trails/apps/journal/app/routes
Ullrich Schäfer 855244747c
journal: typed job seam + Komoot credentials through the manager
Two related fixes from the architecture review:

Typed job seam. Job payloads were `unknown` end-to-end: every handler
opened with `job.data as SomePayload`, every enqueue site passed a bare
string queue name and an unchecked object, and a typo meant a runtime
failure in a background worker. packages/jobs gains defineJob(), which
keeps the payload typed inside the handler and performs the
contravariance cast once inside the package. The journal declares all
14 queues and their payload shapes in app/jobs/payloads.ts; enqueue()/
enqueueOptional() and defineJournalJob() key off that map, so enqueue
sites and handlers cannot drift and queue names are compile-checked.

Komoot credential bypass. The bulk-import route enqueued the raw
credentials JSONB in the pg-boss payload, skipping withFreshCredentials
entirely: credentials sat at rest in the job table, were never
refreshed if stale, and markNeedsRelink never fired. The payload now
carries only the serviceId; the handler resolves fresh credentials
through the ConnectedServiceManager at execution time, and marks the
import batch failed (instead of leaving it pending forever) when
credential resolution itself fails.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
2026-06-10 02:05:24 +02:00
..
activities.$id.server.ts feat(journal): outbox-poll ingestion of remote trails activities (§7) 2026-06-07 12:27:10 +02:00
activities.$id.tsx feat(journal): dereferenceable Note objects at /activities/:id 2026-06-06 23:18:30 +02:00
activities._index.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
activities._index.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
activities.new.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
activities.new.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
api.auth.login.ts fix(journal): rate-limit auth endpoints 2026-05-24 11:51:43 +02:00
api.auth.register.test.ts fix(journal): architectural audit omnibus 2026-05-24 10:28:33 +02:00
api.auth.register.ts fix(journal): rate-limit auth endpoints 2026-05-24 11:51:43 +02:00
api.e2e.komoot.ts Rewrite komoot E2E tests to use server-side seed endpoint 2026-05-23 10:57:16 +02:00
api.e2e.route.$id.ts Fix unused import lint error in api.e2e.route.$id.ts 2026-05-10 15:24:31 +02:00
api.e2e.seed.ts Show POI details (phone, website, opening hours) on Journal route detail page 2026-05-17 23:32:38 +02:00
api.events.ts Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
api.follows.$id.approve.ts Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
api.follows.$id.reject.ts Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
api.metrics.ts Add observability: health endpoints, structured logging, metrics, Grafana stack 2026-03-26 22:59:44 +01:00
api.nodeinfo.ts feat(journal): federation inbox — Mastodon follows land here 2026-06-06 14:33:43 +02:00
api.notifications.$id.read.ts Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
api.notifications.read-all.ts Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
api.routes.$id.callback.ts Atomic GPX save: validate + persist row + geometry in one transaction 2026-05-10 15:02:56 +02:00
api.routes.$id.edit-in-planner.ts fix(journal): architectural audit omnibus 2026-05-24 10:28:33 +02:00
api.routes.$id.gpx.ts Add route detail day segment highlighting and per-day GPX export 2026-04-11 00:44:11 +02:00
api.settings.delete-account.ts Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
api.settings.email.ts fix(journal): architectural audit omnibus 2026-05-24 10:28:33 +02:00
api.settings.passkey.delete.ts Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
api.settings.profile.ts Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
api.sync.callback.$provider.ts feat(journal): Garmin activity import — provider, webhook pipeline, backfill (§1–5) 2026-06-07 17:47:22 +02:00
api.sync.connect.$provider.ts feat(journal): Garmin activity import — provider, webhook pipeline, backfill (§1–5) 2026-06-07 17:47:22 +02:00
api.sync.disconnect.$provider.ts fix(journal): centralize session-auth helpers + extract .server.ts siblings 2026-05-24 10:44:33 +02:00
api.sync.komoot.connect.ts fix(journal): centralize session-auth helpers + extract .server.ts siblings 2026-05-24 10:44:33 +02:00
api.sync.komoot.import-status.ts fix(journal): centralize session-auth helpers + extract .server.ts siblings 2026-05-24 10:44:33 +02:00
api.sync.komoot.import.ts journal: typed job seam + Komoot credentials through the manager 2026-06-10 02:05:24 +02:00
api.sync.komoot.verify.ts fix(journal): centralize session-auth helpers + extract .server.ts siblings 2026-05-24 10:44:33 +02:00
api.sync.push.$provider.$routeId.ts fix(journal): centralize session-auth helpers + extract .server.ts siblings 2026-05-24 10:44:33 +02:00
api.sync.webhook.$provider.test.ts feat(journal): Garmin activity import — provider, webhook pipeline, backfill (§1–5) 2026-06-07 17:47:22 +02:00
api.sync.webhook.$provider.ts feat(journal): Garmin activity import — provider, webhook pipeline, backfill (§1–5) 2026-06-07 17:47:22 +02:00
api.users.$username.follow.ts Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
api.users.$username.unfollow.ts Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
api.v1.activities.$id.ts Implement Journal REST API v1 endpoints 2026-04-13 00:57:27 +02:00
api.v1.activities._index.ts DRY up ZodError → FieldError mapping 2026-04-19 11:45:09 +02:00
api.v1.auth.devices.$id.ts Implement Journal REST API v1 endpoints 2026-04-13 00:57:27 +02:00
api.v1.auth.devices.ts Implement Journal REST API v1 endpoints 2026-04-13 00:57:27 +02:00
api.v1.routes.$id.ts DRY up ZodError → FieldError mapping 2026-04-19 11:45:09 +02:00
api.v1.routes._index.ts DRY up ZodError → FieldError mapping 2026-04-19 11:45:09 +02:00
api.v1.routes.compute.ts Session-bind /api/route and /api/overpass 2026-04-21 22:18:45 +02:00
api.v1.routes.test.ts fix: enforce Terms gate on bearer-token API requests 2026-05-08 01:59:28 +02:00
api.v1.test.ts Add unit tests for REST API validation and pagination 2026-04-13 00:58:18 +02:00
api.v1.uploads.ts DRY up ZodError → FieldError mapping 2026-04-19 11:45:09 +02:00
api.well-known.nodeinfo.ts feat(journal): federation inbox — Mastodon follows land here 2026-06-06 14:33:43 +02:00
api.well-known.trails-cool.test.ts Implement OAuth2 PKCE auth, discovery, and mobile API client 2026-04-13 00:41:40 +02:00
api.well-known.trails-cool.ts feat(journal): outbound trails-to-trails follows (social-federation §6) 2026-06-07 11:50:35 +02:00
api.well-known.webfinger.ts feat(journal): Fedify spike — WebFinger + actor objects behind FEDERATION_ENABLED 2026-06-06 14:15:27 +02:00
auth.accept-terms.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
auth.accept-terms.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
auth.login.tsx Implement completeAuth chokepoint + caller migration 2026-05-08 02:38:15 +02:00
auth.logout.tsx Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
auth.register.tsx Implement completeAuth chokepoint + caller migration 2026-05-08 02:38:15 +02:00
auth.verify.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
auth.verify.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
explore.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
explore.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
feed.server.ts feat(journal): audience-aware social feed with remote activities (§8+§9) 2026-06-07 12:32:11 +02:00
feed.tsx feat(journal): audience-aware social feed with remote activities (§8+§9) 2026-06-07 12:32:11 +02:00
follows.outgoing.tsx feat(journal): outbound trails-to-trails follows (social-federation §6) 2026-06-07 11:50:35 +02:00
follows.requests.tsx Merge /follows/requests into /notifications as a tabbed inbox 2026-04-26 08:24:59 +02:00
home.server.ts fix(journal): centralize session-auth helpers + extract .server.ts siblings 2026-05-24 10:44:33 +02:00
home.tsx fix(journal): centralize session-auth helpers + extract .server.ts siblings 2026-05-24 10:44:33 +02:00
legal.imprint.tsx Apply minimal legal-review follow-ups 2026-04-19 07:27:56 +02:00
legal.privacy.tsx feat(journal): Garmin activity import — provider, webhook pipeline, backfill (§1–5) 2026-06-07 17:47:22 +02:00
legal.terms.tsx Store Terms version alongside acceptance timestamp 2026-04-19 07:46:34 +02:00
notifications.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
notifications.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
oauth.authorize.tsx Drop auth.server.ts re-exports + rename to .server.ts convention (task 5.2) 2026-05-08 03:01:30 +02:00
oauth.token.ts Implement Journal REST API v1 endpoints 2026-04-13 00:57:27 +02:00
privacy.tsx Add legal pages, ToS acceptance, and alpha banner 2026-04-18 00:08:48 +02:00
routes.$id.edit.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
routes.$id.edit.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
routes.$id.server.ts fix(journal): remove ineffective dynamic imports 2026-05-24 12:05:08 +02:00
routes.$id.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
routes._index.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
routes._index.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
routes.new.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
routes.new.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
settings._index.tsx Split /settings into 4 sub-pages with a sidebar layout 2026-04-26 09:48:00 +02:00
settings.account.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
settings.account.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
settings.connections.komoot.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
settings.connections.komoot.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
settings.connections.server.ts feat(journal): Garmin activity import — provider, webhook pipeline, backfill (§1–5) 2026-06-07 17:47:22 +02:00
settings.connections.tsx feat(journal): Garmin activity import — provider, webhook pipeline, backfill (§1–5) 2026-06-07 17:47:22 +02:00
settings.profile.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
settings.profile.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
settings.security.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
settings.security.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
settings.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
settings.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
sync.import.$provider.server.ts chore(ts): eliminate the remaining 4 \as any\ casts in production code 2026-05-26 07:11:02 +02:00
sync.import.$provider.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
sync.import.garmin.server.ts feat(journal): Garmin activity import — provider, webhook pipeline, backfill (§1–5) 2026-06-07 17:47:22 +02:00
sync.import.garmin.tsx feat(journal): Garmin activity import — provider, webhook pipeline, backfill (§1–5) 2026-06-07 17:47:22 +02:00
sync.import.komoot.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
sync.import.komoot.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
users.$username.followers.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
users.$username.followers.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
users.$username.following.server.ts fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
users.$username.following.tsx fix(journal): extract loaders/actions for the remaining 21 mixed routes 2026-05-24 11:05:40 +02:00
users.$username.inbox.ts feat(journal): federation inbox — Mastodon follows land here 2026-06-06 14:33:43 +02:00
users.$username.outbox.ts feat(journal): federation outbox + push delivery to remote followers 2026-06-06 15:32:52 +02:00
users.$username.server.ts fix(journal): centralize session-auth helpers + extract .server.ts siblings 2026-05-24 10:44:33 +02:00
users.$username.tsx feat(journal): Fedify spike — WebFinger + actor objects behind FEDERATION_ENABLED 2026-06-06 14:15:27 +02:00