Claude Config API (v0.6): - Add CRUD endpoints for commands, skills, and agents - Commands/skills/agents stored in /workspace/.claude/ (per-project, in git) - Credentials shared via PVC at /root/.claude/ (shared across pods) - Use base64 encoding for file writes (prevents shell injection) - Add content size limits (1MB max) Security Hardening: - Add sanitize package for command/prompt validation - Add rate limiting middleware (token bucket algorithm) - Add concurrent command limiting - Add input sanitization to all command handlers - Gitignore secrets.yaml and credentials.yaml - Add *.example templates for secrets Testing Infrastructure: - Add testutil package with mocks and fixtures - Add unit tests for auth package (63% coverage) - Add unit tests for executor (47% coverage) - Add handler integration tests (40% coverage) - Add 100% coverage for sanitize, cmdlimit packages - Add 96% coverage for ratelimit package Infrastructure: - Shared Claude credentials PVC (ReadWriteMany) - Reduced workspace PVC size from 20Gi to 5Gi - Add init container cleanup before git clone - Document Longhorn RWX requirements Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
48 lines
1.1 KiB
Go
48 lines
1.1 KiB
Go
package domain
|
|
|
|
import "time"
|
|
|
|
// CommandID is a strongly-typed identifier for commands.
|
|
type CommandID string
|
|
|
|
// CommandType represents the type of command being executed.
|
|
type CommandType string
|
|
|
|
const (
|
|
CommandTypeClaude CommandType = "claude"
|
|
CommandTypeShell CommandType = "shell"
|
|
CommandTypeGit CommandType = "git"
|
|
)
|
|
|
|
// Command represents a command to execute in a project's pod.
|
|
type Command struct {
|
|
ID CommandID
|
|
ProjectID ProjectID
|
|
Type CommandType
|
|
Args []string
|
|
StartedAt time.Time
|
|
}
|
|
|
|
// CommandResult represents the outcome of command execution.
|
|
type CommandResult struct {
|
|
CommandID CommandID
|
|
ExitCode int
|
|
DurationMs int64
|
|
Error error
|
|
}
|
|
|
|
// Success returns true if the command completed successfully.
|
|
func (r *CommandResult) Success() bool {
|
|
return r.Error == nil && r.ExitCode == 0
|
|
}
|
|
|
|
// OutputLine represents a single line of command output.
|
|
type OutputLine struct {
|
|
Stream string // "stdout" or "stderr"
|
|
Line string
|
|
Timestamp time.Time
|
|
}
|
|
|
|
// OutputHandler is called for each line of output from a command.
|
|
type OutputHandler func(line OutputLine)
|