mirror of
https://github.com/windmill-labs/windmill.git
synced 2026-09-06 08:01:35 +00:00
The fork-database drop cleared the permissions block and destroyed the logins above the guards that refuse the drop, so a refusal — or a DROP DATABASE that fails on an open session — left a live data table unpermissioned, and every member of the workspace resolving to the connection that owns it. The clear now happens only once the drop is under way, and is put back if the drop does not happen. The workspace-deletion snapshot takes the settings row first, so a permissions save cannot add a login between the read and the row's deletion. The raw-app data drawer waits for the caller's usable roles before mounting the content, like its sibling in the DB manager: mounting is what fires the schema and metadata queries, and a first round sent without a role runs — and caches — as whatever the server defaults to. Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01S5arH3G2Sa1Qqm32veJQ1n
Windmill Backend
This folder holds all backend components, the src/ folder only contains files used to build the "root" binary.
Components
| name | description |
|---|---|
| windmill-api | The API server, exposing functionality to other components and the frontend |
| windmill-audit | Contains audit functionality, allowing different components to record important actions |
| windmill-common | Common code shared by all crates |
| windmill-queue | Contains job & flow queuing functionality, commonly written to by the API server and read from by workers |
| windmill-worker | The worker. Used to process and execute flows & jobs. |
| parsers | Contains code to parse signatures in different langauges. |
Compile sqlx for offline ci
cargo sqlx prepare --workspace -- --bin windmill --features enterprise