2.9 KiB
2.9 KiB
Phase 2: Database Schema & Services Layer
Status: ⬜ Not Started Parent plan: PLAN.md Domain: backend
Objective
Define the full Prisma database schema, run migrations, and build the core server-side services layer with shared Zod validation schemas and TypeScript type definitions.
Tasks
- Task 1: Define Prisma schema with all models: User, Group, UserGroup, App, AppStatus, Board, Section, Widget, Permission, SystemSettings
- Task 2: Run
prisma migrate devto create initial migration - Task 3: Create TypeScript type definitions in
src/lib/types/(auth, app, board, widget, user, group, permission) - Task 4: Create shared Zod validation schemas in
src/lib/utils/validators.ts - Task 5: Create API response envelope utility in
src/lib/server/utils/response.ts - Task 6: Implement
authService.ts— password hashing, JWT sign/verify, refresh token management - Task 7: Implement
userService.ts— CRUD, findByEmail, role management - Task 8: Implement
groupService.ts— CRUD, user-group membership - Task 9: Implement
appService.ts— CRUD, search, status updates - Task 10: Implement
boardService.ts— CRUD with sections and widgets, default board - Task 11: Implement
permissionService.ts— check/grant/revoke permissions, hierarchical resolution - Task 12: Create
src/lib/utils/constants.ts— shared constants (roles, status values, defaults) - Task 13: Create
prisma/seed.ts— seed admin user, default groups, default board, sample apps
Files to Modify/Create
prisma/schema.prisma— full schema definitionprisma/seed.ts— seed scriptsrc/lib/types/*.ts— type definitionssrc/lib/utils/validators.ts— Zod schemassrc/lib/utils/constants.ts— constantssrc/lib/server/utils/response.ts— API envelopesrc/lib/server/services/authService.tssrc/lib/server/services/userService.tssrc/lib/server/services/groupService.tssrc/lib/server/services/appService.tssrc/lib/server/services/boardService.tssrc/lib/server/services/permissionService.ts
Acceptance Criteria
- Prisma schema validates and migration runs
- All services export clean async functions with proper types
- Zod schemas match Prisma models
- Seed script creates demo data
- No circular dependencies between services
Notes
- SystemSettings is a singleton row — use upsert pattern
- Permission resolution: User-level > Group-level > Default
- Widget config is JSON — use Prisma
Jsontype - OAuth fields in SystemSettings should be encrypted at rest (handle in Phase 3)
- ⚠️ Big Bang: services won't be wired to routes yet
Review Checklist
- All tasks completed
- Code follows project conventions
- No unintended side effects
- Build passes
- Tests pass (new + existing)