internal/

directory
v1.0.0-alpha.24 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Sep 30, 2026 License: AGPL-3.0

Directories

Path Synopsis
api
Package authz holds the shared intermediate representation for permission catalogs.
Package authz holds the shared intermediate representation for permission catalogs.
authztest
Package authztest holds shared helpers for authz property and integration tests.
Package authztest holds shared helpers for authz property and integration tests.
compiler
Package compiler turns a profile-valid authz model into storage-neutral catalog mutations and query-plan metadata.
Package compiler turns a profile-valid authz model into storage-neutral catalog mutations and query-plan metadata.
openfga
Package openfga adapts the upstream OpenFGA language package into Zitadel's authz IR.
Package openfga adapts the upstream OpenFGA language package into Zitadel's authz IR.
profile
Package profile enforces the bounded subset of OpenFGA that Zitadel can compile into portable relational query plans (ADR 032 §2).
Package profile enforces the bounded subset of OpenFGA that Zitadel can compile into portable relational query plans (ADR 032 §2).
resolver
Package resolver evaluates single-resource permission checks and list authorization against relational authz storage (ADR 032–033 / issue #423).
Package resolver evaluates single-resource permission checks and list authorization against relational authz storage (ADR 032–033 / issue #423).
bootstrap
platform
Package platform bootstraps deployment-level platform resources at server startup.
Package platform bootstraps deployment-level platform resources at server startup.
mock
Package cryptomock is a generated GoMock package.
Package cryptomock is a generated GoMock package.
mock
Package domainmock is a generated GoMock package.
Package domainmock is a generated GoMock package.
Package errreport centralizes error location and stack capture for structured logging and GCP Error Reporting (ADR 030).
Package errreport centralizes error location and stack capture for structured logging and GCP Error Reporting (ADR 030).
Package httputil provides the hardened egress HTTP client for every fetch of a URL a platform user can inject (schema ingestion today; social login and tenant webhooks later).
Package httputil provides the hardened egress HTTP client for every fetch of a URL a platform user can inject (schema ingestion today; social login and tenant webhooks later).
Package idp is the identity-provider engine: it turns a pinned connection revision into a relying-party client and drives the sign-in ceremony with it.
Package idp is the identity-provider engine: it turns a pinned connection revision into a relying-party client and drives the sign-in ceremony with it.
metrics
Package metrics holds the instrument sets the server reports through, one per kind of thing worth measuring, so a component becomes observable by passing an option to its constructor rather than by declaring instruments of its own.
Package metrics holds the instrument sets the server reports through, one per kind of thing worth measuring, so a component becomes observable by passing an option to its constructor rather than by declaring instruments of its own.
mocks
Package mocks is a generated GoMock package.
Package mocks is a generated GoMock package.
Package staticui serves an embedded SPA under a URL prefix with trailing-slash redirect and index.html fallback for client-side routes.
Package staticui serves an embedded SPA under a URL prefix with trailing-slash redirect and index.html fallback for client-side routes.
storage
branding
Package branding holds shared encoding helpers for the branding definition JSON column used by v2 dialect statements.
Package branding holds shared encoding helpers for the branding definition JSON column used by v2 dialect statements.
dbtest
Package dbtest provides shared bring-up of databases for v2 storage integration test suites.
Package dbtest provides shared bring-up of databases for v2 storage integration test suites.
deployment
Package deployment holds shared helpers for the deployments table used by v2 dialect statements: list options, the create-time guard, and the encoding of the metadata JSON column.
Package deployment holds shared helpers for the deployments table used by v2 dialect statements: list options, the create-time guard, and the encoding of the metadata JSON column.
dialect/authattempt
Package authattempt holds shared helpers for auth-attempt statement dialects.
Package authattempt holds shared helpers for auth-attempt statement dialects.
dialect/authz
Package authz holds dialect-independent Wave 1 authz persistence helpers: lifecycle projection (multi-write), membership-edge Filter schema, and catalog row mapping from compiler mutations.
Package authz holds dialect-independent Wave 1 authz persistence helpers: lifecycle projection (multi-write), membership-edge Filter schema, and catalog row mapping from compiler mutations.
dialect/compare
Package compare provides shared SQL fragments for dialect statement compilers.
Package compare provides shared SQL fragments for dialect statement compilers.
dialect/idgen
Package idgen provides managed resource ID generation for v2 dialects.
Package idgen provides managed resource ID generation for v2 dialects.
dialect/idgen/idgenmock
Package idgenmock is a generated GoMock package.
Package idgenmock is a generated GoMock package.
dialect/schematest
Package schematest asserts the nullable-binding contract shared by every dialect schema: the Nullable flag is set, the absent state binds untyped nil, and the present state binds the dereferenced value.
Package schematest asserts the nullable-binding contract shared by every dialect schema: the Nullable flag is set, the absent state binds untyped nil, and the present state binds the dereferenced value.
dialect/sqlite/migration
Package migration applies SQLite schema migrations using goose.
Package migration applies SQLite schema migrations using goose.
flowdefinition
Package flowdefinition holds shared encoding helpers for the flow_definitions definition JSON column used by v2 dialect statements.
Package flowdefinition holds shared encoding helpers for the flow_definitions definition JSON column used by v2 dialect statements.
idpconnection
Package idpconnection holds the read plumbing every dialect shares for identity provider connections joined to their revisions.
Package idpconnection holds the read plumbing every dialect shares for identity provider connections joined to their revisions.
idpidentitylink
Package idpidentitylink holds the read plumbing every dialect shares for identity links.
Package idpidentitylink holds the read plumbing every dialect shares for identity links.
project
Package project holds the shared encoding for the projects table's one JSON column -- the password hashing policy -- used by every dialect's statements.
Package project holds the shared encoding for the projects table's one JSON column -- the password hashing policy -- used by every dialect's statements.
release
Package release holds shared encoding helpers for the two JSON columns of the releases table — the pinned pointer set and the metadata — used by v2 dialect statements.
Package release holds shared encoding helpers for the two JSON columns of the releases table — the pinned pointer set and the metadata — used by v2 dialect statements.
stmttest
Package stmttest holds shared behavioral integration tests for v2 statement implementations.
Package stmttest holds shared behavioral integration tests for v2 statement implementations.
userteam
Package userteam binds the user roster read: team memberships joined to the teams they point at.
Package userteam binds the user roster read: team memberships joined to the teams they point at.
variable
Package variable holds the dialect-independent row shape, query options and domain mapping for the variables table.
Package variable holds the dialect-independent row shape, query options and domain mapping for the variables table.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL