pub struct SecureOnConflict<E: EntityTrait> { /* private fields */ }Expand description
A secure builder for ON CONFLICT DO UPDATE clauses that enforces tenant immutability.
For tenant-scoped entities (ScopableEntity::tenant_col() != None), this builder
ensures that tenant_id is never included in the update columns. Attempting to
update tenant_id via update_columns() or value() returns an error.
§Security Rationale
ON CONFLICT DO UPDATE can be exploited to change an entity’s tenant:
INSERT INTO users (id, tenant_id, email) VALUES ($1, $2, $3)
ON CONFLICT (id) DO UPDATE SET tenant_id = excluded.tenant_id;This would allow moving a row from one tenant to another, violating tenant isolation.
§Example
use modkit_db::secure::{SecureOnConflict, SecureInsertExt};
use sea_orm::ActiveValue::Set;
let scope = AccessScope::both(vec![tenant_id], vec![user_id]);
let am = settings::ActiveModel {
tenant_id: Set(tenant_id),
user_id: Set(user_id),
theme: Set(Some("dark".to_string())),
language: Set(Some("en".to_string())),
};
// Build secure on_conflict - validates tenant_id is not updated
let on_conflict = SecureOnConflict::<settings::Entity>::columns([
settings::Column::TenantId,
settings::Column::UserId,
])
.update_columns([settings::Column::Theme, settings::Column::Language])?;
settings::Entity::insert(am)
.secure()
.scope_with(&scope)?
.on_conflict(on_conflict)
.exec(conn)
.await?;Implementations§
Source§impl<E> SecureOnConflict<E>
impl<E> SecureOnConflict<E>
Sourcepub fn columns<C, I>(cols: I) -> Selfwhere
C: IntoIden,
I: IntoIterator<Item = C>,
pub fn columns<C, I>(cols: I) -> Selfwhere
C: IntoIden,
I: IntoIterator<Item = C>,
Start building an ON CONFLICT clause with the specified conflict columns.
These are the columns that define uniqueness (typically the primary key or a unique constraint).
Sourcepub fn update_columns<C, I>(self, cols: I) -> Result<Self, ScopeError>
pub fn update_columns<C, I>(self, cols: I) -> Result<Self, ScopeError>
Specify columns to update on conflict.
§Errors
Returns ScopeError::Denied("tenant_id is immutable") if the entity has
a tenant column and it appears in the update columns list.
Sourcepub fn value<C>(self, col: C, expr: SimpleExpr) -> Result<Self, ScopeError>
pub fn value<C>(self, col: C, expr: SimpleExpr) -> Result<Self, ScopeError>
Set a custom update expression for a column on conflict.
§Errors
Returns ScopeError::Denied("tenant_id is immutable") if the entity has
a tenant column and the specified column matches it.
Sourcepub fn build(self) -> OnConflict
pub fn build(self) -> OnConflict
Consume the builder and return the underlying SeaORM OnConflict.
Call this after configuring all update columns/values.
Sourcepub fn inner_mut(&mut self) -> &mut OnConflict
pub fn inner_mut(&mut self) -> &mut OnConflict
Get a reference to the inner OnConflict for chaining with SeaORM methods
that are not wrapped by this builder.
§Safety
The caller must ensure they don’t add tenant column updates through the
inner OnConflict directly, as this would bypass the security check.
Trait Implementations§
Source§impl<E: Clone + EntityTrait> Clone for SecureOnConflict<E>
impl<E: Clone + EntityTrait> Clone for SecureOnConflict<E>
Source§fn clone(&self) -> SecureOnConflict<E>
fn clone(&self) -> SecureOnConflict<E>
1.0.0 · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source. Read moreAuto Trait Implementations§
impl<E> Freeze for SecureOnConflict<E>
impl<E> !RefUnwindSafe for SecureOnConflict<E>
impl<E> Send for SecureOnConflict<E>
impl<E> Sync for SecureOnConflict<E>
impl<E> Unpin for SecureOnConflict<E>where
E: Unpin,
impl<E> !UnwindSafe for SecureOnConflict<E>
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self>
fn instrument(self, span: Span) -> Instrumented<Self>
Source§fn in_current_span(self) -> Instrumented<Self>
fn in_current_span(self) -> Instrumented<Self>
Source§impl<T> Paint for Twhere
T: ?Sized,
impl<T> Paint for Twhere
T: ?Sized,
Source§fn fg(&self, value: Color) -> Painted<&T>
fn fg(&self, value: Color) -> Painted<&T>
Returns a styled value derived from self with the foreground set to
value.
This method should be used rarely. Instead, prefer to use color-specific
builder methods like red() and
green(), which have the same functionality but are
pithier.
§Example
Set foreground color to white using fg():
use yansi::{Paint, Color};
painted.fg(Color::White);Set foreground color to white using white().
use yansi::Paint;
painted.white();Source§fn bright_black(&self) -> Painted<&T>
fn bright_black(&self) -> Painted<&T>
Source§fn bright_red(&self) -> Painted<&T>
fn bright_red(&self) -> Painted<&T>
Source§fn bright_green(&self) -> Painted<&T>
fn bright_green(&self) -> Painted<&T>
Source§fn bright_yellow(&self) -> Painted<&T>
fn bright_yellow(&self) -> Painted<&T>
Source§fn bright_blue(&self) -> Painted<&T>
fn bright_blue(&self) -> Painted<&T>
Source§fn bright_magenta(&self) -> Painted<&T>
fn bright_magenta(&self) -> Painted<&T>
Source§fn bright_cyan(&self) -> Painted<&T>
fn bright_cyan(&self) -> Painted<&T>
Source§fn bright_white(&self) -> Painted<&T>
fn bright_white(&self) -> Painted<&T>
Source§fn bg(&self, value: Color) -> Painted<&T>
fn bg(&self, value: Color) -> Painted<&T>
Returns a styled value derived from self with the background set to
value.
This method should be used rarely. Instead, prefer to use color-specific
builder methods like on_red() and
on_green(), which have the same functionality but
are pithier.
§Example
Set background color to red using fg():
use yansi::{Paint, Color};
painted.bg(Color::Red);Set background color to red using on_red().
use yansi::Paint;
painted.on_red();Source§fn on_primary(&self) -> Painted<&T>
fn on_primary(&self) -> Painted<&T>
Source§fn on_magenta(&self) -> Painted<&T>
fn on_magenta(&self) -> Painted<&T>
Source§fn on_bright_black(&self) -> Painted<&T>
fn on_bright_black(&self) -> Painted<&T>
Source§fn on_bright_red(&self) -> Painted<&T>
fn on_bright_red(&self) -> Painted<&T>
Source§fn on_bright_green(&self) -> Painted<&T>
fn on_bright_green(&self) -> Painted<&T>
Source§fn on_bright_yellow(&self) -> Painted<&T>
fn on_bright_yellow(&self) -> Painted<&T>
Source§fn on_bright_blue(&self) -> Painted<&T>
fn on_bright_blue(&self) -> Painted<&T>
Source§fn on_bright_magenta(&self) -> Painted<&T>
fn on_bright_magenta(&self) -> Painted<&T>
Source§fn on_bright_cyan(&self) -> Painted<&T>
fn on_bright_cyan(&self) -> Painted<&T>
Source§fn on_bright_white(&self) -> Painted<&T>
fn on_bright_white(&self) -> Painted<&T>
Source§fn attr(&self, value: Attribute) -> Painted<&T>
fn attr(&self, value: Attribute) -> Painted<&T>
Enables the styling Attribute value.
This method should be used rarely. Instead, prefer to use
attribute-specific builder methods like bold() and
underline(), which have the same functionality
but are pithier.
§Example
Make text bold using attr():
use yansi::{Paint, Attribute};
painted.attr(Attribute::Bold);Make text bold using using bold().
use yansi::Paint;
painted.bold();Source§fn rapid_blink(&self) -> Painted<&T>
fn rapid_blink(&self) -> Painted<&T>
Source§fn quirk(&self, value: Quirk) -> Painted<&T>
fn quirk(&self, value: Quirk) -> Painted<&T>
Enables the yansi Quirk value.
This method should be used rarely. Instead, prefer to use quirk-specific
builder methods like mask() and
wrap(), which have the same functionality but are
pithier.
§Example
Enable wrapping using .quirk():
use yansi::{Paint, Quirk};
painted.quirk(Quirk::Wrap);Enable wrapping using wrap().
use yansi::Paint;
painted.wrap();Source§fn clear(&self) -> Painted<&T>
👎Deprecated since 1.0.1: renamed to resetting() due to conflicts with Vec::clear().
The clear() method will be removed in a future release.
fn clear(&self) -> Painted<&T>
resetting() due to conflicts with Vec::clear().
The clear() method will be removed in a future release.Source§fn whenever(&self, value: Condition) -> Painted<&T>
fn whenever(&self, value: Condition) -> Painted<&T>
Conditionally enable styling based on whether the Condition value
applies. Replaces any previous condition.
See the crate level docs for more details.
§Example
Enable styling painted only when both stdout and stderr are TTYs:
use yansi::{Paint, Condition};
painted.red().on_yellow().whenever(Condition::STDOUTERR_ARE_TTY);