feat(group): 1st implementation of Groups

this implements first version (manageable only by admin right now)

    routes:

        GET /api/groups
        List subject groups (paginated). Admin-only.

        POST /api/groups
        Create a new ReBAC subject group. Admin-only. The name must match the RFC 5321 local-part shape and be globally unique (case-insensitive).

        GET /api/groups/search
        Search non-virtual groups by name substring. Authenticated only (no admin role required) — backs the share-dialog recipient autocomplete.

        GET /api/groups/{id}
        Fetch a single group's details. Admin-only.

        DELETE /api/groups/{id}
        Delete a group. Cascades to `subject_group_members` (FK) and to `access_grants` rows referencing this group as a subject. Admin-only.

        PATCH /api/groups/{id}
        Update a group's metadata. Admin-only. v1 only persists name renames.

        GET /api/groups/{id}/effective-members
        List every user transitively reached through this group (members of members of members, etc.). Used by admin / audit tooling. Admin-only.

        GET /api/groups/{id}/members
        List the *direct* members of a group (one level only). Admin-only.

        POST /api/groups/{id}/members
        Add a member to a group. Exactly one of `user_id` / `group_id` must be provided. Adding a group-member runs a write-time cycle check and a nesting-depth check (max 8). Admin-only.

        DELETE /api/groups/{id}/members/group/{gid}
        Remove a nested group-member from a group. Admin-only.

        DELETE /api/groups/{id}/members/user/{uid}
        Remove a user-member from a group. Admin-only.

fix hurl

groups

round

groups
This commit is contained in:
Edouard Vanbelle
2026-05-30 23:35:47 +02:00
parent 41356b6490
commit 09985f8a95
54 changed files with 6421 additions and 145 deletions
+35 -2
View File
@@ -131,7 +131,8 @@
"light": "라이트",
"dark": "다크",
"auto": "시스템과 동일"
}
},
"manage_groups": "그룹 관리"
},
"share": {
"dialogTitle": "공유 링크",
@@ -336,7 +337,13 @@
"move_error": "이동 오류",
"empty_name": "이름은 비워둘 수 없습니다",
"name_exists": "같은 이름의 파일 또는 폴더가 이미 존재합니다",
"generic_error": "오류가 발생했습니다"
"generic_error": "오류가 발생했습니다",
"group_name_invalid": "그룹 이름은 이메일 접두사 형식과 일치해야 합니다(문자, 숫자, 점, 대시, 밑줄; 1–64자).",
"group_cycle": "이 구성원은 그룹 간 순환 참조를 만들 것입니다.",
"group_depth_exceeded": "중첩 깊이가 허용 최대값(8)을 초과합니다.",
"group_virtual_immutable": "«Internal» 그룹은 시스템이 관리하며 수정할 수 없습니다.",
"group_not_found": "그룹을 찾을 수 없습니다.",
"group_name_taken": "이 이름의 그룹이 이미 존재합니다."
},
"breadcrumb": {
"home": "홈"
@@ -755,5 +762,31 @@
"today": "오늘",
"last7days": "최근 7일",
"last30days": "최근 30일"
},
"groups": {
"title": "그룹 관리",
"create_button": "그룹 생성",
"create_dialog_title": "새 그룹",
"edit_dialog_title": "그룹 이름 변경",
"name_label": "이름",
"name_placeholder": "engineering",
"description_label": "설명(선택사항)",
"members_section": "구성원",
"add_member_placeholder": "사용자 또는 그룹 추가…",
"no_members": "아직 구성원이 없습니다.",
"remove_member": "제거",
"delete_group": "그룹 삭제",
"delete_confirm": "\"{name}\" 그룹을 삭제하시겠습니까? 이 그룹을 참조하는 모든 권한이 해제됩니다.",
"empty_state": "아직 그룹이 없습니다.",
"load_more": "더 보기",
"back_to_list": "뒤로",
"loading": "로딩 중…",
"virtual_badge": "시스템",
"member_count_zero": "구성원 없음",
"member_count_one": "구성원 1명",
"member_count_other": "구성원 {count}명",
"delete_confirm_label": "확인을 위해 그룹 이름을 입력하세요:",
"delete_confirm_mismatch": "확인을 위해 그룹 이름을 정확히 입력하세요.",
"virtual_internal_name": "내부"
}
}