Files
accounted/setup.sh
T
Jakob Wennberg c74b19df1b Accounted rebrand + swarm-skill cleanup + bank-reconciliation fixes (#643)
* feat(reconciliation): close the bank-feed loop on voucher links and re-tag mis-typed opening balances

Two related fixes to bank reconciliation correctness:

1. Auto-reconcile on voucher link. Linking an invoice or supplier invoice to
   an existing voucher previously advanced only the invoice — the bank
   transaction that paid it kept sitting in the Transactions inbox with a null
   journal_entry_id. linkInvoiceToVoucher / linkSupplierInvoiceToVoucher now
   call autoReconcileTransactionForLinkedVoucher (lib/reconciliation), which
   links the bank transaction to the same verifikat when exactly one unbooked
   line matches it. Best-effort and post-commit: a failure here never fails the
   link. The result surfaces reconciledTransactionId; the inbox row leaves the
   list and the UI shows link_success_tx_reconciled.

2. Re-tag mis-typed opening balances. getReconciliationStatus and the GL-line
   matching RPCs identify a cash account's ingående balans solely by
   journal_entries.source_type='opening_balance'. Companies migrated from other
   systems often booked the bank IB as an ordinary voucher (source_type
   'import' or 'manual'), so it was never excluded and surfaced as a phantom
   reconciliation difference equal to the opening balance. Adds:
   - migration mark_entry_as_opening_balance: a GUC-gated carve-out in the
     immutability trigger plus a SECURITY DEFINER RPC that validates the entry
     (balance-sheet lines only, dated on a fiscal-period boundary), flips the
     source_type, and writes an audit row — no blanket data sweep.
   - POST /api/reconciliation/bank/mark-opening-balance + MarkOpeningBalanceSchema.
   - BankReconciliationView action to trigger it from the IB diff.

The gnubok_create_voucher executor now accepts a typed is_opening_balance flag
and derives source_type='opening_balance' only after validating class 1/2 lines
on the period start, so new IBs land correctly typed.

Covered by lib/reconciliation auto-reconcile tests, voucher-executors tests,
and a mark-entry-as-opening-balance pg-real test.

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>

* chore: rebrand gnubok → Accounted and prune swarm agent skills

Product rebrand and skills housekeeping. No runtime behaviour change.

Rebrand: replace user-visible "gnubok" with "Accounted" across docs, READMEs,
in-code comments, doc-site content, MCP skill/resource prose, and the
gnubok-mcp package description. The MCP resource URI scheme is moved gnubok://
→ Accounted:// consistently across resource registrations, the event-type
comment, and the resource/skill tests. Deliberately preserved as stable
identifiers (NOT rebranded): the gnubok-company-id cookie, gnubok_sk_ / gnubok_inv_
token prefixes, the gnubok-mcp npm bridge name, and the AGI <gem:Programnamn>
value (kept 'gnubok' per its source comment — it is the software identifier sent
to Skatteverket and must not churn across visual rebrands).

Skills: remove the 27 swarm-* agent SKILL.md atoms (no longer used; already
absent from the agent_atom_registry in prod), refresh the remaining skill docs,
add the .claude/rules/ path-scoped rule set, and regenerate the
seed_agent_atom_bodies migration + .skill-body-manifest.json via
`npm run skills:generate` so the DB-backed skill bodies match the trimmed set.

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>

---------

Co-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
2026-06-03 10:52:01 +02:00

82 lines
2.2 KiB
Bash
Executable File

#!/bin/sh
set -e
echo "Accounted setup"
echo "============"
echo ""
# ─── Check prerequisites ───
ok=true
if ! command -v docker >/dev/null 2>&1; then
echo "ERROR: docker is not installed. Install it from https://docs.docker.com/get-docker/"
ok=false
fi
if ! docker compose version >/dev/null 2>&1; then
echo "ERROR: docker compose is not available. Install Docker Compose v2+."
ok=false
fi
if [ "$ok" = false ]; then
exit 1
fi
# ─── Create .env file ───
if [ -f .env ]; then
printf ".env already exists. Overwrite? [y/N] "
read -r answer
case "$answer" in
[yY]*) ;;
*) echo "Keeping existing .env. Exiting."; exit 0 ;;
esac
fi
if [ ! -f .env.docker.example ]; then
echo "ERROR: .env.docker.example not found. Are you in the Accounted directory?"
exit 1
fi
cp .env.docker.example .env
# ─── Auto-generate CRON_SECRET ───
if command -v openssl >/dev/null 2>&1; then
cron_secret=$(openssl rand -hex 32)
else
cron_secret=$(head -c 32 /dev/urandom | od -An -tx1 | tr -d ' \n')
fi
sed -i.bak "s|generate-a-random-secret|${cron_secret}|" .env && rm -f .env.bak
# ─── Prompt for Supabase values ───
echo ""
echo "Enter your Supabase project values (from Settings > API in the Supabase dashboard):"
echo ""
printf "NEXT_PUBLIC_SUPABASE_URL (e.g. https://abcdefgh.supabase.co): "
read -r supabase_url
if [ -n "$supabase_url" ]; then
sed -i.bak "s|https://your-project.supabase.co|${supabase_url}|" .env && rm -f .env.bak
fi
printf "NEXT_PUBLIC_SUPABASE_ANON_KEY: "
read -r anon_key
if [ -n "$anon_key" ]; then
sed -i.bak "s|your-anon-key|${anon_key}|" .env && rm -f .env.bak
fi
printf "SUPABASE_SERVICE_ROLE_KEY: "
read -r service_key
if [ -n "$service_key" ]; then
sed -i.bak "s|your-service-role-key|${service_key}|" .env && rm -f .env.bak
fi
printf "NEXT_PUBLIC_APP_URL [http://localhost:3000]: "
read -r app_url
app_url="${app_url:-http://localhost:3000}"
sed -i.bak "s|https://your-domain.com|${app_url}|" .env && rm -f .env.bak
echo ""
echo "Done! .env has been configured."
echo ""
echo "Next steps:"
echo " 1. Apply database migrations (see SELF-HOSTING.md section 3)"
echo " 2. Run: docker compose up -d"
echo ""