Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
4 changes: 2 additions & 2 deletions packages/node-type-registry/src/blueprint-types.generated.ts
Original file line number Diff line number Diff line change
Expand Up @@ -565,8 +565,8 @@ export interface EventTrackerParams {
;
/** Attaches a BEFORE trigger that calls require_step_up() to enforce recent strong verification (password, MFA, or identity-provider assertion) before allowing mutations. Requires a provisioned sessions_module (with app_settings_auth) for the target database. The step_up_window is read from app_settings_auth at runtime (default 30 minutes). Supports compound conditions (AND/OR/NOT), watch_fields (fire only when specific fields change), and simple condition_field/condition_value leaf conditions. */
export interface GuardStepUpParams {
/* Which verification method satisfies the step-up requirement */
step_up_type?: 'password' | 'mfa' | 'fresh_auth';
/* Which verification method satisfies the step-up requirement (password_or_mfa is the legacy spelling of fresh_auth) */
step_up_type?: 'password' | 'mfa' | 'fresh_auth' | 'password_or_mfa';
/* Which DML events require step-up verification */
events?: ('INSERT' | 'UPDATE' | 'DELETE')[];
/* Column name for conditional WHEN clause (fires only when field equals condition_value) */
Expand Down
6 changes: 4 additions & 2 deletions packages/node-type-registry/src/guard/step-up.ts
Original file line number Diff line number Diff line change
Expand Up @@ -20,8 +20,10 @@ export const GuardStepUp: NodeTypeDefinition = {
properties: {
step_up_type: {
type: 'string',
enum: ['password', 'mfa', 'fresh_auth'],
description: 'Which verification method satisfies the step-up requirement',
enum: ['password', 'mfa', 'fresh_auth', 'password_or_mfa'],
description:
'Which verification method satisfies the step-up requirement ' +
'(password_or_mfa is the legacy spelling of fresh_auth)',
default: 'fresh_auth',
},
events: {
Expand Down
Loading