mirror of
https://github.com/windmill-labs/windmill.git
synced 2026-09-06 00:02:13 +00:00
The path in the config staying the same said nothing: a postgres resource is editable in place, so its host, database or user could change underneath roles whose logins and grants live in the database it used to name. The identity a connection resolves to is what has to hold still while those roles exist; a password rotation is not an identity change and stays allowed. Also generalizes the admin guard: what 'admin' holds is what every role here connects through, on the database and on schema public alike, so a revoke naming it is refused wherever it is aimed.
Windmill frontend
The Windmill frontend written in Svelte 5 + Tailwind CSS
The frontend is under AGPL, see the LICENSE file at the root of this repo