Directories
¶
| Path | Synopsis |
|---|---|
|
Package authz holds the shared intermediate representation for permission catalogs.
|
Package authz holds the shared intermediate representation for permission catalogs. |
|
authztest
Package authztest holds shared helpers for authz property and integration tests.
|
Package authztest holds shared helpers for authz property and integration tests. |
|
compiler
Package compiler turns a profile-valid authz model into storage-neutral catalog mutations and query-plan metadata.
|
Package compiler turns a profile-valid authz model into storage-neutral catalog mutations and query-plan metadata. |
|
openfga
Package openfga adapts the upstream OpenFGA language package into Zitadel's authz IR.
|
Package openfga adapts the upstream OpenFGA language package into Zitadel's authz IR. |
|
profile
Package profile enforces the bounded subset of OpenFGA that Zitadel can compile into portable relational query plans (ADR 032 §2).
|
Package profile enforces the bounded subset of OpenFGA that Zitadel can compile into portable relational query plans (ADR 032 §2). |
|
resolver
Package resolver evaluates single-resource permission checks and list authorization against relational authz storage (ADR 032–033 / issue #423).
|
Package resolver evaluates single-resource permission checks and list authorization against relational authz storage (ADR 032–033 / issue #423). |
|
bootstrap
|
|
|
platform
Package platform bootstraps deployment-level platform resources at server startup.
|
Package platform bootstraps deployment-level platform resources at server startup. |
|
mock
Package cryptomock is a generated GoMock package.
|
Package cryptomock is a generated GoMock package. |
|
mock
Package domainmock is a generated GoMock package.
|
Package domainmock is a generated GoMock package. |
|
Package errreport centralizes error location and stack capture for structured logging and GCP Error Reporting (ADR 030).
|
Package errreport centralizes error location and stack capture for structured logging and GCP Error Reporting (ADR 030). |
|
Package httputil provides the hardened egress HTTP client for every fetch of a URL a platform user can inject (schema ingestion today; social login and tenant webhooks later).
|
Package httputil provides the hardened egress HTTP client for every fetch of a URL a platform user can inject (schema ingestion today; social login and tenant webhooks later). |
|
Package idp is the identity-provider engine: it turns a pinned connection revision into a relying-party client and drives the sign-in ceremony with it.
|
Package idp is the identity-provider engine: it turns a pinned connection revision into a relying-party client and drives the sign-in ceremony with it. |
|
metrics
Package metrics holds the instrument sets the server reports through, one per kind of thing worth measuring, so a component becomes observable by passing an option to its constructor rather than by declaring instruments of its own.
|
Package metrics holds the instrument sets the server reports through, one per kind of thing worth measuring, so a component becomes observable by passing an option to its constructor rather than by declaring instruments of its own. |
|
mocks
Package mocks is a generated GoMock package.
|
Package mocks is a generated GoMock package. |
|
Package staticui serves an embedded SPA under a URL prefix with trailing-slash redirect and index.html fallback for client-side routes.
|
Package staticui serves an embedded SPA under a URL prefix with trailing-slash redirect and index.html fallback for client-side routes. |
|
storage
|
|
|
branding
Package branding holds shared encoding helpers for the branding definition JSON column used by v2 dialect statements.
|
Package branding holds shared encoding helpers for the branding definition JSON column used by v2 dialect statements. |
|
dbtest
Package dbtest provides shared bring-up of databases for v2 storage integration test suites.
|
Package dbtest provides shared bring-up of databases for v2 storage integration test suites. |
|
deployment
Package deployment holds shared helpers for the deployments table used by v2 dialect statements: list options, the create-time guard, and the encoding of the metadata JSON column.
|
Package deployment holds shared helpers for the deployments table used by v2 dialect statements: list options, the create-time guard, and the encoding of the metadata JSON column. |
|
dialect/authattempt
Package authattempt holds shared helpers for auth-attempt statement dialects.
|
Package authattempt holds shared helpers for auth-attempt statement dialects. |
|
dialect/authz
Package authz holds dialect-independent Wave 1 authz persistence helpers: lifecycle projection (multi-write), membership-edge Filter schema, and catalog row mapping from compiler mutations.
|
Package authz holds dialect-independent Wave 1 authz persistence helpers: lifecycle projection (multi-write), membership-edge Filter schema, and catalog row mapping from compiler mutations. |
|
dialect/compare
Package compare provides shared SQL fragments for dialect statement compilers.
|
Package compare provides shared SQL fragments for dialect statement compilers. |
|
dialect/idgen
Package idgen provides managed resource ID generation for v2 dialects.
|
Package idgen provides managed resource ID generation for v2 dialects. |
|
dialect/idgen/idgenmock
Package idgenmock is a generated GoMock package.
|
Package idgenmock is a generated GoMock package. |
|
dialect/schematest
Package schematest asserts the nullable-binding contract shared by every dialect schema: the Nullable flag is set, the absent state binds untyped nil, and the present state binds the dereferenced value.
|
Package schematest asserts the nullable-binding contract shared by every dialect schema: the Nullable flag is set, the absent state binds untyped nil, and the present state binds the dereferenced value. |
|
dialect/sqlite/migration
Package migration applies SQLite schema migrations using goose.
|
Package migration applies SQLite schema migrations using goose. |
|
flowdefinition
Package flowdefinition holds shared encoding helpers for the flow_definitions definition JSON column used by v2 dialect statements.
|
Package flowdefinition holds shared encoding helpers for the flow_definitions definition JSON column used by v2 dialect statements. |
|
idpconnection
Package idpconnection holds the read plumbing every dialect shares for identity provider connections joined to their revisions.
|
Package idpconnection holds the read plumbing every dialect shares for identity provider connections joined to their revisions. |
|
idpidentitylink
Package idpidentitylink holds the read plumbing every dialect shares for identity links.
|
Package idpidentitylink holds the read plumbing every dialect shares for identity links. |
|
project
Package project holds the shared encoding for the projects table's one JSON column -- the password hashing policy -- used by every dialect's statements.
|
Package project holds the shared encoding for the projects table's one JSON column -- the password hashing policy -- used by every dialect's statements. |
|
release
Package release holds shared encoding helpers for the two JSON columns of the releases table — the pinned pointer set and the metadata — used by v2 dialect statements.
|
Package release holds shared encoding helpers for the two JSON columns of the releases table — the pinned pointer set and the metadata — used by v2 dialect statements. |
|
stmttest
Package stmttest holds shared behavioral integration tests for v2 statement implementations.
|
Package stmttest holds shared behavioral integration tests for v2 statement implementations. |
|
userteam
Package userteam binds the user roster read: team memberships joined to the teams they point at.
|
Package userteam binds the user roster read: team memberships joined to the teams they point at. |
|
variable
Package variable holds the dialect-independent row shape, query options and domain mapping for the variables table.
|
Package variable holds the dialect-independent row shape, query options and domain mapping for the variables table. |
Click to show internal directories.
Click to hide internal directories.