38558-vm/backend/src/db/seeders/20200430130760-user-roles.js
2026-02-18 11:24:33 +00:00

953 lines
33 KiB
JavaScript

const { v4: uuid } = require("uuid");
module.exports = {
/**
* @param{import("sequelize").QueryInterface} queryInterface
* @return {Promise<void>}
*/
async up(queryInterface) {
const createdAt = new Date();
const updatedAt = new Date();
/** @type {Map<string, string>} */
const idMap = new Map();
/**
* @param {string} key
* @return {string}
*/
function getId(key) {
if (idMap.has(key)) {
return idMap.get(key);
}
const id = uuid();
idMap.set(key, id);
return id;
}
await queryInterface.bulkInsert("roles", [
{ id: getId("Administrator"), name: "Administrator", createdAt, updatedAt },
{ id: getId("PlatformOwner"), name: "Platform Owner", createdAt, updatedAt },
{ id: getId("SecurityManager"), name: "Security Manager", createdAt, updatedAt },
{ id: getId("ProductManager"), name: "Product Manager", createdAt, updatedAt },
{ id: getId("SupportSpecialist"), name: "Support Specialist", createdAt, updatedAt },
{ id: getId("ReadOnlyAnalyst"), name: "Read Only Analyst", createdAt, updatedAt },
{ id: getId("Public"), name: "Public", createdAt, updatedAt },
]);
/**
* @param {string} name
*/
function createPermissions(name) {
return [
{ id: getId(`CREATE_${name.toUpperCase()}`), createdAt, updatedAt, name: `CREATE_${name.toUpperCase()}` },
{ id: getId(`READ_${name.toUpperCase()}`), createdAt, updatedAt, name: `READ_${name.toUpperCase()}` },
{ id: getId(`UPDATE_${name.toUpperCase()}`), createdAt, updatedAt, name: `UPDATE_${name.toUpperCase()}` },
{ id: getId(`DELETE_${name.toUpperCase()}`), createdAt, updatedAt, name: `DELETE_${name.toUpperCase()}` }
];
}
const entities = [
"users","roles","permissions","projects","project_memberships","role_permissions","feature_flags","audit_logs","admin_announcements","files_library",,
];
await queryInterface.bulkInsert("permissions", entities.flatMap(createPermissions));
await queryInterface.bulkInsert("permissions", [{ id: getId(`READ_API_DOCS`), createdAt, updatedAt, name: `READ_API_DOCS` }]);
await queryInterface.bulkInsert("permissions", [{ id: getId(`CREATE_SEARCH`), createdAt, updatedAt, name: `CREATE_SEARCH`}]);
await queryInterface.sequelize.query(`create table "rolesPermissionsPermissions"
(
"createdAt" timestamp with time zone not null,
"updatedAt" timestamp with time zone not null,
"roles_permissionsId" uuid not null,
"permissionId" uuid not null,
primary key ("roles_permissionsId", "permissionId")
);`);
await queryInterface.bulkInsert("rolesPermissionsPermissions", [
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('CREATE_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('READ_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('UPDATE_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('DELETE_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('READ_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('UPDATE_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('READ_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('UPDATE_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ReadOnlyAnalyst"), permissionId: getId('READ_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('CREATE_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('READ_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('UPDATE_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('DELETE_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('READ_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('UPDATE_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('CREATE_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('READ_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('UPDATE_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('READ_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('UPDATE_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ReadOnlyAnalyst"), permissionId: getId('READ_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('CREATE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('READ_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('UPDATE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('DELETE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('CREATE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('READ_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('UPDATE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('CREATE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('READ_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('UPDATE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('READ_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('UPDATE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ReadOnlyAnalyst"), permissionId: getId('READ_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('CREATE_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('READ_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('UPDATE_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('DELETE_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('CREATE_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('READ_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('UPDATE_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('DELETE_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ReadOnlyAnalyst"), permissionId: getId('READ_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('CREATE_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('READ_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('UPDATE_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('DELETE_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('READ_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('UPDATE_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('CREATE_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('READ_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('UPDATE_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('UPDATE_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ReadOnlyAnalyst"), permissionId: getId('READ_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('CREATE_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('READ_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('UPDATE_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('DELETE_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('READ_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('UPDATE_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('DELETE_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('READ_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('READ_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ReadOnlyAnalyst"), permissionId: getId('READ_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('CREATE_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('READ_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('UPDATE_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('DELETE_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('READ_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('UPDATE_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('CREATE_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('READ_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('UPDATE_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('UPDATE_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("ReadOnlyAnalyst"), permissionId: getId('READ_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('CREATE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('READ_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('UPDATE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('DELETE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('READ_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('UPDATE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('CREATE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('READ_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('UPDATE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('DELETE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('READ_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('UPDATE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("ReadOnlyAnalyst"), permissionId: getId('READ_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("PlatformOwner"), permissionId: getId('CREATE_SEARCH') },
{ createdAt, updatedAt, roles_permissionsId: getId("SecurityManager"), permissionId: getId('CREATE_SEARCH') },
{ createdAt, updatedAt, roles_permissionsId: getId("ProductManager"), permissionId: getId('CREATE_SEARCH') },
{ createdAt, updatedAt, roles_permissionsId: getId("SupportSpecialist"), permissionId: getId('CREATE_SEARCH') },
{ createdAt, updatedAt, roles_permissionsId: getId("ReadOnlyAnalyst"), permissionId: getId('CREATE_SEARCH') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('UPDATE_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('DELETE_USERS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_ROLES') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_ROLES') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('UPDATE_ROLES') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('DELETE_ROLES') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('UPDATE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('DELETE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('UPDATE_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('DELETE_PROJECTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('UPDATE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('DELETE_PROJECT_MEMBERSHIPS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('UPDATE_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('DELETE_ROLE_PERMISSIONS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('UPDATE_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('DELETE_FEATURE_FLAGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('UPDATE_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('DELETE_AUDIT_LOGS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('UPDATE_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('DELETE_ADMIN_ANNOUNCEMENTS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('UPDATE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('DELETE_FILES_LIBRARY') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('READ_API_DOCS') },
{ createdAt, updatedAt, roles_permissionsId: getId("Administrator"), permissionId: getId('CREATE_SEARCH') },
]);
await queryInterface.sequelize.query(`UPDATE "users" SET "app_roleId"='${getId("SuperAdmin")}' WHERE "email"='super_admin@flatlogic.com'`);
await queryInterface.sequelize.query(`UPDATE "users" SET "app_roleId"='${getId("Administrator")}' WHERE "email"='admin@flatlogic.com'`);
await queryInterface.sequelize.query(`UPDATE "users" SET "app_roleId"='${getId("PlatformOwner")}' WHERE "email"='client@hello.com'`);
await queryInterface.sequelize.query(`UPDATE "users" SET "app_roleId"='${getId("SecurityManager")}' WHERE "email"='john@doe.com'`);
}
};