Some checks failed
build-packages / resolve bundled mosh-client (push) Has been cancelled
build-packages / resolve bundled et-client (push) Has been cancelled
build-packages / build-macos (push) Has been cancelled
build-packages / build-windows (push) Has been cancelled
build-packages / build-linux-x64 (push) Has been cancelled
build-packages / build-linux-arm64 (push) Has been cancelled
build-packages / release (push) Has been cancelled
build-packages / update Nix release metadata (push) Has been cancelled
build-packages / bump homebrew tap (push) Has been cancelled
test / lint-and-test (push) Has been cancelled
AI automation / Route event (push) Has been cancelled
AI automation / Hand reopened issue to maintainers (push) Has been cancelled
AI automation / Clean source issue state (push) Has been cancelled
AI automation / Reconcile handoffs (push) Has been cancelled
AI automation / Classify issue (push) Has been cancelled
AI automation / Claude Code smoke (push) Has been cancelled
AI automation / Review issue follow-up (push) Has been cancelled
AI automation / Publish issue follow-up (push) Has been cancelled
AI automation / Implement with Claude Code (push) Has been cancelled
AI automation / Publish implement PR (push) Has been cancelled
AI automation / Continue queued issue comments (push) Has been cancelled
AI automation / Codex review loop (push) Has been cancelled
AI automation / Publish Codex fix (push) Has been cancelled
AI automation / Clear Codex dispatch marker (push) Has been cancelled
AI automation / Own PR re-request Codex (push) Has been cancelled
AI automation / External PR re-request Codex (push) Has been cancelled
AI automation / Poll Codex reaction / retry (push) Has been cancelled
build-et-binaries / build-linux-x64 (push) Has been cancelled
build-et-binaries / build-linux-arm64 (push) Has been cancelled
build-et-binaries / build-macos-universal (push) Has been cancelled
build-et-binaries / build-windows-x64 (push) Has been cancelled
build-et-binaries / release (push) Has been cancelled
72 lines
2.3 KiB
TypeScript
72 lines
2.3 KiB
TypeScript
/**
|
|
* Shared encrypted-object storage surface for built-in cloud adapters and
|
|
* plugin sync Providers. Netcatty always encrypts before write and decrypts
|
|
* after read; implementations only handle already-encrypted bytes.
|
|
*/
|
|
|
|
export interface EncryptedObjectAccount {
|
|
id: string;
|
|
email?: string;
|
|
name?: string;
|
|
avatarUrl?: string;
|
|
}
|
|
|
|
export interface EncryptedObjectStorageCapabilities {
|
|
revisions: boolean;
|
|
conditionalWrites: boolean;
|
|
atomicReplacement: boolean;
|
|
maxObjectBytes?: number;
|
|
maxObjects?: number;
|
|
}
|
|
|
|
export interface EncryptedObjectReadResult {
|
|
found: boolean;
|
|
key: string;
|
|
bytes: Uint8Array | null;
|
|
revision?: string;
|
|
contentType?: string;
|
|
}
|
|
|
|
export interface EncryptedObjectWriteResult {
|
|
created: boolean;
|
|
revision?: string;
|
|
}
|
|
|
|
export interface EncryptedObjectDeleteResult {
|
|
deleted: boolean;
|
|
}
|
|
|
|
export interface EncryptedObjectWriteOptions {
|
|
/** When set, the write is conditional on the current remote revision. `null` means the object must not exist. */
|
|
expectedRevision?: string | null;
|
|
signal?: AbortSignal;
|
|
}
|
|
|
|
export interface EncryptedObjectDeleteOptions {
|
|
expectedRevision?: string;
|
|
signal?: AbortSignal;
|
|
}
|
|
|
|
/**
|
|
* Provider-agnostic encrypted object store. Plugins and WebDAV both implement
|
|
* this shape so CloudSyncManager can encrypt→write / read→decrypt without
|
|
* special-casing storage backends.
|
|
*/
|
|
export interface EncryptedObjectStorage {
|
|
readonly providerId: string;
|
|
connect(configuration?: unknown, options?: { signal?: AbortSignal }): Promise<{ account: EncryptedObjectAccount }>;
|
|
disconnect(options?: { signal?: AbortSignal }): Promise<void>;
|
|
getAccount(options?: { signal?: AbortSignal }): Promise<EncryptedObjectAccount | null>;
|
|
getCapabilities(options?: { signal?: AbortSignal }): Promise<EncryptedObjectStorageCapabilities>;
|
|
readObject(key: string, options?: { signal?: AbortSignal; preferStream?: boolean }): Promise<EncryptedObjectReadResult>;
|
|
writeObject(
|
|
key: string,
|
|
bytes: Uint8Array,
|
|
options?: EncryptedObjectWriteOptions & { preferStream?: boolean },
|
|
): Promise<EncryptedObjectWriteResult>;
|
|
deleteObject(key: string, options?: EncryptedObjectDeleteOptions): Promise<EncryptedObjectDeleteResult>;
|
|
}
|
|
|
|
/** Default object key used when adapting the legacy single-file CloudAdapter path. */
|
|
export const DEFAULT_ENCRYPTED_SYNC_OBJECT_KEY = 'netcatty-vault.json';
|