feat : use guide login only [no ci]

This commit is contained in:
2026-10-06 18:41:28 +07:00 Unverified
parent 1339dd43e6
commit 3c8f60433a
28 changed files with 50 additions and 783 deletions
+5 -18
View File
@@ -14,14 +14,9 @@ endorsed by HoYoverse. The repository and deployment resources retain the
- **Public guides:** a searchable character directory and responsive guide pages.
- **Visual editing:** structured editors for overviews, weapons, artifacts,
constellations, teams, and custom sections, with autosave and conflict recovery.
- **Accounts:** Sudloh Account OIDC sign-in with local Buzz sessions, IDs, and
roles. Legacy email/password and registration OTP remain available only before
`SUDLOH_OIDC_ONLY=true` cutover. Linked profiles are managed at Sudloh Account;
Guide refreshes their profile from UserInfo on request. Guide sessions follow
Better Auth's rolling session lifetime rather than the roughly one-hour Sudloh
access token. A fresh Sudloh authorization is needed to refresh a profile after
that token expires. Sudloh Account sign-out or revocation does not end an
existing Guide session; users must also sign out of Guide.
- **Accounts:** Guide email/password sign-in, email verification, local profiles,
and rolling sessions. Existing users who signed up through Sudloh can set a
Guide password from the password-reset page.
- **Media:** S3-compatible uploads and publication-aware delivery for staged files.
- **Catalog updates:** Discord-triggered synchronization with Lunaris.
- **Commissions:** PromptPay checkout, Slip2Go verification, ticket attachments,
@@ -77,9 +72,8 @@ bun run db:migrate
bun run dev
```
With the Sudloh client configured, `/auth/login` starts the Account sign-in
redirect automatically. Before OIDC cutover, visitors can register at
`/auth/register`. For background processing, run the
Visitors can sign in at `/auth/login` or register at `/auth/register`.
For background processing, run the
outbox worker in a separate terminal. Run the Discord worker when using catalog
updates; its configuration is described below.
@@ -91,13 +85,6 @@ bun run worker:outbox
bun run worker:discord
```
For a temporary return to Guide email/password login, set
`SUDLOH_OIDC_ONLY=false` and `SUDLOH_OIDC_PAUSED=true` in the deployment
ConfigMap. The Sudloh client credentials can stay in the Secret. Existing Guide
sessions remain valid. Users who joined only through Sudloh can use Guide's
password-reset page to create a local password. Restore OIDC by setting
`SUDLOH_OIDC_PAUSED=false` and `SUDLOH_OIDC_ONLY=true`.
Email, commission payments, and push notifications need their corresponding
service credentials. See [External prerequisites](#external-prerequisites) for
the production configuration details.