Files
AIclinicalresearch/backend/scripts/setup-prompt-system.ts
HaHafeng 61cdc97eeb feat(platform): Fix pg-boss queue conflict and add safety standards
Summary:
- Fix pg-boss queue conflict (duplicate key violation on queue_pkey)
- Add global error listener to prevent process crash
- Reduce connection pool from 10 to 4
- Add graceful shutdown handling (SIGTERM/SIGINT)
- Fix researchWorker recursive call bug in catch block
- Make screeningWorker idempotent using upsert

Security Standards (v1.1):
- Prohibit recursive retry in Worker catch blocks
- Prohibit payload bloat (only store fileKey/ID in job.data)
- Require Worker idempotency (upsert + unique constraint)
- Recommend task-specific expireInSeconds settings
- Document graceful shutdown pattern

New Features:
- PKB signed URL endpoint for document preview/download
- pg_bigm installation guide for Docker
- Dockerfile.postgres-with-extensions for pgvector + pg_bigm

Documentation:
- Update Postgres-Only async task processing guide (v1.1)
- Add troubleshooting SQL queries
- Update safety checklist

Tested: Local verification passed
2026-01-23 22:07:26 +08:00

133 lines
3.6 KiB
TypeScript

/**
* Prompt管理系统初始化脚本
*
* 功能:
* 1. 创建 capability_schema
* 2. 添加 prompt:* 权限
* 3. 更新角色权限分配
*/
import { PrismaClient } from '@prisma/client';
const prisma = new PrismaClient();
async function main() {
console.log('🚀 开始初始化 Prompt 管理系统...\n');
// 1. 创建 capability_schema
console.log('📁 Step 1: 创建 capability_schema...');
try {
await prisma.$executeRaw`CREATE SCHEMA IF NOT EXISTS capability_schema`;
console.log(' ✅ capability_schema 创建成功\n');
} catch (error) {
console.log(' ⚠️ capability_schema 可能已存在\n');
}
// 2. 添加 prompt:* 权限
console.log('🔐 Step 2: 添加 prompt:* 权限...');
const promptPermissions = [
{ code: 'prompt:view', name: '查看Prompt', description: '查看Prompt模板列表和详情', module: 'admin' },
{ code: 'prompt:edit', name: '编辑Prompt', description: '创建和修改Prompt草稿', module: 'admin' },
{ code: 'prompt:debug', name: '调试Prompt', description: '开启调试模式,在生产环境测试草稿', module: 'admin' },
{ code: 'prompt:publish', name: '发布Prompt', description: '将草稿发布为正式版', module: 'admin' },
];
for (const perm of promptPermissions) {
try {
await prisma.permissions.upsert({
where: { code: perm.code },
update: { name: perm.name, description: perm.description, module: perm.module },
create: perm,
});
console.log(`${perm.code}`);
} catch (error) {
console.log(` ⚠️ ${perm.code} 添加失败:`, error);
}
}
console.log('');
// 3. 获取权限ID
console.log('🔗 Step 3: 更新角色权限分配...');
const permissions = await prisma.permissions.findMany({
where: { code: { startsWith: 'prompt:' } },
});
const permissionMap = new Map(permissions.map(p => [p.code, p.id]));
// SUPER_ADMIN: 全部权限
const superAdminPermissions = ['prompt:view', 'prompt:edit', 'prompt:debug', 'prompt:publish'];
for (const permCode of superAdminPermissions) {
const permId = permissionMap.get(permCode);
if (permId) {
try {
await prisma.role_permissions.upsert({
where: {
role_permission_id: { role: 'SUPER_ADMIN', permission_id: permId },
},
update: {},
create: { role: 'SUPER_ADMIN', permission_id: permId },
});
} catch (error) {
// 可能已存在
}
}
}
console.log(' ✅ SUPER_ADMIN: prompt:view, prompt:edit, prompt:debug, prompt:publish');
// PROMPT_ENGINEER: 无 publish 权限
const promptEngineerPermissions = ['prompt:view', 'prompt:edit', 'prompt:debug'];
for (const permCode of promptEngineerPermissions) {
const permId = permissionMap.get(permCode);
if (permId) {
try {
await prisma.role_permissions.upsert({
where: {
role_permission_id: { role: 'PROMPT_ENGINEER', permission_id: permId },
},
update: {},
create: { role: 'PROMPT_ENGINEER', permission_id: permId },
});
} catch (error) {
// 可能已存在
}
}
}
console.log(' ✅ PROMPT_ENGINEER: prompt:view, prompt:edit, prompt:debug (无publish)');
console.log('');
// 4. 验证
console.log('✅ Prompt 管理系统初始化完成!\n');
const allPermissions = await prisma.permissions.findMany({
where: { code: { startsWith: 'prompt:' } },
});
console.log('📋 已添加的权限:');
allPermissions.forEach(p => console.log(` - ${p.code}: ${p.name}`));
}
main()
.catch(console.error)
.finally(() => prisma.$disconnect());