Applied-model is the read-time source of truth for feature availability
Closes the "stale DB leaks a disabled feature" gap by gating every surface that touches OrgFeature / ServiceType through the applied security model. - ********...
Wire applied-model enforcement across every controller
Every non-role setting on the applied security model is now enforced at the exact controller boundary it governs, and the scalar settings round-trip cleanly thr...
Enforce system-role assignment and auto-admin for team-member owners
MemberSecurityController now enforces the three assignment invariants defined in the brainstorm spec: - saveMemberSecurity: before persisting the caller's requ...
Master-model + applied-model endpoints and template-aware org seeding
Adds the controllers that surface the new branch-type security flow: - /api/security/master-model (GET/PUT) manages the current org's master model; only writ...
Supplement session rights with all known rights for grant-all roles
Add SSE endpoint for real-time email verification + improve welcome email logging
Add resetCode to password reset email, add emailVerifyByCode endpoint, send WELCOME_MEMBER after email verification
Pass human-readable expiry time to email verification template
Add humanizeMinutes() helper that formats minutes as days/hours/minutes (e.g. "1 day" for 1440 min). Pass as {{expiryText}} to match updated canonical template ...
Add code-based email verification path to /verify-email endpoint
The endpoint now handles both token (link click) and userId+code (manual 6-digit entry). Token path unchanged; code path hashes the supplied code and matches ag...
Add register-photo endpoint for unauthenticated post-registration avatar upload
POST **************** accepts userId + file/fileSm/fileMd/fileLg without a session. Guards: user must be unverified and have no avatar yet, preventing abuse aga...
Add GET /api/security/geoip/me for client IP country lookup
Reads real client IP from X-Forwarded-For / X-Real-IP headers, does a GeoLite2 lookup, and returns { country_code, country_name }. Used by kamo-register's count...
Implement SP4 email verification and registration wiring
- Delete legacy email/VerificationEmail.java (hardcoded SMTP stub) - Add **************** (mirrors recovery package pattern) - Add **************** — token gene...
Add AccountSettingsController + Service for phone + security questions (SP3)
Allows logged-in users to set/verify phone and configure 3 security questions. Routes to /api/account/* (session-authenticated via KSESSION_DATA).
Add BulkTextSmsClient + EmailTemplateServiceClient + PasswordRecoveryController (SP3)
Full password recovery flow: email-link, SMS OTP, security questions, seed phrase. Routes to /api/recover/* (unauthenticated). Uses SP1 email pipeline + VOIPSer...
Wire EmailTemplateSeedClient into ****************
Thin RestTemplate client that POSTs to EmailService's **************** after an org + owner TeamMember are persisted. Retries twice with backoff; failure throws...
Add public known-aliases endpoint for kamo-nowww build-time bake-in
Add analytics → analytics text replacement in changelog sanitization
Redact tokens ≥32 chars in changelog sanitization
Any word (run of non-whitespace) that is 32 characters or longer is replaced with **************** before titles and descriptions are sent to the translation se...
Generate TXT verification token on domain create, check in verify-dns
- createDomain: generate 32-char UUID token and store via setVerificationToken - verifyDns: check _kamo-verify TXT record for kamo-site-verification=<token> - T...
Update required aliases — add app, capcha, docs, sign; remove legacy
Add /setup/dns backend — one-domain enforcement, SSL probe, new aliases
- Enforce one custom domain per org in POST /api/security/domains - Add capcha, docs, sign to standard aliases; remove legacy aliases - Update verify-dns to tra...
Move changelog word replacement to backend before translation
Text replacements (Docs→Docs, Meet→Meet, etc.) and secret name redaction (K8s secret names→***) were previously applied client-side in ChangelogClient.tsx, mean...
Thêm một bản dịch định kỳ cho bản ghi thay đổi và các kế hoạch đăng ký, thêm địa phương- ý thức công cộng APIs
Thêm quản lý nhập chì và người điều khiển nhận công cộng
Thêm hai bộ điều khiển cho hệ thống nhập chì tự động: - chì Inkekekeler: xác thực CRUD cho đầu truy cập, lĩnh vực Bản đồ, quản lý hàng đợi tải lên, xử lý bản sa...
Name
Thêm case khi e.id không phải là NULL Sau đó "EM Mnight" khác @ info/ rich Vì vậy giao diện điều khiển có thể phân biệt thành viên nhóm với thành viên thường xu...
Đồng bộ hoá ảnh mẫu trên trang trong khi mẫu tải lên với tiến trình WS hạt
- Thêm phụ thuộc PDFBox vào pom.xml - Sau khi lưu trữ PDF đã cải tiến, dịch mọi trang qua PDFRenderer và tải lên từng trang như{id} thumb p{n}.png - Công bố tạo...
Thêm /api/ changelog/ Public/stats endpoint cho tổng hợp đếm theo kiểu và dự án
Thêm mục tìm kiếm
Phòng thủ Bên bảo mật bên ngoài hợp lệ hóa cổng vào APIService.
Thêm cấp truy cập thành viên và điểm kết thúc trạng thái người sở hữu
Thêm và ghép * Điểm kết thúc cho việc đọc và cập nhật các cấp độ truy cập với toàn bộ sự cho phép. Cập nhật khả năng tạo tổ chức để tạo raOrganizationOwner.
Thêm giai đoạn chuyển đổi hạt với 8 bản cập nhật WebSocket riêng biệt
Các giai đoạn: tải về (0-15%) chuẩn bị (15-%) Đang chuyển đổi (20-65%) Đang xác nhận (65-75%) Đang lưu trữ (75-90%) hết hạn (90-100%) %) hoàn tất
Sự chuyển đổi PDF đồng bộ cho việc tải lên mẫu e
Name Yêu cầu tải lên. Publishes NATS sự kiện tiến trình cho WebSocket thời gian thực Cập nhật về giao diện điều khiển. Lùi lại một cách duyên dáng nếu sự cải đạ...
Thêm dấu chấm chấm chấm chấm kết thúc cho máy tính biểu đồ điện tử. Name
- PST * PST * BOP — tải lên mẫu với kiểm soát phạm vi - PST * BÀI TIẾNG — Các mẫu theo ngữ cảnh và trạng thái - Chuyến đi mới - Lsave * Chuyến đi — Dòng chảy đã...
Thay thế Google re*** với độ chính xác của Capcha ***
Gỡ bỏ Re*Service và tất cả các cấu hình Google. Thêm chữ hoa/ thường dịch vụ kamo-capcha của dịch vụ /api/verification point. Cập nhật Request Đậu và bảo vệ để ...
Thêm điểm kết thúc cung cấp bán lẻ cho việc thử ra kết nối, đồng bộ, khả năng, và kết nối web
Tăng cường PST /customers để chấp nhận thông tin liên lạc và tra cứu người dùng qua email
Tạo tài khoản bây giờ chấp nhận email, liên lạc, điện thoại, chấp nhận đánh dấu, giảm thuế. Nếu cung cấp thư điện tử và khớp với một người dùng đã có, các tập h...
Thêm 18 chi tiết tài khoản kết thúc cho quản lý khách hàng
Điểm kết thúc mới trên tài khoản KApi/Api/Ac Count/: - Khách hàng: get/POST/PUT/DETE /customers, get //customers/{ uid} - Dữ liệu liên kết: get //customers/{ ui...
Thêm 111 điểm kết thúc bán lẻ cho cơ sở thương mại Market
Tất cả các điểm cuối dưới /{ MarketId}/retail / ... không tên bao gồm: - Phân loại, thương hiệu, thuộc tính (có giá trị), ảnh, biến, thẻ, đánh giá - Khách hàng,...
Expand CommerceMarketController with nested market-centric endpoints
Replace flat POS endpoints with market-scoped REST hierarchy: - Products, inventory, vendor categories under /{marketId}/products, /inventory, /vendor-categorie...
Như những gì anh thấy vận chuyển?
Mỗi một bản cập nhật này đều được tự động cập nhật trong không gian làm việc của bạn. Bắt đầu tự do và xem nó lớn lên tuần này qua tuần khác.