Files
openchamber/packages/web/server/lib/quota/opencode-go-credentials.js
T
Bohdan Triapitsyn b09614fd68 refactor(quota): secure managed provider credentials (#2160)
- add shared owner-only credential storage for OpenCode Go, Ollama Cloud, and Cursor
- validate credentials before atomic writes using 0700 directories and 0600 files
- replace provider-specific credential routes with an allowlisted lifecycle API
- stop automatically reading Ollama's legacy cookie file
- stop reading or modifying Cursor's database during regular quota requests
- add explicit one-time Cursor credential import without mutating Cursor storage
- persist refreshed Cursor credentials only in OpenChamber-managed storage
- add Ollama Cloud and Cursor credential controls to provider settings
- preserve OpenCode Go tracking through the shared credential flow
- add VS Code credential management and Cursor quota parity
- reject authentication redirects, enforce request timeouts, and fail on unparseable usage pages
- mask stored secrets in API responses and extend quota security coverage
- update quota provider documentation
2026-07-12 16:21:38 +03:00

12 lines
600 B
JavaScript

import { deleteManagedCredential, getManagedCredentialStatus, normalizers, readManagedCredential, writeManagedCredential } from './credentials/providers.js';
export const normalizeOpenCodeGoCredential = normalizers['opencode-go'];
export const readOpenCodeGoCredential = () => readManagedCredential('opencode-go');
export const getOpenCodeGoCredentialStatus = () => getManagedCredentialStatus('opencode-go');
export const writeOpenCodeGoCredential = (value) => writeManagedCredential('opencode-go', value);
export const deleteOpenCodeGoCredential = () => deleteManagedCredential('opencode-go');