Block A of the EchoDo plan. Workspaces used to live as `objects(type='workspace')`,
which made it impossible to put a real RLS-friendly tenant boundary on the schema
or to give each workspace a stable URL slug. This commit:
- Adds a top-level `workspaces` table (slug unique, owner FK, plan_tier hook).
- Migrates the 8 anchor tables (objects, workspace_members, object_type_defs,
property_definitions, templates, forms, markdown_backlog_items,
cursor_sync_mappings) to FK into `workspaces.id` instead of `objects.id`,
with a hand-augmented data-copy migration that preserves IDs and slug-collision-
proofs on backfill.
- Introduces a `workspaceProcedure` tRPC middleware + `resolveWorkspace` helper
that take a UUID-or-slug `workspace` handle and expose `ctx.workspace`. All
tenant-scoped routers (objects, types, properties, templates, forms, search,
ai, relations, favorites) now flow through it.
- Updates the web app to pass `workspace` slugs from the URL (or store) instead
of the old `workspaceId`, including a workspace-sync layer that rewrites
/<UUID>/... links to /<slug>/...
- Updates the MCP tools (list_objects, create_object, search_objects) and the
workspace://{handle}/tree resource to accept either a slug or UUID so existing
agents keep working.
- Adds a Create Workspace dialog and a Workspace Settings page (rename + slug
rename with redirect, owner-only archive).
Verified locally against a fresh Postgres: migration applies cleanly, slug
uniqueness holds, tenant data is isolated by workspace_id, slug↔UUID resolution
works in both directions, and ON DELETE CASCADE cleans up child rows in the
correct workspace only.
Co-authored-by: Cursor <cursoragent@cursor.com>
60 lines
2 KiB
TypeScript
60 lines
2 KiB
TypeScript
import {
|
|
pgTable,
|
|
uuid,
|
|
varchar,
|
|
text,
|
|
jsonb,
|
|
timestamp,
|
|
index,
|
|
uniqueIndex,
|
|
foreignKey,
|
|
} from "drizzle-orm/pg-core";
|
|
import { workspaces } from "./workspaces";
|
|
|
|
/**
|
|
* Imported plan / epic / task rows sourced from repo markdown under `plans/`.
|
|
* Scoped by workspace (tenant boundary in this app).
|
|
*/
|
|
export const markdownBacklogItems = pgTable(
|
|
"markdown_backlog_items",
|
|
{
|
|
id: uuid("id").primaryKey().defaultRandom(),
|
|
workspaceId: uuid("workspace_id")
|
|
.notNull()
|
|
.references(() => workspaces.id, { onDelete: "cascade" }),
|
|
kind: varchar("kind", { length: 20 }).notNull(),
|
|
slug: varchar("slug", { length: 200 }).notNull(),
|
|
planSlug: varchar("plan_slug", { length: 200 }).notNull(),
|
|
epicSlug: varchar("epic_slug", { length: 200 }),
|
|
parentId: uuid("parent_id"),
|
|
repoPath: text("repo_path").notNull(),
|
|
title: varchar("title", { length: 500 }).notNull().default(""),
|
|
status: varchar("status", { length: 50 }),
|
|
priority: varchar("priority", { length: 20 }),
|
|
owner: text("owner"),
|
|
frontmatter: jsonb("frontmatter").$type<Record<string, unknown> | null>(),
|
|
bodyMarkdown: text("body_markdown").notNull().default(""),
|
|
contentHash: varchar("content_hash", { length: 64 }).notNull(),
|
|
createdAt: timestamp("created_at", { withTimezone: true }).defaultNow().notNull(),
|
|
updatedAt: timestamp("updated_at", { withTimezone: true }).defaultNow().notNull(),
|
|
},
|
|
(table) => ({
|
|
parentFk: foreignKey({
|
|
columns: [table.parentId],
|
|
foreignColumns: [table.id],
|
|
}).onDelete("set null"),
|
|
workspaceRepoUnique: uniqueIndex("markdown_backlog_workspace_repo_path_unique").on(
|
|
table.workspaceId,
|
|
table.repoPath,
|
|
),
|
|
workspacePlanIdx: index("markdown_backlog_workspace_plan_idx").on(
|
|
table.workspaceId,
|
|
table.planSlug,
|
|
),
|
|
parentIdIdx: index("markdown_backlog_parent_id_idx").on(table.parentId),
|
|
workspaceKindIdx: index("markdown_backlog_workspace_kind_idx").on(
|
|
table.workspaceId,
|
|
table.kind,
|
|
),
|
|
}),
|
|
);
|