Files
browser/openspec/changes/implement-role-scoped-server-access/tasks.md
T
2026-07-11 14:56:10 +08:00

20 lines
1.2 KiB
Markdown

## 1. Backend Model And Authorization
- [x] 1.1 Add server owner/admin membership fields, DTOs, copy helpers, filters, and validators.
- [x] 1.2 Update registration bootstrap so the first user becomes an authenticated platform administrator.
- [x] 1.3 Add service authorization helpers for platform admin, server owner, and server administrator visibility.
- [x] 1.4 Scope server list/detail/lifecycle HTTP APIs by bearer session and server ACLs.
- [x] 1.5 Add owner APIs for listing invite candidates, inviting administrators, and removing administrators.
## 2. Frontend User Flow
- [x] 2.1 Add API types and client methods for server membership and invite candidates.
- [x] 2.2 Render owner/admin metadata and owner-only administrator management in server detail.
- [x] 2.3 Ensure server-only users continue landing on and seeing only their server list/detail workspaces.
## 3. Verification
- [x] 3.1 Add backend tests for bootstrap registration, server ACL visibility, lifecycle authorization, and owner membership changes.
- [x] 3.2 Add frontend tests for role-scoped server UI and membership client behavior.
- [x] 3.3 Run OpenSpec strict validation, structure checks, backend tests, frontend tests, and browser walkthrough.