324 lines
13 KiB
XML
324 lines
13 KiB
XML
export const DirectPassDrawer = ({
|
|
apps = [],
|
|
isAdmin = false,
|
|
}: {
|
|
apps?: any[];
|
|
isAdmin?: boolean;
|
|
}) => {
|
|
return (
|
|
<div id="tabDirectPass">
|
|
<p style="color: var(--text-secondary); font-size: 0.9rem; margin: 0 0 1rem 0;">
|
|
Mint an isolated, scoped child session for 1-click magic links, CLI
|
|
tools, team members, or AI assistants without exposing your primary
|
|
passkeys.
|
|
</p>
|
|
|
|
<form
|
|
id="delegateForm"
|
|
onsubmit="handleDelegateSession(event)"
|
|
style="margin-top: 1rem;"
|
|
>
|
|
{/* Label Input */}
|
|
<div style="margin-bottom: 1.25rem;">
|
|
<label style="display: block; font-weight: 600; margin-bottom: 0.35rem; font-size: 0.875rem; color: var(--text-secondary);">
|
|
Session Label / Purpose *
|
|
</label>
|
|
<input
|
|
type="text"
|
|
id="delegateLabel"
|
|
placeholder="e.g. Friend Demo Pass, Antigravity Assistant, CI/CD Runner, Terminal CLI"
|
|
required
|
|
style="width: 100%;"
|
|
/>
|
|
</div>
|
|
|
|
{/* Direct 1-Click Destination (App Selection) */}
|
|
<div style="margin-bottom: 1.25rem;">
|
|
<label style="display: block; font-weight: 600; margin-bottom: 0.35rem; font-size: 0.875rem; color: var(--text-secondary);">
|
|
1-Click Destination App (Optional)
|
|
</label>
|
|
<select
|
|
id="delegateTargetApp"
|
|
onchange="handleTargetAppChange(this.value)"
|
|
style="width: 100%; padding: 0.5rem 0.75rem; background: var(--surface-card); border: 1px solid var(--border-subtle); border-radius: var(--radius-sm); color: var(--text-primary); font-size: 0.9rem;"
|
|
>
|
|
<option value="">Auth-Yes Central Dashboard (Default)</option>
|
|
{apps.map((app) => (
|
|
<option value={app.name} key={app.id}>
|
|
{app.name} ({app.domain || "Internal App"})
|
|
</option>
|
|
))}
|
|
</select>
|
|
<p style="font-size: 0.75rem; color: var(--text-muted); margin: 0.35rem 0 0 0;">
|
|
Selecting an app scopes the pass and automatically redirects the
|
|
recipient to that app upon 1-click redemption.
|
|
</p>
|
|
</div>
|
|
|
|
{/* Lifespan Presets */}
|
|
<div style="margin-bottom: 1.25rem;">
|
|
<label style="display: block; font-weight: 600; margin-bottom: 0.45rem; font-size: 0.875rem; color: var(--text-secondary);">
|
|
Lifespan & Auto-Expiration
|
|
</label>
|
|
<div style="display: flex; gap: 0.5rem; flex-wrap: wrap;">
|
|
<button
|
|
type="button"
|
|
class="pill-btn lifespan-pill active"
|
|
data-hours="1"
|
|
onclick="selectLifespan(this, 1)"
|
|
>
|
|
⚡ 1 Hour (Quick Task)
|
|
</button>
|
|
<button
|
|
type="button"
|
|
class="pill-btn lifespan-pill"
|
|
data-hours="12"
|
|
onclick="selectLifespan(this, 12)"
|
|
>
|
|
🛠️ 12 Hours (Work Session)
|
|
</button>
|
|
<button
|
|
type="button"
|
|
class="pill-btn lifespan-pill"
|
|
data-hours="24"
|
|
onclick="selectLifespan(this, 24)"
|
|
>
|
|
📅 24 Hours
|
|
</button>
|
|
<button
|
|
type="button"
|
|
class="pill-btn lifespan-pill"
|
|
data-hours="168"
|
|
onclick="selectLifespan(this, 168)"
|
|
>
|
|
🗓️ 7 Days
|
|
</button>
|
|
</div>
|
|
<input type="hidden" id="delegateHours" value="1" />
|
|
</div>
|
|
|
|
{/* Access Mode Presets */}
|
|
<div style="margin-bottom: 1.25rem;">
|
|
<label style="display: block; font-weight: 600; margin-bottom: 0.45rem; font-size: 0.875rem; color: var(--text-secondary);">
|
|
Access Mode & Permissions
|
|
</label>
|
|
<div style="display: flex; gap: 0.5rem; flex-wrap: wrap;">
|
|
<button
|
|
type="button"
|
|
class="pill-btn mode-pill active"
|
|
data-mode="read_only"
|
|
onclick="selectMode(this, 'read_only')"
|
|
>
|
|
👁️ Read-Only (Audit & Inspection)
|
|
</button>
|
|
<button
|
|
type="button"
|
|
class="pill-btn mode-pill"
|
|
data-mode="operator"
|
|
onclick="selectMode(this, 'operator')"
|
|
>
|
|
⚡ Operator (App Actions)
|
|
</button>
|
|
{isAdmin && (
|
|
<button
|
|
type="button"
|
|
class="pill-btn mode-pill"
|
|
data-mode="admin"
|
|
onclick="selectMode(this, 'admin')"
|
|
>
|
|
👑 Full Admin
|
|
</button>
|
|
)}
|
|
<button
|
|
type="button"
|
|
class="pill-btn mode-pill"
|
|
data-mode="custom"
|
|
onclick="selectMode(this, 'custom')"
|
|
>
|
|
🛠️ Custom Scopes
|
|
</button>
|
|
</div>
|
|
<input type="hidden" id="delegateMode" value="read_only" />
|
|
</div>
|
|
|
|
{/* Progressive Disclosure: Specific App & Capability Scopes */}
|
|
<details
|
|
id="customScopesSection"
|
|
style="margin-bottom: 1.25rem; border: 1px solid var(--border-subtle); border-radius: var(--radius-md); padding: 0.75rem 1rem; background: var(--surface-muted);"
|
|
>
|
|
<summary style="cursor: pointer; font-weight: 600; font-size: 0.875rem; color: var(--text-primary);">
|
|
▸ Customize Specific App Grants & Capabilities (Optional)
|
|
</summary>
|
|
<div style="margin-top: 0.75rem; display: flex; flex-direction: column; gap: 0.5rem;">
|
|
<p style="margin: 0 0 0.5rem 0; font-size: 0.8rem; color: var(--text-secondary);">
|
|
Select which subsidiary microservices and IAM capabilities this
|
|
delegated token is permitted to access:
|
|
</p>
|
|
|
|
<div style="display: grid; grid-template-columns: repeat(auto-fit, minmax(200px, 1fr)); gap: 0.5rem;">
|
|
<label style="display: flex; align-items: center; gap: 0.5rem; font-size: 0.85rem; color: var(--text-primary); cursor: pointer;">
|
|
<input
|
|
type="checkbox"
|
|
class="scope-checkbox"
|
|
value="read:audit"
|
|
checked
|
|
/>
|
|
Read Audit Ledger
|
|
</label>
|
|
<label style="display: flex; align-items: center; gap: 0.5rem; font-size: 0.85rem; color: var(--text-primary); cursor: pointer;">
|
|
<input
|
|
type="checkbox"
|
|
class="scope-checkbox"
|
|
value="read:users"
|
|
checked
|
|
/>
|
|
Read Users List
|
|
</label>
|
|
<label style="display: flex; align-items: center; gap: 0.5rem; font-size: 0.85rem; color: var(--text-primary); cursor: pointer;">
|
|
<input
|
|
type="checkbox"
|
|
class="scope-checkbox"
|
|
value="read:apps"
|
|
checked
|
|
/>
|
|
Read Apps Registry
|
|
</label>
|
|
{apps.map((app) => (
|
|
<label
|
|
key={app.id}
|
|
style="display: flex; align-items: center; gap: 0.5rem; font-size: 0.85rem; color: var(--text-primary); cursor: pointer;"
|
|
>
|
|
<input
|
|
type="checkbox"
|
|
class="scope-checkbox"
|
|
value={`app:${app.name}`}
|
|
/>
|
|
{app.name} ({app.domain || "Internal"})
|
|
</label>
|
|
))}
|
|
</div>
|
|
</div>
|
|
</details>
|
|
|
|
<div style="display: flex; gap: 0.75rem;">
|
|
<button
|
|
type="submit"
|
|
id="submitDelegateBtn"
|
|
class="btn-primary"
|
|
style="min-height: 42px;"
|
|
>
|
|
Mint & Delegate Session
|
|
</button>
|
|
<button
|
|
type="button"
|
|
class="btn-outline"
|
|
onclick="closeDelegateDrawer()"
|
|
style="min-height: 42px;"
|
|
>
|
|
Cancel
|
|
</button>
|
|
</div>
|
|
</form>
|
|
|
|
{/* Hand-Off Card (Revealed upon generation) */}
|
|
<div
|
|
id="handoffModal"
|
|
style="display: none; margin-top: 1.5rem; padding: 1.25rem; background: var(--surface-card); border: 1px solid var(--primary); border-radius: var(--radius-md); box-shadow: var(--shadow-md);"
|
|
>
|
|
<div style="display: flex; justify-content: space-between; align-items: center; margin-bottom: 0.75rem;">
|
|
<div style="display: flex; align-items: center; gap: 0.5rem;">
|
|
<span style="font-size: 1.2rem;">🔑</span>
|
|
<strong style="color: var(--text-primary); font-size: 1rem;">
|
|
Session Delegated Successfully!
|
|
</strong>
|
|
</div>
|
|
<span class="badge badge-success">Active Now</span>
|
|
</div>
|
|
|
|
<p style="font-size: 0.85rem; color: var(--text-secondary); margin: 0 0 1rem 0;">
|
|
Copy this token, 1-click magic link, or CLI export string. You can
|
|
revoke or extend this session anytime from the active session cards
|
|
below.
|
|
</p>
|
|
|
|
<div style="display: flex; flex-direction: column; gap: 0.75rem; margin-bottom: 1rem;">
|
|
{/* 1-Click Magic Link */}
|
|
<div>
|
|
<label style="display: block; font-size: 0.75rem; font-weight: 700; text-transform: uppercase; color: var(--text-muted); margin-bottom: 0.25rem;">
|
|
1-Click Magic Link (Web / Friend / Interview)
|
|
</label>
|
|
<div style="display: flex; gap: 0.5rem;">
|
|
<code
|
|
id="handoffMagicLinkText"
|
|
style="flex: 1; padding: 0.5rem 0.75rem; background: var(--surface-muted); border: 1px solid var(--border-subtle); border-radius: var(--radius-sm); font-family: monospace; font-size: 0.85rem; overflow-x: auto; white-space: nowrap; color: var(--success);"
|
|
>
|
|
</code>
|
|
<button
|
|
type="button"
|
|
class="btn-primary"
|
|
style="min-height: 36px; padding: 0 0.85rem; font-size: 0.8rem;"
|
|
onclick="copyHandoff('magic')"
|
|
>
|
|
Copy Link
|
|
</button>
|
|
</div>
|
|
</div>
|
|
|
|
{/* 1-Tap Copy CLI */}
|
|
<div>
|
|
<label style="display: block; font-size: 0.75rem; font-weight: 700; text-transform: uppercase; color: var(--text-muted); margin-bottom: 0.25rem;">
|
|
Terminal Environment Export (CLI)
|
|
</label>
|
|
<div style="display: flex; gap: 0.5rem;">
|
|
<code
|
|
id="handoffCliText"
|
|
style="flex: 1; padding: 0.5rem 0.75rem; background: var(--surface-muted); border: 1px solid var(--border-subtle); border-radius: var(--radius-sm); font-family: monospace; font-size: 0.85rem; overflow-x: auto; white-space: nowrap; color: var(--text-primary);"
|
|
>
|
|
</code>
|
|
<button
|
|
type="button"
|
|
class="btn-outline"
|
|
style="min-height: 36px; padding: 0 0.85rem; font-size: 0.8rem;"
|
|
onclick="copyHandoff('cli')"
|
|
>
|
|
Copy CLI
|
|
</button>
|
|
</div>
|
|
</div>
|
|
|
|
{/* 1-Tap Copy cURL Header */}
|
|
<div>
|
|
<label style="display: block; font-size: 0.75rem; font-weight: 700; text-transform: uppercase; color: var(--text-muted); margin-bottom: 0.25rem;">
|
|
HTTP Authorization Header
|
|
</label>
|
|
<div style="display: flex; gap: 0.5rem;">
|
|
<code
|
|
id="handoffCurlText"
|
|
style="flex: 1; padding: 0.5rem 0.75rem; background: var(--surface-muted); border: 1px solid var(--border-subtle); border-radius: var(--radius-sm); font-family: monospace; font-size: 0.85rem; overflow-x: auto; white-space: nowrap; color: var(--text-primary);"
|
|
>
|
|
</code>
|
|
<button
|
|
type="button"
|
|
class="btn-outline"
|
|
style="min-height: 36px; padding: 0 0.85rem; font-size: 0.8rem;"
|
|
onclick="copyHandoff('curl')"
|
|
>
|
|
Copy Header
|
|
</button>
|
|
</div>
|
|
</div>
|
|
</div>
|
|
|
|
<button
|
|
type="button"
|
|
class="btn-outline"
|
|
style="width: 100%; min-height: 38px; justify-content: center; font-size: 0.85rem;"
|
|
onclick="closeHandoffModal()"
|
|
>
|
|
Done (Session is Active)
|
|
</button>
|
|
</div>
|
|
</div>
|
|
);
|
|
};
|