- Add plugin_pairings table + migration (0028) for short-lived pairing sessions - Add pairing API: POST /api/plugin/pair/initiate, GET /status/:token, POST /confirm - Add /pair web page: user scans QR on phone, confirms, API key auto-created - Plugin: 'Pair with Phone' button renders QR code (qrcode.react), polls for status, saves API key - Plugin: new initiate_pair + check_pair_status Python RPCs - Revise MangoHud Setup Guide into clean numbered steps - Fix SteamOS version detection: read VERSION_ID + BUILD_ID (was just 'SteamOS')
208 lines
6.4 KiB
TypeScript
208 lines
6.4 KiB
TypeScript
import { relations } from "drizzle-orm"
|
|
import {
|
|
pgTable,
|
|
text,
|
|
timestamp,
|
|
boolean,
|
|
integer,
|
|
index,
|
|
} from "drizzle-orm/pg-core"
|
|
|
|
export const user = pgTable("user", {
|
|
id: text("id").primaryKey(),
|
|
name: text("name").notNull(),
|
|
email: text("email").notNull().unique(),
|
|
emailVerified: boolean("email_verified").default(false).notNull(),
|
|
image: text("image"),
|
|
createdAt: timestamp("created_at").defaultNow().notNull(),
|
|
updatedAt: timestamp("updated_at")
|
|
.defaultNow()
|
|
.$onUpdate(() => /* @__PURE__ */ new Date())
|
|
.notNull(),
|
|
role: text("role"),
|
|
banned: boolean("banned").default(false),
|
|
banReason: text("ban_reason"),
|
|
banExpires: timestamp("ban_expires"),
|
|
lastLoginMethod: text("last_login_method"),
|
|
})
|
|
|
|
export const session = pgTable(
|
|
"session",
|
|
{
|
|
id: text("id").primaryKey(),
|
|
expiresAt: timestamp("expires_at").notNull(),
|
|
token: text("token").notNull().unique(),
|
|
createdAt: timestamp("created_at").defaultNow().notNull(),
|
|
updatedAt: timestamp("updated_at")
|
|
.$onUpdate(() => /* @__PURE__ */ new Date())
|
|
.notNull(),
|
|
ipAddress: text("ip_address"),
|
|
userAgent: text("user_agent"),
|
|
userId: text("user_id")
|
|
.notNull()
|
|
.references(() => user.id, { onDelete: "cascade" }),
|
|
impersonatedBy: text("impersonated_by"),
|
|
},
|
|
(table) => [index("session_userId_idx").on(table.userId)],
|
|
)
|
|
|
|
export const account = pgTable(
|
|
"account",
|
|
{
|
|
id: text("id").primaryKey(),
|
|
accountId: text("account_id").notNull(),
|
|
providerId: text("provider_id").notNull(),
|
|
userId: text("user_id")
|
|
.notNull()
|
|
.references(() => user.id, { onDelete: "cascade" }),
|
|
accessToken: text("access_token"),
|
|
refreshToken: text("refresh_token"),
|
|
idToken: text("id_token"),
|
|
accessTokenExpiresAt: timestamp("access_token_expires_at"),
|
|
refreshTokenExpiresAt: timestamp("refresh_token_expires_at"),
|
|
scope: text("scope"),
|
|
password: text("password"),
|
|
createdAt: timestamp("created_at").defaultNow().notNull(),
|
|
updatedAt: timestamp("updated_at")
|
|
.$onUpdate(() => /* @__PURE__ */ new Date())
|
|
.notNull(),
|
|
},
|
|
(table) => [index("account_userId_idx").on(table.userId)],
|
|
)
|
|
|
|
export const verification = pgTable(
|
|
"verification",
|
|
{
|
|
id: text("id").primaryKey(),
|
|
identifier: text("identifier").notNull(),
|
|
value: text("value").notNull(),
|
|
expiresAt: timestamp("expires_at").notNull(),
|
|
createdAt: timestamp("created_at").defaultNow().notNull(),
|
|
updatedAt: timestamp("updated_at")
|
|
.defaultNow()
|
|
.$onUpdate(() => /* @__PURE__ */ new Date())
|
|
.notNull(),
|
|
},
|
|
(table) => [index("verification_identifier_idx").on(table.identifier)],
|
|
)
|
|
|
|
export const passkey = pgTable(
|
|
"passkey",
|
|
{
|
|
id: text("id").primaryKey(),
|
|
name: text("name"),
|
|
publicKey: text("public_key").notNull(),
|
|
userId: text("user_id")
|
|
.notNull()
|
|
.references(() => user.id, { onDelete: "cascade" }),
|
|
credentialID: text("credential_id").notNull(),
|
|
counter: integer("counter").notNull(),
|
|
deviceType: text("device_type").notNull(),
|
|
backedUp: boolean("backed_up").notNull(),
|
|
transports: text("transports"),
|
|
createdAt: timestamp("created_at"),
|
|
aaguid: text("aaguid"),
|
|
},
|
|
(table) => [
|
|
index("passkey_userId_idx").on(table.userId),
|
|
index("passkey_credentialID_idx").on(table.credentialID),
|
|
],
|
|
)
|
|
|
|
export const userRelations = relations(user, ({ many }) => ({
|
|
sessions: many(session),
|
|
accounts: many(account),
|
|
passkeys: many(passkey),
|
|
}))
|
|
|
|
export const sessionRelations = relations(session, ({ one }) => ({
|
|
user: one(user, {
|
|
fields: [session.userId],
|
|
references: [user.id],
|
|
}),
|
|
}))
|
|
|
|
export const accountRelations = relations(account, ({ one }) => ({
|
|
user: one(user, {
|
|
fields: [account.userId],
|
|
references: [user.id],
|
|
}),
|
|
}))
|
|
|
|
export const passkeyRelations = relations(passkey, ({ one }) => ({
|
|
user: one(user, {
|
|
fields: [passkey.userId],
|
|
references: [user.id],
|
|
}),
|
|
}))
|
|
|
|
export const apikey = pgTable(
|
|
"apikey",
|
|
{
|
|
id: text("id").primaryKey(),
|
|
configId: text("config_id").notNull().default("default"),
|
|
name: text("name"),
|
|
start: text("start"),
|
|
referenceId: text("reference_id").notNull(),
|
|
prefix: text("prefix"),
|
|
key: text("key").notNull(),
|
|
refillInterval: integer("refill_interval"),
|
|
refillAmount: integer("refill_amount"),
|
|
lastRefillAt: timestamp("last_refill_at"),
|
|
enabled: boolean("enabled").default(true).notNull(),
|
|
rateLimitEnabled: boolean("rate_limit_enabled").default(true).notNull(),
|
|
rateLimitTimeWindow: integer("rate_limit_time_window"),
|
|
rateLimitMax: integer("rate_limit_max"),
|
|
requestCount: integer("request_count").default(0).notNull(),
|
|
remaining: integer("remaining"),
|
|
lastRequest: timestamp("last_request"),
|
|
expiresAt: timestamp("expires_at"),
|
|
createdAt: timestamp("created_at").defaultNow().notNull(),
|
|
updatedAt: timestamp("updated_at")
|
|
.defaultNow()
|
|
.$onUpdate(() => new Date())
|
|
.notNull(),
|
|
permissions: text("permissions"),
|
|
metadata: text("metadata"),
|
|
},
|
|
(table) => [
|
|
index("apikey_config_id_idx").on(table.configId),
|
|
index("apikey_reference_id_idx").on(table.referenceId),
|
|
index("apikey_key_idx").on(table.key),
|
|
],
|
|
)
|
|
|
|
export const apikeyRelations = relations(apikey, ({ one }) => ({
|
|
user: one(user, {
|
|
fields: [apikey.referenceId],
|
|
references: [user.id],
|
|
}),
|
|
}))
|
|
|
|
// ── Decky plugin pairing ────────────────────────────────────
|
|
// Short-lived pairing sessions that let a Steam Deck link to a
|
|
// user account by scanning a QR code on a logged-in phone.
|
|
export const pluginPairing = pgTable(
|
|
"plugin_pairings",
|
|
{
|
|
token: text("token").primaryKey(),
|
|
userId: text("user_id"),
|
|
apiKeyId: text("api_key_id"),
|
|
// Plaintext API key, only present between confirm and the plugin
|
|
// retrieving it. Cleared once the plugin has fetched it.
|
|
apiKey: text("api_key"),
|
|
status: text("status").default("pending").notNull(),
|
|
createdAt: timestamp("created_at").defaultNow().notNull(),
|
|
confirmedAt: timestamp("confirmed_at"),
|
|
expiresAt: timestamp("expires_at").notNull(),
|
|
},
|
|
(table) => [index("plugin_pairings_userId_idx").on(table.userId)],
|
|
)
|
|
|
|
export const pluginPairingRelations = relations(pluginPairing, ({ one }) => ({
|
|
user: one(user, {
|
|
fields: [pluginPairing.userId],
|
|
references: [user.id],
|
|
}),
|
|
}))
|