Skip to content

Public RLS, grafana_ro policies, runner_progress trigger, doc polish - #20

Merged
atharvas merged 6 commits into
mainfrom
feat/public-rls-and-grafana
Apr 16, 2026
Merged

Public RLS, grafana_ro policies, runner_progress trigger, doc polish#20
atharvas merged 6 commits into
mainfrom
feat/public-rls-and-grafana

Conversation

@atharvas

Copy link
Copy Markdown
Member

Summary

  • Public read-only RLS (00012) for repositories, pull_requests, candidate_containers, harbor_runs via the anon role.
  • grafana_ro policies (00013) so the Grafana role can read through RLS, plus refreshed dashboard panels.
  • runner_progress.updated_at trigger (00014) so upserts actually bump the timestamp and live runs are distinguishable from zombies.
  • Docs: converted the four ASCII architecture diagrams to Mermaid (remote-access, monitoring, datasmith.agents.synthesizer, datasmith.resolution), rewrote docs/guide/remote-access.md with user/developer perspectives, and added a CLAUDE.md note mandating Mermaid for doc diagrams.
  • Gitignore: exclude local artifacts (.claude/, backups/, jobs/, .python-version) and one-off run_*.py debug scripts.

Test plan

  • make check (ruff, mypy, deptry) clean
  • uv run pytest — 598 passed
  • Confirm GitHub Actions green
  • Apply migrations 00012-00014 against the host Supabase instance after merge

@atharvas
atharvas merged commit 3376271 into main Apr 16, 2026
3 checks passed
@atharvas
atharvas deleted the feat/public-rls-and-grafana branch April 16, 2026 22:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant