feat: add the activity resource and the security audit log - #17
Merged
Merged
Conversation
client.activity().list() reads GET /v1/activity; KIND_SECURITY is the append-only audit trail of membership, role, access and sign-in changes.
…audit-log # Conflicts: # src/main/java/com/fopost/sdk/FoPost.java
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Adds an
activityresource coveringGET /v1/activity, and with it the security audit log shipping in fopost#992 (OWL-127).The endpoint returns
databesidemeta, so the page is read whole rather than unwrapped down to the list; the cursor comes back as part of the page and is null at the end.kindofsecurityis the audit log: members joining, leaving or changing role and access, plus changes to two-step verification, passkeys, single sign-on and signed-in devices. Those rows are append-only and, unlike the rest of the activity log, never expire.Two tests: reading the audit log keeps the cursor and decodes the actor, and the end of the list is a null cursor. Full suite green.
Merge after fopost#992 — the
securitykind 404s nothing today, but the enum documents a value the deployed API does not yet return.