926dc02a09
CI / test-python-backend (push) Successful in 30s
CI / test-python-document-crawler (push) Has been skipped
CI / guardrail-integrity (push) Has been skipped
CI / test-python-dsms-gateway (push) Has been skipped
CI / secret-scan (push) Has been skipped
CI / dep-audit (push) Has been skipped
CI / sbom-scan (push) Has been skipped
CI / build-sha-integrity (push) Successful in 12s
CI / validate-canonical-controls (push) Successful in 12s
CI / loc-budget (push) Successful in 25s
CI / go-lint (push) Has been skipped
CI / detect-changes (push) Successful in 15s
CI / python-lint (push) Has been skipped
CI / nodejs-lint (push) Has been skipped
CI / branch-name (push) Has been skipped
CI / nodejs-build (push) Successful in 3m9s
CI / test-go (push) Has been skipped
CI / iace-gt-coverage (push) Has been skipped
Der harte relevant=true-Filter versteckte ~25% des Korpus (40.926 Atome), ~70% davon echte Pflichten (500er-Validierung). relevant wird zur Stufe: - Service: tier-Param (core=Default schuetzt Agent/CRA; all=alles inkl. review), ORDER BY relevant DESC; pro Control relevant/tier/source_type (own_library bei license_rule=3, sonst derived) + source_regulation/article; core_count/review_count. Pure Helper tier_label + source_type (+ Tests). - Route: optionaler tier-Query (default core) — contract-safe (additiv). - Frontend: Coverage-Drill-down /sdk/coverage/[useCase] — Kern-Pflichten vs. "zur fachlichen Pruefung", je mit Herkunfts-Badge; Uebersicht zeigt Delta. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
68 lines
2.5 KiB
Python
68 lines
2.5 KiB
Python
"""Use-Case → Controls API — the shared retrieval layer.
|
|
|
|
GET /v1/controls/use-cases — registry + mapped counts
|
|
GET /v1/controls/use-cases/{use_case}/controls — ranked controls of a topic
|
|
|
|
Consumed by the document specialist agents and the CRA finding-mapper so both
|
|
draw from ONE controls index instead of separate retrievals. Read-only.
|
|
"""
|
|
|
|
from __future__ import annotations
|
|
|
|
from typing import Any, Optional
|
|
|
|
from fastapi import APIRouter, Depends, Query
|
|
from sqlalchemy.orm import Session
|
|
|
|
from classroom_engine.database import get_db
|
|
from compliance.api._http_errors import translate_domain_errors
|
|
from compliance.services.corpus_overview import corpus_overview
|
|
from compliance.services.use_case_controls import UseCaseControlsService
|
|
|
|
router = APIRouter(prefix="/v1/controls", tags=["use-case-controls"])
|
|
|
|
|
|
def get_use_case_controls_service(
|
|
db: Session = Depends(get_db),
|
|
) -> UseCaseControlsService:
|
|
return UseCaseControlsService(db)
|
|
|
|
|
|
@router.get("/use-cases")
|
|
async def list_use_cases(
|
|
svc: UseCaseControlsService = Depends(get_use_case_controls_service),
|
|
) -> list[dict[str, Any]]:
|
|
"""All enabled use-cases (topics) with their live mapped-control counts."""
|
|
with translate_domain_errors():
|
|
return svc.list_use_cases()
|
|
|
|
|
|
@router.get("/corpus")
|
|
async def corpus(db: Session = Depends(get_db)) -> dict[str, Any]:
|
|
"""Korpus-Übersicht: Quell-Dokumente (source_regulation) mit Lizenz-Tier +
|
|
Atom-Count + gemapptem Use Case, plus den kuratierten Lizenz-Katalog
|
|
(canonical_control_sources ⋈ licenses) mit Nutzungsrechten."""
|
|
with translate_domain_errors():
|
|
return corpus_overview(db)
|
|
|
|
|
|
@router.get("/use-cases/{use_case}/controls")
|
|
async def controls_for_use_case(
|
|
use_case: str,
|
|
primary_only: bool = Query(False, description="master-grain Fallback: nur Primaerzweck"),
|
|
sub_topic: Optional[str] = Query(None, description="atom-grain: nur dieses Sub-Thema"),
|
|
tier: str = Query(
|
|
"core",
|
|
pattern="^(core|all)$",
|
|
description="atom-grain: 'core'=nur validierte Kern-Pflichten (Default), "
|
|
"'all'=alle inkl. 'zur Prüfung'-Stufe",
|
|
),
|
|
limit: int = Query(50, ge=1, le=200),
|
|
offset: int = Query(0, ge=0),
|
|
svc: UseCaseControlsService = Depends(get_use_case_controls_service),
|
|
) -> dict[str, Any]:
|
|
"""Controls for a topic. Atom-grain (Haiku: relevant + sub_topic) wenn vorhanden,
|
|
sonst master-grain Seed."""
|
|
with translate_domain_errors():
|
|
return svc.controls_for_use_case(use_case, primary_only, limit, offset, sub_topic, tier)
|