Add v1:iam:read scope to auditor mode
Signed-off-by: Ludovic Vielle <ludovic@probo.com>
This commit is contained in:
30
pkg/coredata/migrations/20260619T080348Z.sql
Normal file
30
pkg/coredata/migrations/20260619T080348Z.sql
Normal file
@@ -0,0 +1,30 @@
|
||||
-- Copyright (c) 2026 Probo Inc <hello@probo.com>.
|
||||
--
|
||||
-- Permission to use, copy, modify, and/or distribute this software for any
|
||||
-- purpose with or without fee is hereby granted, provided that the above
|
||||
-- copyright notice and this permission notice appear in all copies.
|
||||
--
|
||||
-- THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES WITH
|
||||
-- REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
|
||||
-- AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY SPECIAL, DIRECT,
|
||||
-- INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
|
||||
-- LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR
|
||||
-- OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
||||
-- PERFORMANCE OF THIS SOFTWARE.
|
||||
|
||||
-- Well-known OAuth2 client for Auditor Mode (prbaud).
|
||||
-- Read scopes plus v1:control for measure mutations. Keep in sync with
|
||||
-- Constants.OAuth2.scopes in the Auditor Mode macOS app.
|
||||
UPDATE iam_oauth2_clients
|
||||
SET scopes = '{
|
||||
openid,
|
||||
profile,
|
||||
email,
|
||||
offline_access,
|
||||
v1:control:read,
|
||||
v1:iam:read,
|
||||
v1:org:read,
|
||||
v1:control
|
||||
}'::TEXT[],
|
||||
updated_at = NOW()
|
||||
WHERE id = 'AAAAAAAAAAAASwAAAAAAAAAAcHJiYXVk';
|
||||
Reference in New Issue
Block a user