pub struct IntegrationsServiceClient<T> { /* private fields */ }Expand description
IntegrationsService is the gRPC surface of the pidgr-integrations service.
Auth model:
- DispatchToChannel: internal-mTLS only. Called by the Temporal worker on behalf of pidgr-api dispatch activities. Never exposed publicly.
- UpsertReachability / RemoveReachability / GetReachability /
ListReachabilityForUser: Cognito JWT (admin RPCs, org-scoped on the
caller’s
custom:org_idclaim). - GetRegionPolicy / SetRegionPolicy / GetCostCapPolicy / SetCostCapPolicy / GetOrgWebhookConfig / SetOrgWebhookConfig / CreateChannelConnectLink: Cognito JWT (admin only, org-scoped).
Cross-org access is denied with permission_denied.
Implementations§
Source§impl<T> IntegrationsServiceClient<T>where
T: GrpcService<Body>,
T::Error: Into<StdError>,
T::ResponseBody: Body<Data = Bytes> + Send + 'static,
<T::ResponseBody as Body>::Error: Into<StdError> + Send,
impl<T> IntegrationsServiceClient<T>where
T: GrpcService<Body>,
T::Error: Into<StdError>,
T::ResponseBody: Body<Data = Bytes> + Send + 'static,
<T::ResponseBody as Body>::Error: Into<StdError> + Send,
pub fn new(inner: T) -> Self
pub fn with_origin(inner: T, origin: Uri) -> Self
pub fn with_interceptor<F>(
inner: T,
interceptor: F,
) -> IntegrationsServiceClient<InterceptedService<T, F>>where
F: Interceptor,
T::ResponseBody: Default,
T: Service<Request<Body>, Response = Response<<T as GrpcService<Body>>::ResponseBody>>,
<T as Service<Request<Body>>>::Error: Into<StdError> + Send + Sync,
Sourcepub fn send_compressed(self, encoding: CompressionEncoding) -> Self
pub fn send_compressed(self, encoding: CompressionEncoding) -> Self
Compress requests with the given encoding.
This requires the server to support it otherwise it might respond with an error.
Sourcepub fn accept_compressed(self, encoding: CompressionEncoding) -> Self
pub fn accept_compressed(self, encoding: CompressionEncoding) -> Self
Enable decompressing responses.
Sourcepub fn max_decoding_message_size(self, limit: usize) -> Self
pub fn max_decoding_message_size(self, limit: usize) -> Self
Limits the maximum size of a decoded message.
Default: 4MB
Sourcepub fn max_encoding_message_size(self, limit: usize) -> Self
pub fn max_encoding_message_size(self, limit: usize) -> Self
Limits the maximum size of an encoded message.
Default: usize::MAX
Sourcepub async fn dispatch_to_channel(
&mut self,
request: impl IntoRequest<DispatchToChannelRequest>,
) -> Result<Response<DispatchToChannelResponse>, Status>
pub async fn dispatch_to_channel( &mut self, request: impl IntoRequest<DispatchToChannelRequest>, ) -> Result<Response<DispatchToChannelResponse>, Status>
Dispatch a single rendered message to one channel. Idempotent on
dispatch_id. Internal-mTLS only.
Sourcepub async fn upsert_reachability(
&mut self,
request: impl IntoRequest<UpsertReachabilityRequest>,
) -> Result<Response<UpsertReachabilityResponse>, Status>
pub async fn upsert_reachability( &mut self, request: impl IntoRequest<UpsertReachabilityRequest>, ) -> Result<Response<UpsertReachabilityResponse>, Status>
Upsert a reachability identifier for a (user, channel) tuple. Encrypts
and HMAC-hashes server-side before insert; emits a REACHABILITY_UPSERT
audit row BEFORE the registry commit.
Sourcepub async fn remove_reachability(
&mut self,
request: impl IntoRequest<RemoveReachabilityRequest>,
) -> Result<Response<RemoveReachabilityResponse>, Status>
pub async fn remove_reachability( &mut self, request: impl IntoRequest<RemoveReachabilityRequest>, ) -> Result<Response<RemoveReachabilityResponse>, Status>
Remove a reachability identifier. Idempotent. Emits a
REACHABILITY_REMOVE audit row BEFORE the registry delete.
Sourcepub async fn get_reachability(
&mut self,
request: impl IntoRequest<GetReachabilityRequest>,
) -> Result<Response<GetReachabilityResponse>, Status>
pub async fn get_reachability( &mut self, request: impl IntoRequest<GetReachabilityRequest>, ) -> Result<Response<GetReachabilityResponse>, Status>
Read a single reachability row’s metadata. Returns NOT_FOUND if missing. Does not return plaintext or envelope ciphertext.
Sourcepub async fn list_reachability_for_user(
&mut self,
request: impl IntoRequest<ListReachabilityForUserRequest>,
) -> Result<Response<ListReachabilityForUserResponse>, Status>
pub async fn list_reachability_for_user( &mut self, request: impl IntoRequest<ListReachabilityForUserRequest>, ) -> Result<Response<ListReachabilityForUserResponse>, Status>
List per-channel reachability metadata for a single user. Used by the admin per-user matrix view. Does not return plaintext or ciphertext.
Sourcepub async fn get_region_policy(
&mut self,
request: impl IntoRequest<GetRegionPolicyRequest>,
) -> Result<Response<GetRegionPolicyResponse>, Status>
pub async fn get_region_policy( &mut self, request: impl IntoRequest<GetRegionPolicyRequest>, ) -> Result<Response<GetRegionPolicyResponse>, Status>
Read the per-(org, channel) region allowlist. Returns an empty list when no policy is configured — NOT a NOT_FOUND.
Sourcepub async fn set_region_policy(
&mut self,
request: impl IntoRequest<SetRegionPolicyRequest>,
) -> Result<Response<SetRegionPolicyResponse>, Status>
pub async fn set_region_policy( &mut self, request: impl IntoRequest<SetRegionPolicyRequest>, ) -> Result<Response<SetRegionPolicyResponse>, Status>
Admin-only upsert of the per-(org, channel) region allowlist.
Sourcepub async fn get_cost_cap_policy(
&mut self,
request: impl IntoRequest<GetCostCapPolicyRequest>,
) -> Result<Response<GetCostCapPolicyResponse>, Status>
pub async fn get_cost_cap_policy( &mut self, request: impl IntoRequest<GetCostCapPolicyRequest>, ) -> Result<Response<GetCostCapPolicyResponse>, Status>
Read the current calendar-month cost-cap state. Returns the channel default cap when no row exists; never NOT_FOUND.
Sourcepub async fn set_cost_cap_policy(
&mut self,
request: impl IntoRequest<SetCostCapPolicyRequest>,
) -> Result<Response<SetCostCapPolicyResponse>, Status>
pub async fn set_cost_cap_policy( &mut self, request: impl IntoRequest<SetCostCapPolicyRequest>, ) -> Result<Response<SetCostCapPolicyResponse>, Status>
Admin-only upsert of the current calendar-month cost cap.
Sourcepub async fn get_org_webhook_config(
&mut self,
request: impl IntoRequest<GetOrgWebhookConfigRequest>,
) -> Result<Response<GetOrgWebhookConfigResponse>, Status>
pub async fn get_org_webhook_config( &mut self, request: impl IntoRequest<GetOrgWebhookConfigRequest>, ) -> Result<Response<GetOrgWebhookConfigResponse>, Status>
Read the org’s generic-webhook channel configuration. The signing secret is never returned. Returns an empty-url config when none exists — NOT a NOT_FOUND.
Sourcepub async fn set_org_webhook_config(
&mut self,
request: impl IntoRequest<SetOrgWebhookConfigRequest>,
) -> Result<Response<SetOrgWebhookConfigResponse>, Status>
pub async fn set_org_webhook_config( &mut self, request: impl IntoRequest<SetOrgWebhookConfigRequest>, ) -> Result<Response<SetOrgWebhookConfigResponse>, Status>
Admin-only upsert of the org’s generic-webhook configuration. Validates the destination URL (https-only, public hosts) and envelope-encrypts the secret at rest.
Sourcepub async fn create_channel_connect_link(
&mut self,
request: impl IntoRequest<CreateChannelConnectLinkRequest>,
) -> Result<Response<CreateChannelConnectLinkResponse>, Status>
pub async fn create_channel_connect_link( &mut self, request: impl IntoRequest<CreateChannelConnectLinkRequest>, ) -> Result<Response<CreateChannelConnectLinkResponse>, Status>
CreateChannelConnectLink mints a short-lived, HMAC-signed opt-in link a
user follows to bind a third-party channel (Telegram bot-follow, Slack
OAuth, LINE follow-code) to their (org, user). Wraps the api-side
internal/linktoken minter. Channels other than TELEGRAM, SLACK, and LINE
are rejected with invalid_argument.
CreateSlackWorkspaceInstallAuthorization mints a short-lived HMAC token authorizing a Slack workspace install into the caller’s authorized org. The admin passes it to the integrations install-start endpoint, which verifies it and installs the bot into THAT org — fixing the multi-org mis-routing where the install always landed on the caller’s JWT home org. Cognito JWT (admin only, org-scoped); cross-org is permission_denied.
Trait Implementations§
Source§impl<T: Clone> Clone for IntegrationsServiceClient<T>
impl<T: Clone> Clone for IntegrationsServiceClient<T>
Source§fn clone(&self) -> IntegrationsServiceClient<T>
fn clone(&self) -> IntegrationsServiceClient<T>
1.0.0 (const: unstable) · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
source. Read moreAuto Trait Implementations§
impl<T> !Freeze for IntegrationsServiceClient<T>
impl<T> RefUnwindSafe for IntegrationsServiceClient<T>where
T: RefUnwindSafe,
impl<T> Send for IntegrationsServiceClient<T>where
T: Send,
impl<T> Sync for IntegrationsServiceClient<T>where
T: Sync,
impl<T> Unpin for IntegrationsServiceClient<T>where
T: Unpin,
impl<T> UnsafeUnpin for IntegrationsServiceClient<T>where
T: UnsafeUnpin,
impl<T> UnwindSafe for IntegrationsServiceClient<T>where
T: UnwindSafe,
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
fn instrument(self, span: Span) -> Instrumented<Self> ⓘ
Source§fn in_current_span(self) -> Instrumented<Self> ⓘ
fn in_current_span(self) -> Instrumented<Self> ⓘ
Source§impl<T> IntoRequest<T> for T
impl<T> IntoRequest<T> for T
Source§fn into_request(self) -> Request<T>
fn into_request(self) -> Request<T>
T in a tonic::Request