|
Deploy to S3 / deploy (push) Successful in 23s
Details
Every business action now lands in a new append-only audit_log table with the verified signed-in identity: logins, closing create/delete/reopen, file upload (incl. replacements) and delete, processing runs, export generation and downloads. Rows carry no FK so history survives a closing's deletion. Admins (new users.is_admin flag, granted via `manage.py set-admin <username>`) can read it at /api/audit and in a new Audit Log page in the sidebar; everyone else gets 403 and no nav entry. login/me responses now carry is_admin. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| __init__.py | ||
| database.py | ||
| models.py | ||