* Add push notifications support * fix(notifications): address push notification review findings - Gate the capability endpoint's apple_push availability on the admin delivery toggle, matching web push: Available now means setup will actually deliver. - Reject direct admin writes to push_relay_deployment_id/api_key; the relay issues them as a pair during registration and a lone write desyncs them (and poisons the next rotation request). - Purge a device's registrations under other profiles when it re-registers, so a profile switch on a shared device stops the old profile's pushes (attempts cascade); adds a DB-backed test. - Extract the shared channelDispatcher core + retry sweep and rebuild the webhook/web push/Apple push dispatchers on it instead of keeping three copies of the worker-pool/retry loop. - Deduplicate relay URL validation (admin setting + register flow) and the push outbox attempt-building loops behind shared helpers. - Cap free-text decline reasons in notification display bodies. - Fix TestHandleApplePushDisplayDB expectations to match the shared display copy (test previously failed under SILO_TEST_DATABASE_URL). Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> * fix(notifications): route push relay URL writes through registration only Direct writes to notifications.push_relay_url via the admin settings endpoint bypassed the relay registration flow, letting the stored URL drift out of sync with the deployment id / API key pair the relay minted for it. Reject the URL alongside the deployment id and API key in the settings handler; POST /admin/notifications/push/relay/register remains the only path that persists all three together. The admin UI's Relay URL field now edits local draft state and is applied by the Register/Rotate action instead of the settings save. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> --------- Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
47 lines
1.9 KiB
SQL
47 lines
1.9 KiB
SQL
-- +goose Up
|
|
-- +goose StatementBegin
|
|
CREATE TABLE public.push_devices (
|
|
id text PRIMARY KEY,
|
|
user_id integer NOT NULL,
|
|
profile_id text NOT NULL,
|
|
device_id varchar(128) NOT NULL,
|
|
platform text NOT NULL,
|
|
provider text NOT NULL,
|
|
apns_environment text,
|
|
apns_topic text,
|
|
apns_token_ciphertext text,
|
|
apns_token_hash text,
|
|
server_device_id text NOT NULL,
|
|
push_mode text NOT NULL DEFAULT 'private_push',
|
|
enabled boolean NOT NULL DEFAULT true,
|
|
last_seen_at timestamptz,
|
|
last_success_at timestamptz,
|
|
last_failure_at timestamptz,
|
|
last_failure_code text,
|
|
created_at timestamptz NOT NULL DEFAULT now(),
|
|
updated_at timestamptz NOT NULL DEFAULT now(),
|
|
CONSTRAINT push_devices_profile_device_platform_key UNIQUE (profile_id, device_id, platform),
|
|
CONSTRAINT push_devices_server_device_id_key UNIQUE (server_device_id),
|
|
CONSTRAINT push_devices_platform_check CHECK (platform IN ('apple')),
|
|
CONSTRAINT push_devices_provider_check CHECK (provider IN ('silo_relay')),
|
|
CONSTRAINT push_devices_apns_environment_check CHECK (apns_environment IN ('production', 'sandbox')),
|
|
CONSTRAINT push_devices_push_mode_check CHECK (push_mode IN ('off', 'in_app_only', 'private_push')),
|
|
CONSTRAINT push_devices_apple_fields_check CHECK (
|
|
platform = 'apple'
|
|
AND apns_environment IS NOT NULL
|
|
AND apns_topic IS NOT NULL
|
|
AND apns_token_ciphertext IS NOT NULL
|
|
AND apns_token_hash IS NOT NULL
|
|
)
|
|
);
|
|
|
|
CREATE INDEX push_devices_profile_idx ON public.push_devices (profile_id);
|
|
CREATE INDEX push_devices_profile_enabled_idx ON public.push_devices (profile_id) WHERE enabled;
|
|
CREATE INDEX push_devices_apns_token_hash_idx ON public.push_devices (apns_token_hash);
|
|
-- +goose StatementEnd
|
|
|
|
-- +goose Down
|
|
-- +goose StatementBegin
|
|
DROP TABLE IF EXISTS public.push_devices;
|
|
-- +goose StatementEnd
|