normogen/backend
goose ff185a60e4
All checks were successful
Lint and Build / format (pull_request) Successful in 38s
Lint and Build / clippy (pull_request) Successful in 1m40s
Lint and Build / build (pull_request) Successful in 3m46s
Lint and Build / test (pull_request) Successful in 4m0s
fix(security): enforce ownership on medication/appointment write paths (#12)
The update/delete handlers for medications and appointments took the
auth Claims but never used them — any authenticated user could update
or delete any other user's records by id (an IDOR). Same gap on
log_dose (could skew another's adherence stats) and get_adherence
(leaked dose history).

Fix: each affected handler now looks up the item first and confirms
user_id == claims.sub before mutating/returning. Mismatches return 404
(not 403) to avoid leaking the existence of other users' records.
Recipients of shared profiles remain read-only per the ADR — writes
stay owner-only.

Covered handlers:
- update_medication, delete_medication, log_dose, get_adherence
- update_appointment, delete_appointment

health_stats update/delete were already checking user_id == claims.sub
(unaffected).

New ownership_tests.rs: cross-user update/delete/log-dose/adherence all
404; the legitimate owner can still do all of the above.

Verification: cargo build/clippy (-D warnings)/fmt clean; existing
tests unaffected (they operate as the same user that created the data).

Closes #12.
2026-07-19 12:00:13 -03:00
..
docker fix(backend): P2 config & Docker consistency 2026-06-27 19:54:32 -03:00
docs docs(ai): reorganize documentation and update product docs 2026-03-09 11:04:44 -03:00
scripts chore: Clean up temporary docs and start Phase 2.4 2026-02-15 16:33:36 -03:00
src fix(security): enforce ownership on medication/appointment write paths (#12) 2026-07-19 12:00:13 -03:00
tests fix(security): enforce ownership on medication/appointment write paths (#12) 2026-07-19 12:00:13 -03:00
.dockerignore fix(docker): stop excluding Cargo.lock from the build context 2026-06-27 20:26:36 -03:00
.env.example fix(backend): P2 config & Docker consistency 2026-06-27 19:54:32 -03:00
Cargo.lock fix(backend): refresh-token jti + code cleanup (#15,#28,#29,#30) 2026-06-27 20:57:24 -03:00
Cargo.toml fix(backend): refresh-token jti + code cleanup (#15,#28,#29,#30) 2026-06-27 20:57:24 -03:00
clippy.toml fix(clippy): resolve all clippy warnings 2026-03-12 09:03:38 -03:00
comprehensive-test-8001.sh docs(ai): reorganize documentation and update product docs 2026-03-09 11:04:44 -03:00
comprehensive-test.sh fix(backend): P2 config & Docker consistency 2026-06-27 19:54:32 -03:00
core-test.sh docs(ai): reorganize documentation and update product docs 2026-03-09 11:04:44 -03:00
defaults.env fix(backend): P2 config & Docker consistency 2026-06-27 19:54:32 -03:00
deploy-and-test.sh feat: implement health statistics tracking (Phase 2.7 Task 2) 2026-03-07 16:24:18 -03:00
diagnose-server.sh fix(backend): P2 config & Docker consistency 2026-06-27 19:54:32 -03:00
docker-compose.dev.yml fix(backend): P2 config & Docker consistency 2026-06-27 19:54:32 -03:00
docker-compose.yml fix: healthcheck uses HTTPS + -k for self-signed cert 2026-07-14 13:00:30 -03:00
Dockerfile fix(backend): P2 config & Docker consistency 2026-06-27 19:54:32 -03:00
final-test.sh docs(ai): reorganize documentation and update product docs 2026-03-09 11:04:44 -03:00
fixed-test.sh docs(ai): reorganize documentation and update product docs 2026-03-09 11:04:44 -03:00
health-stats-test.sh docs(ai): reorganize documentation and update product docs 2026-03-09 11:04:44 -03:00
phase27-final-test.sh docs(ai): reorganize documentation and update product docs 2026-03-09 11:04:44 -03:00
phase27-fixed-test.sh docs(ai): reorganize documentation and update product docs 2026-03-09 11:04:44 -03:00
phase27-test.sh docs(ai): reorganize documentation and update product docs 2026-03-09 11:04:44 -03:00
quick-test.sh docs(phase-2.5): Complete access control implementation 2026-02-15 21:15:17 -03:00
rustfmt.toml feat(ci): Add Forgejo CI/CD pipeline for linting and building 2026-02-15 19:57:03 -03:00
start-dev.sh Fix Docker networking and add graceful MongoDB error handling 2026-02-23 07:58:57 -03:00
stop-dev.sh Fix Docker networking and add graceful MongoDB error handling 2026-02-23 07:58:57 -03:00
test-med-v2.sh feat: implement health statistics tracking (Phase 2.7 Task 2) 2026-03-07 16:24:18 -03:00
test-medication-endpoints.sh feat: implement health statistics tracking (Phase 2.7 Task 2) 2026-03-07 16:24:18 -03:00
test-password-recovery.sh docs(phase-2.5): Complete access control implementation 2026-02-15 21:15:17 -03:00
test-phase-2-4-complete.sh feat(backend): Complete Phase 2.4 - User Management Enhancement 2026-02-15 20:48:39 -03:00
test-phase28.sh fix(backend): P2 config & Docker consistency 2026-06-27 19:54:32 -03:00
test-profile-management.sh feat(backend): Implement enhanced profile management 2026-02-15 19:33:43 -03:00
test-solaria-v2.sh feat: implement health statistics tracking (Phase 2.7 Task 2) 2026-03-07 16:24:18 -03:00