Skip to content

Feat/3.0.0 beta1 - #2332

Merged
zgqgit merged 2 commits into
releasefrom
feat/3.0.0-beta1
Aug 19, 2026
Merged

Feat/3.0.0 beta1#2332
zgqgit merged 2 commits into
releasefrom
feat/3.0.0-beta1

Conversation

@zgqgit

@zgqgit zgqgit commented Aug 19, 2026

Copy link
Copy Markdown
Collaborator

What

简要描述做了什么改动。

Why

为什么需要这个改动?

How

实现方式、设计决策(如有)。

Test

  • 本地测试通过
  • 114 测试服务器验证通过

Related

  • Issue/ticket:

zgqgit and others added 2 commits August 19, 2026 11:58
…mins

A super admin / tenant admin is authorized on identity and holds no grant
rows, so get_my_permissions built its action list from an empty grant set and
returned actions: [] — the resource showed as visible but with no edit/delete/
manage capability ('visible but powerless').

Report the full effective action set for the resource type when the actor is
privileged. Adds a bulk effective_actions(resource_type) lookup (the batch
sibling of is_action_effective) exposed through the runtime. Ordinary users
stay on the grant-derived path and still require a real visible relation.
crypto.randomUUID only exists in a secure context (HTTPS/localhost), so it
throws TypeError on any HTTP deployment. Switch the channel- and knowledge-
space-settings idempotency keys to the existing generateUUID() utility
already used elsewhere in the app.
@zgqgit
zgqgit merged commit 1662f27 into release Aug 19, 2026
1 of 2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant