Applied-model is the read-time source of truth for feature availability
Closes the "stale DB leaks a disabled feature" gap by gating every surface that touches OrgFeature / ServiceType through the applied security model. - ********...
Wire applied-model enforcement across every controller
Every non-role setting on the applied security model is now enforced at the exact controller boundary it governs, and the scalar settings round-trip cleanly thr...
Enforce system-role assignment and auto-admin for team-member owners
MemberSecurityController now enforces the three assignment invariants defined in the brainstorm spec: - saveMemberSecurity: before persisting the caller's requ...
Master-model + applied-model endpoints and template-aware org seeding
Adds the controllers that surface the new branch-type security flow: - /api/security/master-model (GET/PUT) manages the current org's master model; only writ...
Supplement session rights with all known rights for grant-all roles
Add SSE endpoint for real-time email verification + improve welcome email logging
Add resetCode to password reset email, add emailVerifyByCode endpoint, send WELCOME_MEMBER after email verification
Pass human-readable expiry time to email verification template
Add humanizeMinutes() helper that formats minutes as days/hours/minutes (e.g. "1 day" for 1440 min). Pass as {{expiryText}} to match updated canonical template ...
Add code-based email verification path to /verify-email endpoint
The endpoint now handles both token (link click) and userId+code (manual 6-digit entry). Token path unchanged; code path hashes the supplied code and matches ag...
Add register-photo endpoint for unauthenticated post-registration avatar upload
POST **************** accepts userId + file/fileSm/fileMd/fileLg without a session. Guards: user must be unverified and have no avatar yet, preventing abuse aga...
Add GET /api/security/geoip/me for client IP country lookup
Reads real client IP from X-Forwarded-For / X-Real-IP headers, does a GeoLite2 lookup, and returns { country_code, country_name }. Used by kamo-register's count...
Implement SP4 email verification and registration wiring
- Delete legacy email/VerificationEmail.java (hardcoded SMTP stub) - Add **************** (mirrors recovery package pattern) - Add **************** — token gene...
Add AccountSettingsController + Service for phone + security questions (SP3)
Allows logged-in users to set/verify phone and configure 3 security questions. Routes to /api/account/* (session-authenticated via KSESSION_DATA).
Add BulkTextSmsClient + EmailTemplateServiceClient + PasswordRecoveryController (SP3)
Full password recovery flow: email-link, SMS OTP, security questions, seed phrase. Routes to /api/recover/* (unauthenticated). Uses SP1 email pipeline + VOIPSer...
Wire EmailTemplateSeedClient into ****************
Thin RestTemplate client that POSTs to EmailService's **************** after an org + owner TeamMember are persisted. Retries twice with backoff; failure throws...
Add public known-aliases endpoint for kamo-nowww build-time bake-in
Add analytics → analytics text replacement in changelog sanitization
Redact tokens ≥32 chars in changelog sanitization
Any word (run of non-whitespace) that is 32 characters or longer is replaced with **************** before titles and descriptions are sent to the translation se...
Generate TXT verification token on domain create, check in verify-dns
- createDomain: generate 32-char UUID token and store via setVerificationToken - verifyDns: check _kamo-verify TXT record for kamo-site-verification=<token> - T...
Update required aliases — add app, capcha, docs, sign; remove legacy
Add /setup/dns backend — one-domain enforcement, SSL probe, new aliases
- Enforce one custom domain per org in POST /api/security/domains - Add capcha, docs, sign to standard aliases; remove legacy aliases - Update verify-dns to tra...
Move changelog word replacement to backend before translation
Text replacements (Docs→Docs, Meet→Meet, etc.) and secret name redaction (K8s secret names→***) were previously applied client-side in ChangelogClient.tsx, mean...
Додавання асинхронного перекладу для планів зміни та підписки, додавання локальних публічних API
Додавання контролерів з управління активами та публічним отриманням
Додає два контролери для автоматизованої системи збирання свинцю: - LeadIntakeController: автентифікований CRUD для вхідних кінцевих точок, поле картографування...
Магазин учасникаТип на Redis
Додаток CASE WHEN e.id НЕ NULL the 'TEAM MEMBER' ELSE 'MEMBER' END до Увійти за запитом і передається результат через створенняСезія в Redis, може відрізняти чл...
Синхронний пер-сторінок великого пальця під час завантаження шаблону з гранульованим прогресом WS
- Додати залежність PDFBox до pom.xml - Після зберігання перетворений PDF, надайте всі сторінки за допомогою PDFRenderer і завантажте кожну як {id} thumb p{n}.p...
Додавання /api/changelog/public/stats endpoint для сукупних підрахунків за типом та проектом
Додавання перевірки секрету webhook для зміни кінцевої точки
Оборона-глибина: дійсні *** заголовок на Надання послуг безпеки на додаток до перевірки воріт APIService.
Додавання рівня доступу користувачів та кінцевих точок статусу власника
Додати GET і PATCH *********** кінцеві точки для читання та оновлення рівнів доступу з повним дозволом. Створення організації оновлень для створенняОрганізаціїО...
Додайте етапи прогресу перетворення гранули з 8-ма різними оновленнями WebSocket
Етапи: завантаження (0-15%) → приготування (15-20%) → перетворення (20-65%) → Перевірка (65-75%) → зберігання (75-90%) → завершення (90-100%) → завершено
Синхронний конверт PDF для завантаження шаблону електронних підписів
Шаблон завантаження тепер конвертувати безпосередньо через ПеретворенняПослуги під час Завантажити запит. Публікації подій НАТС для в режимі реального часу WebS...
Add e-signature template API endpoints
- POST **************** — upload template with scope control - POST **************** — list templates by context and status - PATCH **************** — update te...
Замініть перевірку Google Re****
Видалити Re*** Додати CapchaVerificationService, який перевіряє *** перезавантаження через kamo-capcha сервіс /api/verify кінцева точка. Статус на сервери bean ...
Додавання кінцевих точок інтеграції роздрібних провайдерів для тестування з'єднання, синхронізації, можливостей та вебок
Розширені POST /customers, щоб прийняти контактну інформацію та шукати користувачів електронною поштою
Створіть обліковий запис зараз приймає електронну пошту, контактну ім'я, телефон, приймаєМаркетинг, податковий супровід. Якщо електронна пошта надається і відпо...
Додати 18 реквізитів для управління комерцією
Нові кінцеві пункти в обліковому записі - Замовник CRUD: GET/POST/PUT/DELETE /customers, GET /customers/{uid} - Асоційовані дані: GET /customers/{uid}/leads, /o...
Додайте 111 кінцевих точок роздрібної торгівлі
Всі кінцеві точки під /{marketId}/retail/... просторове покриття: - Категорії, бренди, атрибути (з значеннями), зображення, варіанти, теги, відгуки - Клієнти, а...
Expand CommerceMarketController with nested market-centric endpoints
Replace flat POS endpoints with market-scoped REST hierarchy: - Products, inventory, vendor categories under /{marketId}/products, /inventory, /vendor-categorie...
Як ви бачите відправлення?
Кожен з цих оновлень землі в робочому просторі автоматично. Почати вільний час і дивитися його на тиждень після тижня.