Summary: - Fix pg-boss queue conflict (duplicate key violation on queue_pkey) - Add global error listener to prevent process crash - Reduce connection pool from 10 to 4 - Add graceful shutdown handling (SIGTERM/SIGINT) - Fix researchWorker recursive call bug in catch block - Make screeningWorker idempotent using upsert Security Standards (v1.1): - Prohibit recursive retry in Worker catch blocks - Prohibit payload bloat (only store fileKey/ID in job.data) - Require Worker idempotency (upsert + unique constraint) - Recommend task-specific expireInSeconds settings - Document graceful shutdown pattern New Features: - PKB signed URL endpoint for document preview/download - pg_bigm installation guide for Docker - Dockerfile.postgres-with-extensions for pgvector + pg_bigm Documentation: - Update Postgres-Only async task processing guide (v1.1) - Add troubleshooting SQL queries - Update safety checklist Tested: Local verification passed
133 lines
3.6 KiB
TypeScript
133 lines
3.6 KiB
TypeScript
/**
|
|
* Prompt管理系统初始化脚本
|
|
*
|
|
* 功能:
|
|
* 1. 创建 capability_schema
|
|
* 2. 添加 prompt:* 权限
|
|
* 3. 更新角色权限分配
|
|
*/
|
|
|
|
import { PrismaClient } from '@prisma/client';
|
|
|
|
const prisma = new PrismaClient();
|
|
|
|
async function main() {
|
|
console.log('🚀 开始初始化 Prompt 管理系统...\n');
|
|
|
|
// 1. 创建 capability_schema
|
|
console.log('📁 Step 1: 创建 capability_schema...');
|
|
try {
|
|
await prisma.$executeRaw`CREATE SCHEMA IF NOT EXISTS capability_schema`;
|
|
console.log(' ✅ capability_schema 创建成功\n');
|
|
} catch (error) {
|
|
console.log(' ⚠️ capability_schema 可能已存在\n');
|
|
}
|
|
|
|
// 2. 添加 prompt:* 权限
|
|
console.log('🔐 Step 2: 添加 prompt:* 权限...');
|
|
|
|
const promptPermissions = [
|
|
{ code: 'prompt:view', name: '查看Prompt', description: '查看Prompt模板列表和详情', module: 'admin' },
|
|
{ code: 'prompt:edit', name: '编辑Prompt', description: '创建和修改Prompt草稿', module: 'admin' },
|
|
{ code: 'prompt:debug', name: '调试Prompt', description: '开启调试模式,在生产环境测试草稿', module: 'admin' },
|
|
{ code: 'prompt:publish', name: '发布Prompt', description: '将草稿发布为正式版', module: 'admin' },
|
|
];
|
|
|
|
for (const perm of promptPermissions) {
|
|
try {
|
|
await prisma.permissions.upsert({
|
|
where: { code: perm.code },
|
|
update: { name: perm.name, description: perm.description, module: perm.module },
|
|
create: perm,
|
|
});
|
|
console.log(` ✅ ${perm.code}`);
|
|
} catch (error) {
|
|
console.log(` ⚠️ ${perm.code} 添加失败:`, error);
|
|
}
|
|
}
|
|
console.log('');
|
|
|
|
// 3. 获取权限ID
|
|
console.log('🔗 Step 3: 更新角色权限分配...');
|
|
|
|
const permissions = await prisma.permissions.findMany({
|
|
where: { code: { startsWith: 'prompt:' } },
|
|
});
|
|
|
|
const permissionMap = new Map(permissions.map(p => [p.code, p.id]));
|
|
|
|
// SUPER_ADMIN: 全部权限
|
|
const superAdminPermissions = ['prompt:view', 'prompt:edit', 'prompt:debug', 'prompt:publish'];
|
|
for (const permCode of superAdminPermissions) {
|
|
const permId = permissionMap.get(permCode);
|
|
if (permId) {
|
|
try {
|
|
await prisma.role_permissions.upsert({
|
|
where: {
|
|
role_permission_id: { role: 'SUPER_ADMIN', permission_id: permId },
|
|
},
|
|
update: {},
|
|
create: { role: 'SUPER_ADMIN', permission_id: permId },
|
|
});
|
|
} catch (error) {
|
|
// 可能已存在
|
|
}
|
|
}
|
|
}
|
|
console.log(' ✅ SUPER_ADMIN: prompt:view, prompt:edit, prompt:debug, prompt:publish');
|
|
|
|
// PROMPT_ENGINEER: 无 publish 权限
|
|
const promptEngineerPermissions = ['prompt:view', 'prompt:edit', 'prompt:debug'];
|
|
for (const permCode of promptEngineerPermissions) {
|
|
const permId = permissionMap.get(permCode);
|
|
if (permId) {
|
|
try {
|
|
await prisma.role_permissions.upsert({
|
|
where: {
|
|
role_permission_id: { role: 'PROMPT_ENGINEER', permission_id: permId },
|
|
},
|
|
update: {},
|
|
create: { role: 'PROMPT_ENGINEER', permission_id: permId },
|
|
});
|
|
} catch (error) {
|
|
// 可能已存在
|
|
}
|
|
}
|
|
}
|
|
console.log(' ✅ PROMPT_ENGINEER: prompt:view, prompt:edit, prompt:debug (无publish)');
|
|
console.log('');
|
|
|
|
// 4. 验证
|
|
console.log('✅ Prompt 管理系统初始化完成!\n');
|
|
|
|
const allPermissions = await prisma.permissions.findMany({
|
|
where: { code: { startsWith: 'prompt:' } },
|
|
});
|
|
console.log('📋 已添加的权限:');
|
|
allPermissions.forEach(p => console.log(` - ${p.code}: ${p.name}`));
|
|
}
|
|
|
|
main()
|
|
.catch(console.error)
|
|
.finally(() => prisma.$disconnect());
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|