Repository navigation
同步上游 v1.0.0-rc.41 并保留自定义补丁(tokens 子串搜索 / usage-logs 审计 / group 列加宽) - #3
Merged
Merged
Conversation
|
| GitGuardian id | GitGuardian status | Secret | Commit | Filename | |
|---|---|---|---|---|---|
| 36243164 | Triggered | Generic High Entropy Secret | e1ddf79 | controller/token_test.go | View secret |
🛠 Guidelines to remediate hardcoded secrets
- Understand the implications of revoking this secret by investigating where it is used in your code.
- Replace and store your secret safely. Learn here the best practices.
- Revoke and rotate this secret.
- If possible, rewrite git history. Rewriting git history is not a trivial act. You might completely break other contributing developers' workflow and you risk accidentally deleting legitimate data.
To avoid such incidents in the future consider
- following these best practices for managing and storing secrets including API keys and other credentials
- install secret detection on pre-commit to catch secret before it leaves your machine and ease remediation.
🦉 GitGuardian detects secrets in your source code to help developers and security teams secure the modern development process. You are seeing this because you or someone else with access to this repository has authorized GitGuardian to scan your pull request.
移植自 relaxcloud/main 的 API key 分组筛选功能: - GET /api/token/ 与 /api/token/search 支持重复 group 查询参数(多分组 IN 过滤) - keys 页工具栏新增分组 faceted filter(含 All Groups 清除项),选项来自 /api/user/self/groups - data-table faceted filter 组件新增 allOptionValue/showCounts - 修复 token controller 测试在 -run 隔离下因列名未初始化导致的失败
yang-nan-1
force-pushed
the
deploy-v1.0.0-rc.41
branch
from
October 8, 2026 06:16
d8ebb54 to
e1ddf79
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Agent
Links
User request
new-api:amd64引用Out of scope — refuse
Open gate — do not open unless all are satisfied
go buildor tests passed: yes(见 Verification,含三库升级模拟与镜像冒烟)Kind
Issue facts
不适用(版本同步 PR)。与升级相关的关键事实:
Change
本分支 = 上游 tag
v1.0.0-rc.41(2035a82) + 4 个定制提交 + 对 main 的合并(-s ours,合并结果与部署分支内容一致):49654615afix(tokens): use substring matching for searches — token 名称/key 关键字改为子串匹配(保留commonKeyCol方言转义),含测试更新4bd18cd2efeat(usage-logs): capture and display prompt audit details — 原定制提交适配 rc.41 的*model.LogOther分级模型:审计数据改存other.audit_info.prompt_audit(管理员/root 可见,/api/log/self等用户视图自动剥离);保留上游新增的FormatAdminLogs/FormatRootLogs角色格式化2aaa23247chore(model): widen group columns to varchar(255) —users/channels/abilities三个group字段模型定义加宽;不含自动迁移(用户明确否决),存量库列仍为 varchar(64),需要长分组名时手动ALTER TABLE ... varchar(255)d8ebb542afeat(tokens): filter API keys by group — 移植自 main 的 API key 分组筛选:后端?group=a&group=b多分组 IN 过滤;前端 keys 页新增分组 faceted filter(适配 rc.41 的web/src新前端结构)8c1d91863chore: set release version to v1.0.0-rc.41 —VERSION写入正式 tag(镜像/二进制版本号由此注入)合并说明:远程仓库历史已按用户要求重整 —— 上游历史压缩为单个快照提交
a183094e4(新 main),本 PR 仅含上述定制提交;合并后 main 历史为线性 6 个提交,贡献者均为组织内成员。未移植的定制功能(MAC 地址白名单)见backup/main-rc24(该分支也已重写为快照基座 + 原 7 个自定义提交)。Research
Duplicate / prior art
Docs and code
model/token.go(搜索)、controller/log.go+service/usage_prompt_audit.go(审计)、model/{user,channel,ability}.go(列宽)Alternatives considered
Files
Behavior
Verification
go build ./...(web/dist 占位)— 通过go test ./controller ./model ./service ./relay/channel/openai ./relay/channel/claude ./common— 全部通过(约 35s);含分组筛选 4 个新用例(单分组/多分组/搜索+分组组合)bun run typecheck、bunx vitest run src/features/keys src/components/data-table(74 用例)、bun run build— 全部通过;改动文件 oxlint 0 errordocker run日志New API v1.0.0-rc.41 ... ready in 385 msdocker save导出 tar 后重新docker load,确认同时注册new-api:v1.0.0-rc.41与new-api:amd64两个 tagusage_prompt_audit_test.go/token_test.go适配 rc.41 结构Risks
ALTER TABLE users/channels/abilities MODIFY COLUMN \group` varchar(255)(MySQL)或ALTER COLUMN "group" TYPE varchar(255)`(PG);订阅/预填分组的新 group 字段仍为 64,需要时再另行加宽Scope check