281 | |
| 271 | 282 | These are the only rows where a =no= is intended. Everywhere else a |