Some checks failed
CI / go-lint (push) Has been skipped
CI / python-lint (push) Has been skipped
CI / nodejs-lint (push) Has been skipped
CI / test-go-ai-compliance (push) Failing after 30s
CI / test-python-backend-compliance (push) Successful in 30s
CI / test-python-document-crawler (push) Successful in 21s
CI / test-python-dsms-gateway (push) Successful in 17s
- Ruff: 144 auto-fixes (unused imports, == None → is None), F821/F811/F841 manuell - CVEs: python-multipart>=0.0.22, weasyprint>=68.0, pillow>=12.1.1, npm audit fix (0 vulns) - TS: 5 tote Drafting-Engine-Dateien entfernt, allowed-facts/sanitizer/StepHeader/context fixes - Tests: +104 (ISMS 58, Evidence 18, VVT 14, Generation 14) → 1449 passed - Refactoring: collect_ci_evidence (F→A), row_to_response (E→A), extract_requirements (E→A) - Dead Code: pca-platform, 7 Go-Handler, dsr_api.py, duplicate Schemas entfernt Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
125 lines
4.6 KiB
Python
125 lines
4.6 KiB
Python
"""
|
|
SQLAlchemy models for Einwilligungen — Consent-Tracking und Cookie-Banner Konfiguration.
|
|
|
|
Tables:
|
|
- compliance_einwilligungen_catalog: Tenant-Katalog (aktive Datenpunkte)
|
|
- compliance_einwilligungen_company: Firmeninformationen fuer DSI-Generierung
|
|
- compliance_einwilligungen_cookies: Cookie-Banner-Konfiguration
|
|
- compliance_einwilligungen_consents: Endnutzer-Consent-Aufzeichnungen
|
|
- compliance_einwilligungen_consent_history: Aenderungshistorie (Migration 009)
|
|
"""
|
|
|
|
import uuid
|
|
from datetime import datetime
|
|
|
|
from sqlalchemy import (
|
|
Column, String, Text, Boolean, DateTime, JSON, Index
|
|
)
|
|
from sqlalchemy.dialects.postgresql import UUID
|
|
|
|
from classroom_engine.database import Base
|
|
|
|
|
|
class EinwilligungenCatalogDB(Base):
|
|
"""Tenant-spezifischer Datenpunktkatalog — welche Datenpunkte sind aktiv?"""
|
|
|
|
__tablename__ = 'compliance_einwilligungen_catalog'
|
|
|
|
id = Column(UUID(as_uuid=True), primary_key=True, default=uuid.uuid4)
|
|
tenant_id = Column(String(100), nullable=False, unique=True)
|
|
selected_data_point_ids = Column(JSON, default=list)
|
|
custom_data_points = Column(JSON, default=list)
|
|
updated_at = Column(DateTime, default=datetime.utcnow, onupdate=datetime.utcnow)
|
|
|
|
__table_args__ = (
|
|
Index('idx_einw_catalog_tenant', 'tenant_id'),
|
|
)
|
|
|
|
def __repr__(self):
|
|
return f"<EinwilligungenCatalog tenant={self.tenant_id}>"
|
|
|
|
|
|
class EinwilligungenCompanyDB(Base):
|
|
"""Firmeninformationen fuer die DSI-Generierung."""
|
|
|
|
__tablename__ = 'compliance_einwilligungen_company'
|
|
|
|
id = Column(UUID(as_uuid=True), primary_key=True, default=uuid.uuid4)
|
|
tenant_id = Column(String(100), nullable=False, unique=True)
|
|
data = Column(JSON, nullable=False, default=dict)
|
|
updated_at = Column(DateTime, default=datetime.utcnow, onupdate=datetime.utcnow)
|
|
|
|
def __repr__(self):
|
|
return f"<EinwilligungenCompany tenant={self.tenant_id}>"
|
|
|
|
|
|
class EinwilligungenCookiesDB(Base):
|
|
"""Cookie-Banner-Konfiguration pro Tenant."""
|
|
|
|
__tablename__ = 'compliance_einwilligungen_cookies'
|
|
|
|
id = Column(UUID(as_uuid=True), primary_key=True, default=uuid.uuid4)
|
|
tenant_id = Column(String(100), nullable=False, unique=True)
|
|
categories = Column(JSON, default=list)
|
|
config = Column(JSON, default=dict)
|
|
updated_at = Column(DateTime, default=datetime.utcnow, onupdate=datetime.utcnow)
|
|
|
|
__table_args__ = (
|
|
Index('idx_einw_cookies_tenant', 'tenant_id'),
|
|
)
|
|
|
|
def __repr__(self):
|
|
return f"<EinwilligungenCookies tenant={self.tenant_id}>"
|
|
|
|
|
|
class EinwilligungenConsentDB(Base):
|
|
"""Endnutzer-Consent-Aufzeichnung — granulare Einwilligungen pro Datenpunkt."""
|
|
|
|
__tablename__ = 'compliance_einwilligungen_consents'
|
|
|
|
id = Column(UUID(as_uuid=True), primary_key=True, default=uuid.uuid4)
|
|
tenant_id = Column(String(100), nullable=False)
|
|
user_id = Column(String(200), nullable=False)
|
|
data_point_id = Column(String(100), nullable=False)
|
|
granted = Column(Boolean, nullable=False, default=True)
|
|
granted_at = Column(DateTime, nullable=False, default=datetime.utcnow)
|
|
revoked_at = Column(DateTime)
|
|
ip_address = Column(String(45))
|
|
user_agent = Column(Text)
|
|
consent_version = Column(String(20), default='1.0')
|
|
source = Column(String(100))
|
|
created_at = Column(DateTime, default=datetime.utcnow, nullable=False)
|
|
|
|
__table_args__ = (
|
|
Index('idx_einw_consents_tenant', 'tenant_id'),
|
|
Index('idx_einw_consents_user', 'tenant_id', 'user_id'),
|
|
Index('idx_einw_consents_dpid', 'data_point_id'),
|
|
)
|
|
|
|
def __repr__(self):
|
|
return f"<EinwilligungenConsent user={self.user_id} dp={self.data_point_id} granted={self.granted}>"
|
|
|
|
|
|
class EinwilligungenConsentHistoryDB(Base):
|
|
"""Aenderungshistorie fuer Einwilligungen — jede Aktion wird protokolliert."""
|
|
|
|
__tablename__ = 'compliance_einwilligungen_consent_history'
|
|
|
|
id = Column(UUID(as_uuid=True), primary_key=True, default=uuid.uuid4)
|
|
consent_id = Column(UUID(as_uuid=True), nullable=False)
|
|
tenant_id = Column(String(100), nullable=False)
|
|
action = Column(String(50), nullable=False) # granted | revoked | version_update | renewed
|
|
consent_version = Column(String(20))
|
|
ip_address = Column(String(45))
|
|
user_agent = Column(Text)
|
|
source = Column(String(100))
|
|
created_at = Column(DateTime, default=datetime.utcnow, nullable=False)
|
|
|
|
__table_args__ = (
|
|
Index('idx_einw_history_consent', 'consent_id'),
|
|
Index('idx_einw_history_tenant', 'tenant_id'),
|
|
)
|
|
|
|
def __repr__(self):
|
|
return f"<ConsentHistory consent={self.consent_id} action={self.action}>"
|