Implements CUST-WP-0007. Resolves inconsistencies I-1, I-2, I-5, I-6
identified in the GEMS audit (GenericEntityModellingSystem.md).
Pass 1 (e1f2a3b4c5d6): domain_id FK on extension_points and
technical_debt (replaces raw string column); repo_id FK on contributions.
Fixes domain-filtering bugs in EP/TD dashboard pages.
Pass 2 (f2a3b4c5d6e7): repo_id nullable FK on workstreams, aligning
the GEMS primary attachment with ADR-001 (repo > topic). Dashboard
pages updated to prefer repo->domain over topic->domain.
Pass 3 (a3b4c5d6e7f8): SBOMSnapshot container entity (GEMS Complex
between Repository and SBOMEntry). Ingest is now additive — each call
creates a new snapshot; history is retained. List/report endpoints
filter to latest snapshot per repo via _latest_snapshot_ids_subquery().
New endpoints: GET /sbom/snapshots/, GET /sbom/snapshots/{id}/.
Dashboard gains a Snapshot History section.
Also adds GEMS analysis artefacts: wiki/GEMS-StateHub-TypeRegistry.md,
wiki/GEMS-StateHub-SWOT.md, workplans/CUST-WP-0006 (analysis),
workplans/CUST-WP-0007 (migration, now completed).
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
79 lines
1.6 KiB
Python
79 lines
1.6 KiB
Python
import uuid
|
|
from datetime import datetime
|
|
|
|
from pydantic import BaseModel, ConfigDict
|
|
|
|
from api.models.sbom_entry import Ecosystem
|
|
|
|
|
|
class SBOMEntryCreate(BaseModel):
|
|
package_name: str
|
|
package_version: str | None = None
|
|
ecosystem: Ecosystem
|
|
license_spdx: str | None = None
|
|
is_direct: bool = True
|
|
is_dev: bool = False
|
|
|
|
|
|
class SBOMIngest(BaseModel):
|
|
repo_slug: str
|
|
entries: list[SBOMEntryCreate]
|
|
|
|
|
|
class SBOMEntryRead(BaseModel):
|
|
model_config = ConfigDict(from_attributes=True)
|
|
|
|
id: uuid.UUID
|
|
repo_id: uuid.UUID
|
|
snapshot_id: uuid.UUID
|
|
package_name: str
|
|
package_version: str | None = None
|
|
ecosystem: Ecosystem
|
|
license_spdx: str | None = None
|
|
is_direct: bool
|
|
is_dev: bool
|
|
snapshot_at: datetime
|
|
created_at: datetime
|
|
|
|
|
|
class SBOMSnapshotRead(BaseModel):
|
|
model_config = ConfigDict(from_attributes=True)
|
|
|
|
id: uuid.UUID
|
|
repo_id: uuid.UUID
|
|
snapshot_at: datetime
|
|
source: str | None = None
|
|
entry_count: int
|
|
created_at: datetime
|
|
|
|
|
|
class SBOMSnapshotDetail(BaseModel):
|
|
model_config = ConfigDict(from_attributes=True)
|
|
|
|
id: uuid.UUID
|
|
repo_id: uuid.UUID
|
|
snapshot_at: datetime
|
|
source: str | None = None
|
|
entry_count: int
|
|
created_at: datetime
|
|
entries: list[SBOMEntryRead] = []
|
|
|
|
|
|
class LicenceGroup(BaseModel):
|
|
license_spdx: str | None
|
|
count: int
|
|
repos: list[str]
|
|
is_copyleft: bool
|
|
|
|
|
|
class LicenceReport(BaseModel):
|
|
groups: list[LicenceGroup]
|
|
copyleft_direct_count: int
|
|
|
|
|
|
class SBOMRepoView(BaseModel):
|
|
repo_slug: str
|
|
last_sbom_at: datetime | None = None
|
|
entry_count: int
|
|
entries: list[SBOMEntryRead]
|