Commit Graph

5137 Commits

Author SHA1 Message Date
Bryan Frimin
55a8e72c17 Rename external URLs and move profile fields
Rename the compliance external URL concept to compliance custom links,
and move the public-facing profile fields (description, website, email,
headquarter address) off the organization onto the trust center. Backfill
managed default domains for pages that lack them.

Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-21 15:43:08 +02:00
Bryan Frimin
b524e9b497 Refactor certmanager to worker service
Replace the Provisioner and Renewer with poll-based provision and renew
workers orchestrated by a certmanager Service. Certificate operations are
now hostname-centric and driven by the certificates table, decoupled from
custom-domain business logic.

Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-21 15:43:07 +02:00
Bryan Frimin
7c5759733c Extract certificate lifecycle into certificates
Pull SSL/ACME state out of custom_domains into a dedicated hostname-keyed
certificates table, and repoint cached certificates from the domain to
the certificate. Custom domains now reference a certificate id, keeping
certificate provisioning decoupled from domain business logic.

Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-21 15:43:07 +02:00
Bryan Frimin
75203acff2 Move custom domains onto trust centers
Custom domains previously hung off the organization. Attach them to the
trust center instead, adding default and custom domain references plus a
managed flag, and backfill existing rows. Domains now belong to a
compliance page rather than the whole organization.

Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-21 15:43:07 +02:00
Bryan Frimin
be76bef14c Add trust center base domain configuration
Introduce the trust center base domain setting (default probopage.com)
so managed default domains can be minted for every compliance page.
This configuration is a prerequisite for the domain-ownership migration
and the default-domain provisioning that happens at organization
creation.

Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-21 15:43:04 +02:00
Cursor Agent
a3fac4f543 Add rights requests to webhooks
Emit lifecycle events for rights requests created through either the
console or compliance portal. Keep webhook subscription choices in sync
across every API and client surface.

Signed-off-by: Cursor Agent <cursoragent@cursor.com>

Co-authored-by: Sacha Al Himdani <SachaProbo@users.noreply.github.com>
Signed-off-by: Cursor Agent <cursoragent@cursor.com>
2026-07-21 13:24:23 +02:00
Émile Ré
8f22fa93ad Release probod/v0.229.1
Signed-off-by: Émile Ré <emile@getprobo.com>
2026-07-21 11:39:37 +02:00
Émile Ré
3b86500d7a Clarify IAM OAuth2 scope mapping name
pkg/iam exports IAMOAuth2ScopeMappings, not OAuth2ScopeMappings.
Call out that exception in the agent docs so IAM actions are not
left unregistered for OAuth2 callers.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-21 10:54:18 +02:00
Émile Ré
c626748b0a Map commitment actions to compliance-page scopes
OAuth2 tokens with v1:compliance-page could not create commitment
groups or items because the IAM actions were never listed in
OAuth2ScopeMappings. Document the mapping step so MCP/API work
does not skip it again.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-21 10:45:39 +02:00
Émile Ré
9b88603c64 Release @probo/n8n-nodes-probo/v0.204.0 2026-07-20 19:53:48 +02:00
Émile Ré
c68324307b Release probod/v0.229.0 2026-07-20 19:53:33 +02:00
Émile Ré
7b2934b388 Release prb/v0.201.0 2026-07-20 19:53:20 +02:00
Émile Ré
854b405979 Align PDF preview with header content
Size desktop pages to HeaderBand's max-w-5xl column so
they line up with the title and toolbar. Mobile gutter is
unchanged.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 19:37:46 +02:00
Émile Ré
f62cb82387 Match PDF desktop gutter to hero padding
Fit-to-width at 100% used a phone-sized inset on all
viewports. Use the HeaderBand px-8 gutter on desktop so
the page aligns with the hero; keep mobile unchanged.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 19:37:46 +02:00
Émile Ré
895f484cf2 Update translation
Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 19:37:46 +02:00
Émile Ré
e7e33b9d99 Match list skeletons to the card surface
ListItemSkeleton reused a sand-2 fill that read as a
different card; use the real row shell with pulse bars
instead, and shrink the updates skeleton to five rows.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 19:37:46 +02:00
Émile Ré
311639ae98 Add z-index scale and overview redirect
Introduce a v2 z-1…z-6 stacking scale so portaled
menus sit above in-page media, and redirect the
legacy /overview trust-app URL to home.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 19:37:46 +02:00
Émile Ré
2db37660d3 Expose commitment CRUD on MCP, CLI, n8n
Sync GraphQL commitment group and item operations
to the remaining API surfaces so automation can
manage compliance portal commitments end to end.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 19:27:44 +02:00
Émile Ré
e27a830d76 Release probod/v0.228.0
Signed-off-by: Émile Ré <emile@getprobo.com>
2026-07-20 18:28:49 +02:00
Émile Ré
0691771d1b Put back allowed origin in provision
Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 17:42:37 +02:00
Émile Ré
26595b724f Serve compliance-portal instead of trust
Embed and build @probo/compliance-portal for the
/trust path and custom-domain SPA so production
ships the v2 portal. Keep apps/trust in the repo
for local use on port 5175; portal takes 5174.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 17:38:45 +02:00
Cursor Agent
70d0424022 Rename document approval button to Approve
The previous label implied review plus approval, but the action only
approves. Update the consent text to match the new button wording.

Signed-off-by: Cursor Agent <cursoragent@cursor.com>

Co-authored-by: Bryan FRIMIN <bryan@frimin.fr>
2026-07-20 17:27:12 +02:00
Émile Ré
07645e6251 Fix document row a11y and PDF page sync
Expose pending access status to assistive tech on
mobile rows, and recompute the visible PDF page
after fit-to-width reflow without writing refs
during render.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 17:07:51 +02:00
Émile Ré
d047f1b323 Extract Base UI Drawer into the v2 kit
Promote the portal burger shell into a reusable
Drawer matching Dialog (thin Base UI + tv slots).
TopBarMobileNav now composes the kit parts.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 16:47:47 +02:00
Émile Ré
ea8377a0cc Localize TopBar menu strings for all locales
The responsive burger drawer added openMenu, closeMenu,
and menuTitle only in en-US and fr-FR. Mirror those keys
across the remaining compliance-portal catalogs.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 16:41:54 +02:00
Émile Ré
89b780c6aa Make compliance portal layout responsive
Add a burger drawer below md, fix document-flow
scrolling so PoweredBy sits after content, and
collapse home grids, list rows, toolbars, and
dialogs for smaller viewports. PDF viewer fits
width; updates skeleton mirrors stacked meta.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 16:39:46 +02:00
Émile Ré
3c5d8c6265 Fix lint issues
Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 16:02:30 +02:00
Émile Ré
9291cee2a0 Localize subscribe strings for new portal locales
Fill in user-menu and subscribe-dialog copy for the
locales added on main so missing keys do not fall back.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 15:54:35 +02:00
Émile Ré
e9542bc1a5 Harden subscribe resume and sign-out paths
Address PR review: avoid reintroducing cleared URL markers,
treat already-closed sessions as successful logout, and stop
stale subscribe/sign-out completions from racing the UI.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 15:52:10 +02:00
Émile Ré
855a486790 Wire subscribe-to-updates in compliance portal
Visitors can subscribe after sign-in via the Updates
CTA or user menu. Also add trust signOut so Log out
works from the menu.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 15:52:10 +02:00
Bryan Frimin
8d95c1d59a Add Simplified Chinese (zh-CN) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:40 +02:00
Bryan Frimin
dbcb47bd8f Add Ukrainian (uk-UA) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:40 +02:00
Bryan Frimin
cc7a5ce3e6 Add Turkish (tr-TR) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:39 +02:00
Bryan Frimin
97e34cabdd Add Portuguese (pt-PT) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:39 +02:00
Bryan Frimin
80bb03cee4 Add Polish (pl-PL) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:39 +02:00
Bryan Frimin
b49c64b180 Add Korean (ko-KR) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:38 +02:00
Bryan Frimin
fa9603d52e Add Japanese (ja-JP) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:38 +02:00
Bryan Frimin
720dc49be3 Add Italian (it-IT) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:38 +02:00
Bryan Frimin
f081c8fe70 Add Indonesian (id-ID) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:37 +02:00
Bryan Frimin
1774d29591 Add Spanish (es-ES) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:27 +02:00
Bryan Frimin
6ff2cf9946 Add German (de-DE) translation for compliance portal
Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:27 +02:00
Bryan Frimin
c61ff9721e Register eleven new compliance-portal locales
Add German, Spanish, Indonesian, Italian, Japanese, Korean, Polish,
Portuguese, Turkish, Ukrainian, and Simplified Chinese to
SUPPORTED_LANGUAGES, and map each one's browser language-tag prefix to
its canonical locale in resolveLanguage() so i18next can be asked to
load it. Catalog JSON for these locales lands in the following
commits.

Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:15 +02:00
Bryan Frimin
177a5d0361 Rename trust center wording to compliance portal in copy
The English and French compliance-portal strings referred to "trust
center" in a few spots (back-navigation link, empty states) while the
rest of the app already calls this surface the "compliance portal".
Standardize on that term everywhere it appears in copy, and rename the
backing i18n key (backToTrustCenter -> backToCompliancePortal) to
match. Also fixes two spots where the French translation had left
"Compliance Portal" and "trust center" untranslated in English.

Signed-off-by: Bryan Frimin <bryan@probo.com>
2026-07-20 15:48:02 +02:00
Émile Ré
776bec7ef8 Add bundling options to put base deps in specific chunks
Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 14:53:59 +02:00
Émile Ré
a41aa3ce07 Restore gap above new-request footer
The form wrapper broke DialogPopup's column gap, so the
textarea sat flush against the actions. Match SignInForm.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 14:41:27 +02:00
Émile Ré
b9d1446a5c Preserve Field aria-describedby on errors
Cloning the control overwrote any existing description
ids. Merge the error id in so hints stay announced.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 14:31:43 +02:00
Émile Ré
1c28f63555 Extract bordered list into UI List
Documents and data requests duplicated the same card and
row chrome. A shared List primitive keeps those surfaces
consistent across the portal.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 14:31:43 +02:00
Émile Ré
622f1ba67d Address PR review on data request pages
Require a verified viewer email before creating a rights request and
validate the free-text fields with the same SafeText bounds the console
uses, so this public portal mutation stays safe and bounded.

Move myRightsRequests onto the base Query, drop the now-dead count
loaders, and order the RECTIFICATION enum value before PORTABILITY so
the Postgres sort order matches RightsRequestTypes().

Harden the v2 kit primitives: SegmentedControl keeps equal-width cards
(auto-fill), preserves its selection when the active card is toggled,
and forwards an accessible name; Field associates its label and error
by id/aria instead of wrapping the control in a label. Give the type
group an accessible name, require the name field for non-complaint
types, use a timezone-stable reference year, drop the underreporting
header count, and neutralize the response-deadline copy.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 14:31:42 +02:00
Émile Ré
6623cbc6f2 Add data request pages to compliance portal
Let trust-portal data subjects submit and track GDPR/CCPA rights
requests. The new Data Requests page lists the viewer's own requests
and a dialog submits new ones, scoped server-side to the verified
viewer email so former or inactive users can still exercise their
rights. Submission requires magic-link sign-in (reusing the existing
gate) but not the NDA gate.

Extend the shared rights_request enums with RECTIFICATION, OBJECTION
and COMPLAINT types plus a REJECTED state, and keep the console
GraphQL, @probo/helpers and the MCP specification in sync. Expose a
trust GraphQL surface (myRightsRequests query, createRightsRequest
mutation) backed by a trust service and contact-scoped coredata
loaders.

Add the missing v2 UI kit primitives the dialog needs on top of Base
UI: a SegmentedControl radio-cards group, a form Textarea, and a
Field wrapper.

Signed-off-by: Émile Ré <emile@probo.com>
2026-07-20 14:31:42 +02:00
Bryan Frimin
e7ebab0d58 Release @probo/n8n-nodes-probo/v0.203.0
Signed-off-by: Bryan Frimin <bryan@getprobo.com>
2026-07-20 12:37:30 +02:00