Files
digital-psychology/docs/ECR/ECR-010-ops-system.md
T
jackyu66gitandCursor 5ceb3ce749
ci / h5 (push) Canceled after 0s
ci / api (push) Canceled after 0s
ci / ess-docs (push) Canceled after 0s
feat(ECR-010): Ops-E 系统运营;修复登出解绑;P2 Complete
落地管理员 RBAC/封禁/推送任务 stub,logout 解绑 device 并统一各页 ensureAccount,同时收口 P2 生日生成与状态文档。

Co-authored-by: Cursor <cursoragent@cursor.com>
2026-08-11 18:54:59 +08:00

1.3 KiB
Raw Blame History

ECR-010

Title: 运营系统 Ops-E(RBAC · 封禁 · 推送占位)
Status: Approved
Date: 2026-08-11
Approved: 2026-08-11Human 确认实施计划)
Change Level: L2

Change

  1. Active Spec.ai/product/feature-spec/ops-system.md
  2. migration 000016_ops_systemadmin_accounts.role · users.status CHECK · push_jobs
  3. Adminban/unban · admins 列表/改角色 · push-jobs CRUDMe 含 role
  4. DeviceAuth 拒绝 banned40310
  5. admin-h5:封禁 · /push · /adminssuper)· 导航裁剪
  6. OpenAPI · TRACEABILITY · TEST_REPORT · CODE_REVIEW

Motivation

全员等同 Admin;无封禁与推送占位,运维只能改库。

Scope

Allowed

  • 上列 Spec / migration / admin API / DeviceAuth / admin-h5

Forbidden

  • 真推送通道 · 细粒度权限矩阵 · UGC · 真支付 · 改 ESS

Risk

Risk Mitigation
误封正常用户 审计 + 一键 unban
ops 越权写 service 层角色校验 + integration
封禁未生效 DeviceAuth 统一闸门

Acceptance Criteria

  • ops 写定价/授予会员 → 403
  • ban 后 C 端 40310unban 恢复
  • push draft CRUD;不下发
  • integration + admin-h5 build

Trace

Spec ops-system · BD-2026-010 · TASK-010