Skip to content

feat(access)!: choose login or anonymous at deploy time - #2

Merged
binarycodes merged 3 commits into
mainfrom
feat/access-modes
Aug 26, 2026
Merged

binarycodes merged 3 commits into
mainfrom
feat/access-modes

Conversation

@binarycodes

Copy link
Copy Markdown
Owner

Whichday was login-only. WHICHDAY_ACCESS_MODE now picks one mode at deploy time.

anonymous (the new default) — no provider, nothing to configure. You type a name,
the link is the invitation, and a six-digit admin code is what gets an organizer back
in. No polls list, no invitees, no reminders, and nothing claims to know who hasn't
answered — because nothing does.

login — exactly as before. OIDC, invitees, the lot.

Notes

  • The OIDC block moved into application-login.properties and has to stay there: Boot
    fetches the issuer's discovery document at startup, so anonymous mode inheriting it
    would hang on a provider it has no reason to reach.
  • Access rules stay in PollService — three branches, nothing else knows there are two
    modes. Caller carries the admin code so the service stays free of session state.
  • V2 adds a nullable admin_code, compared only against the poll you already hold the
    link to, so no unique index.
  • Locking now goes through /poll/:id/settle and can be cancelled. It could not be undone.

@binarycodes
binarycodes merged commit 66dbdc4 into main Aug 26, 2026
2 checks passed
@binarycodes
binarycodes deleted the feat/access-modes branch August 26, 2026 09:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant