1a7152a7af
The Abonnemang tab gets a quiet decorative masthead: the marketing site's halftone Stockholm skyline as a wide banner strip on the frame tint, waterline pinned to the strip's bottom edge (same physics as the onboarding backdrop). Shown in every billing state; purely decorative. The API tab's "Anslut MCP-klient" group gets a works-with strip using the site's monochrome halftone Claude and OpenAI marks (copied into public/illustrations and registered in the shared manifest), with a bilingual caption. Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
737 lines
27 KiB
TypeScript
737 lines
27 KiB
TypeScript
'use client'
|
|
|
|
import { useLocale, useTranslations } from 'next-intl'
|
|
import { useState, useEffect, useCallback } from 'react'
|
|
import { Button } from '@/components/ui/button'
|
|
import { Input } from '@/components/ui/input'
|
|
import { Label } from '@/components/ui/label'
|
|
import { Badge } from '@/components/ui/badge'
|
|
import {
|
|
Dialog,
|
|
DialogContent,
|
|
DialogDescription,
|
|
DialogFooter,
|
|
DialogHeader,
|
|
DialogTitle,
|
|
} from '@/components/ui/dialog'
|
|
import { Checkbox } from '@/components/ui/checkbox'
|
|
import { DestructiveConfirmDialog, useDestructiveConfirm } from '@/components/ui/destructive-confirm-dialog'
|
|
import { EmptyState } from '@/components/ui/empty-state'
|
|
import { HelpPopover } from '@/components/ui/help-popover'
|
|
import { useToast } from '@/components/ui/use-toast'
|
|
import {
|
|
SettingsGroup,
|
|
SettingsReveal,
|
|
SettingsRow,
|
|
SettingsRowNote,
|
|
} from '@/components/settings/SettingsRows'
|
|
import { AttnLine } from '@/components/ui/attn-line'
|
|
import { Loader2, Plus, Copy, Check, Trash2, Key, ChevronDown, AlertTriangle } from 'lucide-react'
|
|
import { cn, formatDateLong } from '@/lib/utils'
|
|
import { copyToClipboard } from '@/lib/browser/copy-to-clipboard'
|
|
import { getBranding } from '@/lib/branding/service'
|
|
import { ILLUSTRATIONS, illustrationSrc } from '@/components/onboarding/onboarding-illustrations'
|
|
import { STAGING_SCOPES } from '@/lib/auth/api-keys'
|
|
import type { ApiKeyScope } from '@/lib/auth/api-keys'
|
|
|
|
const branding = getBranding()
|
|
const connectorName = branding.appName.toLowerCase()
|
|
|
|
type ScopeEntry = {
|
|
scope: ApiKeyScope
|
|
labelKey: string
|
|
/** Number of MCP tools gated by this scope. 0 = REST-API-only scope. */
|
|
tools: number
|
|
}
|
|
|
|
type ScopeGroup = {
|
|
domain: string
|
|
labelKey: string
|
|
read: ScopeEntry | null
|
|
write: ScopeEntry | null
|
|
}
|
|
|
|
const SCOPE_GROUPS: ScopeGroup[] = [
|
|
{
|
|
domain: 'transactions',
|
|
labelKey: 'group_transactions',
|
|
read: { scope: 'transactions:read', labelKey: 'scope_transactions_read', tools: 8 },
|
|
write: { scope: 'transactions:write', labelKey: 'scope_transactions_write', tools: 8 },
|
|
},
|
|
{
|
|
domain: 'customers',
|
|
labelKey: 'group_customers',
|
|
read: { scope: 'customers:read', labelKey: 'scope_customers_read', tools: 1 },
|
|
write: { scope: 'customers:write', labelKey: 'scope_customers_write', tools: 1 },
|
|
},
|
|
{
|
|
domain: 'invoices',
|
|
labelKey: 'group_invoices',
|
|
read: { scope: 'invoices:read', labelKey: 'scope_invoices_read', tools: 1 },
|
|
write: { scope: 'invoices:write', labelKey: 'scope_invoices_write', tools: 6 },
|
|
},
|
|
{
|
|
domain: 'suppliers',
|
|
labelKey: 'group_suppliers',
|
|
read: { scope: 'suppliers:read', labelKey: 'scope_suppliers_read', tools: 2 },
|
|
write: { scope: 'suppliers:write', labelKey: 'scope_suppliers_write', tools: 3 },
|
|
},
|
|
{
|
|
domain: 'reports',
|
|
labelKey: 'group_reports',
|
|
read: { scope: 'reports:read', labelKey: 'scope_reports_read', tools: 18 },
|
|
write: null,
|
|
},
|
|
{
|
|
domain: 'bookkeeping',
|
|
labelKey: 'group_bookkeeping',
|
|
read: null,
|
|
write: { scope: 'bookkeeping:write', labelKey: 'scope_bookkeeping_write', tools: 11 },
|
|
},
|
|
{
|
|
domain: 'payroll',
|
|
labelKey: 'group_payroll',
|
|
read: { scope: 'payroll:read', labelKey: 'scope_payroll_read', tools: 3 },
|
|
write: { scope: 'payroll:write', labelKey: 'scope_payroll_write', tools: 3 },
|
|
},
|
|
{
|
|
domain: 'pending_operations',
|
|
labelKey: 'group_pending_operations',
|
|
read: { scope: 'pending_operations:read', labelKey: 'scope_pending_operations_read', tools: 1 },
|
|
write: { scope: 'pending_operations:approve', labelKey: 'scope_pending_operations_approve', tools: 2 },
|
|
},
|
|
{
|
|
domain: 'agent',
|
|
labelKey: 'group_agent',
|
|
read: { scope: 'agent:read', labelKey: 'scope_agent_read', tools: 1 },
|
|
write: { scope: 'agent:write', labelKey: 'scope_agent_write', tools: 2 },
|
|
},
|
|
{
|
|
domain: 'documents',
|
|
labelKey: 'group_documents',
|
|
read: { scope: 'documents:read', labelKey: 'scope_documents_read', tools: 0 },
|
|
write: { scope: 'documents:write', labelKey: 'scope_documents_write', tools: 0 },
|
|
},
|
|
{
|
|
domain: 'companies',
|
|
labelKey: 'group_companies',
|
|
read: { scope: 'companies:read', labelKey: 'scope_companies_read', tools: 1 },
|
|
write: null,
|
|
},
|
|
{
|
|
domain: 'events',
|
|
labelKey: 'group_events',
|
|
read: { scope: 'events:read', labelKey: 'scope_events_read', tools: 0 },
|
|
write: null,
|
|
},
|
|
{
|
|
domain: 'webhooks',
|
|
labelKey: 'group_webhooks',
|
|
read: null,
|
|
write: { scope: 'webhooks:manage', labelKey: 'scope_webhooks_manage', tools: 0 },
|
|
},
|
|
{
|
|
domain: 'operations',
|
|
labelKey: 'group_operations',
|
|
read: { scope: 'operations:read', labelKey: 'scope_operations_read', tools: 0 },
|
|
write: null,
|
|
},
|
|
{
|
|
domain: 'compliance',
|
|
labelKey: 'group_compliance',
|
|
read: { scope: 'compliance:read', labelKey: 'scope_compliance_read', tools: 3 },
|
|
write: null,
|
|
},
|
|
{
|
|
domain: 'skatteverket',
|
|
labelKey: 'group_skatteverket',
|
|
read: null,
|
|
write: { scope: 'skatteverket:write', labelKey: 'scope_skatteverket_write', tools: 2 },
|
|
},
|
|
]
|
|
|
|
type Scope = ApiKeyScope
|
|
|
|
const ALL_SCOPES: Scope[] = SCOPE_GROUPS.flatMap((g) => {
|
|
const out: Scope[] = []
|
|
if (g.read) out.push(g.read.scope)
|
|
if (g.write) out.push(g.write.scope)
|
|
return out
|
|
})
|
|
|
|
interface ApiKey {
|
|
id: string
|
|
key_prefix: string
|
|
name: string
|
|
scopes: string[] | null
|
|
rate_limit_rpm: number
|
|
mode?: 'live' | 'test'
|
|
last_used_at: string | null
|
|
revoked_at: string | null
|
|
created_at: string
|
|
}
|
|
|
|
type CopyState = 'idle' | 'copied' | 'failed'
|
|
|
|
function CopyBlock({ text, copyAriaLabel }: { text: string; copyAriaLabel: string }) {
|
|
const t = useTranslations('settings_api_keys')
|
|
const [state, setState] = useState<CopyState>('idle')
|
|
|
|
async function handleCopy() {
|
|
// The write is the first await, so the click's user activation still holds.
|
|
const result = await copyToClipboard(text)
|
|
if (result !== 'copied') {
|
|
// Never imply success. The block stays on screen and is select-all, so
|
|
// the user can copy it by hand: with no clipboard there is no other way.
|
|
setState('failed')
|
|
return
|
|
}
|
|
setState('copied')
|
|
setTimeout(() => setState('idle'), 2000)
|
|
}
|
|
|
|
return (
|
|
<div className="relative group">
|
|
<pre className="select-all rounded-md bg-muted p-4 pr-12 text-xs font-mono overflow-x-auto whitespace-pre-wrap break-all">
|
|
{text}
|
|
</pre>
|
|
<Button
|
|
variant="outline"
|
|
size="sm"
|
|
className={cn(
|
|
'absolute right-1.5 top-1.5 h-7 w-7 p-0 transition-opacity focus-visible:opacity-100',
|
|
state === 'failed' ? 'opacity-100' : 'opacity-0 group-hover:opacity-100',
|
|
)}
|
|
onClick={handleCopy}
|
|
aria-label={copyAriaLabel}
|
|
>
|
|
{state === 'copied' ? (
|
|
<Check className="h-3.5 w-3.5 text-success" />
|
|
) : state === 'failed' ? (
|
|
<AlertTriangle className="h-3.5 w-3.5 text-attn" />
|
|
) : (
|
|
<Copy className="h-3.5 w-3.5" />
|
|
)}
|
|
</Button>
|
|
{/* Live region is always mounted so the message is announced when it
|
|
appears, not merely inserted. */}
|
|
<div role="status" aria-live="polite">
|
|
{state === 'failed' && <AttnLine className="mt-1.5">{t('copy_failed')}</AttnLine>}
|
|
</div>
|
|
</div>
|
|
)
|
|
}
|
|
|
|
function ScopeCard({
|
|
entry,
|
|
checked,
|
|
onCheckedChange,
|
|
}: {
|
|
entry: ScopeEntry
|
|
checked: boolean
|
|
onCheckedChange: (checked: boolean) => void
|
|
}) {
|
|
const t = useTranslations('settings_api_keys')
|
|
const label = t(entry.labelKey)
|
|
const sepIdx = label.indexOf(': ')
|
|
const verb = sepIdx > 0 ? label.slice(0, sepIdx) : label
|
|
const description = sepIdx > 0 ? label.slice(sepIdx + 2) : ''
|
|
|
|
return (
|
|
<label
|
|
className={cn(
|
|
'flex min-h-[68px] cursor-pointer flex-col gap-1 rounded-md border p-2 transition-colors',
|
|
checked
|
|
? 'border-border bg-secondary'
|
|
: 'border-border hover:bg-secondary/60'
|
|
)}
|
|
>
|
|
<div className="flex items-center gap-2">
|
|
<Checkbox
|
|
checked={checked}
|
|
onCheckedChange={onCheckedChange}
|
|
className="shrink-0"
|
|
/>
|
|
<span className="flex-1 text-xs font-medium text-foreground">{verb}</span>
|
|
<span className="shrink-0 text-[10px] tabular-nums text-muted-foreground">
|
|
{entry.tools > 0 ? t('tools_count', { count: entry.tools }) : t('rest_badge')}
|
|
</span>
|
|
</div>
|
|
{description && (
|
|
<p className="ml-6 line-clamp-2 text-[11px] leading-snug text-muted-foreground">
|
|
{description}
|
|
</p>
|
|
)}
|
|
</label>
|
|
)
|
|
}
|
|
|
|
export function ApiKeysPanel() {
|
|
const t = useTranslations('settings_api_keys')
|
|
const locale = useLocale()
|
|
const { toast } = useToast()
|
|
const { dialogProps: revokeDialogProps, confirm: confirmRevoke } = useDestructiveConfirm()
|
|
const { dialogProps: sodDialogProps, confirm: confirmSod } = useDestructiveConfirm()
|
|
|
|
const [keys, setKeys] = useState<ApiKey[]>([])
|
|
const [isLoading, setIsLoading] = useState(true)
|
|
const [isCreating, setIsCreating] = useState(false)
|
|
const [showCreateDialog, setShowCreateDialog] = useState(false)
|
|
const [showKeyDialog, setShowKeyDialog] = useState(false)
|
|
const [showApiKeyMethods, setShowApiKeyMethods] = useState(false)
|
|
const [newKeyName, setNewKeyName] = useState('')
|
|
// 'live' by default: this is the general MCP-key surface and the dominant case
|
|
// is a key for the user's real company. 'test' is an explicit opt-in: a
|
|
// simulation-only key that forces dry-run on every write (nothing is saved).
|
|
const [newKeyMode, setNewKeyMode] = useState<'live' | 'test'>('live')
|
|
const [newKeyScopes, setNewKeyScopes] = useState<Set<Scope>>(new Set(ALL_SCOPES))
|
|
const [newKeyValue, setNewKeyValue] = useState('')
|
|
|
|
// Segregation-of-duties: a single key that both stages bookkeeping (any
|
|
// STAGING_SCOPES member) AND can approve it (pending_operations:approve)
|
|
// lets an automated agent commit financial postings with no human in the
|
|
// loop. We warn inline and require an explicit confirm before submitting
|
|
// with acknowledge_sod: the route returns 409 API_KEY_SOD_CONFLICT
|
|
// otherwise (default create ticks all scopes, so this path is the norm).
|
|
const sodConflictScope = STAGING_SCOPES.find((s) => newKeyScopes.has(s)) ?? null
|
|
const hasSodConflict =
|
|
newKeyScopes.has('pending_operations:approve') && sodConflictScope !== null
|
|
|
|
const fetchKeys = useCallback(async () => {
|
|
try {
|
|
const res = await fetch('/api/settings/api-keys')
|
|
const json = await res.json()
|
|
if (json.data) {
|
|
setKeys(json.data.filter((k: ApiKey) => !k.revoked_at))
|
|
}
|
|
} catch {
|
|
toast({ title: t('toast_fetch_failed'), variant: 'destructive' })
|
|
} finally {
|
|
setIsLoading(false)
|
|
}
|
|
}, [toast, t])
|
|
|
|
useEffect(() => {
|
|
fetchKeys()
|
|
}, [fetchKeys])
|
|
|
|
async function handleCreate() {
|
|
// SoD: require an explicit, auditable acknowledgement before minting a key
|
|
// that can both stage and approve postings.
|
|
if (hasSodConflict) {
|
|
const ok = await confirmSod({
|
|
title: t('sod_dialog_title'),
|
|
description: t('sod_dialog_description'),
|
|
confirmLabel: t('sod_confirm'),
|
|
variant: 'warning',
|
|
})
|
|
if (!ok) return
|
|
}
|
|
|
|
setIsCreating(true)
|
|
try {
|
|
const res = await fetch('/api/settings/api-keys', {
|
|
method: 'POST',
|
|
headers: { 'Content-Type': 'application/json' },
|
|
body: JSON.stringify({
|
|
name: newKeyName || t('default_key_name'),
|
|
scopes: Array.from(newKeyScopes),
|
|
mode: newKeyMode,
|
|
...(hasSodConflict ? { acknowledge_sod: true } : {}),
|
|
}),
|
|
})
|
|
const json = await res.json()
|
|
|
|
if (!res.ok) {
|
|
// The route returns the canonical { error: { code, message, message_en } }
|
|
// envelope: render the message string, never the object (a React child
|
|
// must be a string, not { code, message, ... }).
|
|
const message =
|
|
typeof json.error === 'string'
|
|
? json.error
|
|
: json.error?.message ?? t('toast_create_failed')
|
|
toast({ title: message, variant: 'destructive' })
|
|
return
|
|
}
|
|
|
|
setNewKeyValue(json.data.key)
|
|
setShowCreateDialog(false)
|
|
setShowKeyDialog(true)
|
|
setNewKeyName('')
|
|
setNewKeyMode('live')
|
|
setNewKeyScopes(new Set(ALL_SCOPES))
|
|
fetchKeys()
|
|
} catch {
|
|
toast({ title: t('toast_create_failed'), variant: 'destructive' })
|
|
} finally {
|
|
setIsCreating(false)
|
|
}
|
|
}
|
|
|
|
async function handleRevoke(id: string, name: string) {
|
|
const ok = await confirmRevoke({
|
|
title: t('revoke_dialog_title'),
|
|
description: t('revoke_dialog_description', { name }),
|
|
confirmLabel: t('revoke_confirm'),
|
|
})
|
|
if (!ok) return
|
|
|
|
try {
|
|
await fetch(`/api/settings/api-keys/${id}`, { method: 'DELETE' })
|
|
setKeys((prev) => prev.filter((k) => k.id !== id))
|
|
toast({ title: t('toast_revoked') })
|
|
} catch {
|
|
toast({ title: t('toast_revoke_failed'), variant: 'destructive' })
|
|
}
|
|
}
|
|
|
|
const mcpBase = typeof window !== 'undefined'
|
|
? `${window.location.origin}/api/extensions/ext/mcp-server/mcp`
|
|
: '/api/extensions/ext/mcp-server/mcp'
|
|
// Telemetry-only distribution-channel marker (server reads the `client` query
|
|
// param; never used for auth). Lets us measure which Claude surface connected.
|
|
const mcpUrl = (client: string) => `${mcpBase}?client=${client}`
|
|
|
|
return (
|
|
<>
|
|
<SettingsGroup>
|
|
{/* Group eyebrow with the group's primary action on the right. Styling
|
|
mirrors SettingsGroup's label line; the "?" holds the old panel
|
|
description. */}
|
|
<div className="flex items-center justify-between gap-4 px-1">
|
|
<p className="flex items-center gap-2 text-[11px] font-medium uppercase tracking-wider text-muted-foreground">
|
|
<span>{t('title')}</span>
|
|
<HelpPopover className="shrink-0">{t('description')}</HelpPopover>
|
|
</p>
|
|
<Button
|
|
size="sm"
|
|
onClick={() => setShowCreateDialog(true)}
|
|
disabled={keys.length >= 10}
|
|
>
|
|
<Plus className="mr-1.5 h-3.5 w-3.5" />
|
|
{t('create_key')}
|
|
</Button>
|
|
</div>
|
|
|
|
{isLoading ? (
|
|
<div className="flex items-center justify-center py-8">
|
|
<Loader2 className="h-5 w-5 animate-spin text-muted-foreground" />
|
|
</div>
|
|
) : keys.length === 0 ? (
|
|
<EmptyState
|
|
icon={Key}
|
|
title={t('empty_title')}
|
|
description={t('empty_help')}
|
|
/>
|
|
) : (
|
|
keys.map((key) => {
|
|
const scopeCount = key.scopes?.length ?? 0
|
|
const permissionSummary =
|
|
scopeCount === ALL_SCOPES.length
|
|
? t('all_permissions')
|
|
: scopeCount === 0
|
|
? t('no_permissions')
|
|
: t('permissions_count', { count: scopeCount })
|
|
return (
|
|
<div
|
|
key={key.id}
|
|
className="flex items-center gap-3 border-b border-border px-1 py-3"
|
|
>
|
|
<div className="flex min-w-0 flex-1 flex-wrap items-baseline gap-x-3 gap-y-1">
|
|
<span className="flex min-w-0 items-center gap-2">
|
|
<span className="truncate text-sm">{key.name}</span>
|
|
{key.mode === 'test' && (
|
|
<Badge variant="secondary" className="shrink-0 px-1.5 py-0 text-[10px] font-normal">
|
|
{t('badge_test')}
|
|
</Badge>
|
|
)}
|
|
</span>
|
|
<span className="min-w-0 truncate text-xs text-muted-foreground">
|
|
{permissionSummary}
|
|
{' · '}
|
|
<span className="font-mono">{key.key_prefix}...</span>
|
|
</span>
|
|
<span className="shrink-0 text-xs tabular-nums text-muted-foreground">
|
|
{t('created')} {formatDateLong(key.created_at, locale)}
|
|
{' · '}
|
|
{key.last_used_at
|
|
? t('used_on', { date: formatDateLong(key.last_used_at, locale) })
|
|
: t('never_used')}
|
|
</span>
|
|
</div>
|
|
<Button
|
|
variant="ghost"
|
|
size="icon"
|
|
className="h-8 w-8 shrink-0 text-muted-foreground hover:text-destructive"
|
|
onClick={() => handleRevoke(key.id, key.name)}
|
|
aria-label={t('revoke_aria', { name: key.name })}
|
|
>
|
|
<Trash2 className="h-3.5 w-3.5" />
|
|
</Button>
|
|
</div>
|
|
)
|
|
})
|
|
)}
|
|
</SettingsGroup>
|
|
|
|
<SettingsGroup label={t('connect_mcp_title')}>
|
|
{/* The marketing site's halftone AI marks (Claude, OpenAI): a quiet
|
|
"works with" cue, not chrome. Text carries the meaning; the marks
|
|
are decorative. */}
|
|
<div className="flex items-center gap-3 px-1 pb-1 pt-3">
|
|
<div aria-hidden className="flex shrink-0 items-center gap-2">
|
|
{/* eslint-disable-next-line @next/next/no-img-element */}
|
|
<img
|
|
src={illustrationSrc('logo-claude')}
|
|
width={ILLUSTRATIONS['logo-claude'].w}
|
|
height={ILLUSTRATIONS['logo-claude'].h}
|
|
alt=""
|
|
loading="lazy"
|
|
decoding="async"
|
|
className="h-5 w-auto"
|
|
/>
|
|
{/* eslint-disable-next-line @next/next/no-img-element */}
|
|
<img
|
|
src={illustrationSrc('logo-openai')}
|
|
width={ILLUSTRATIONS['logo-openai'].w}
|
|
height={ILLUSTRATIONS['logo-openai'].h}
|
|
alt=""
|
|
loading="lazy"
|
|
decoding="async"
|
|
className="h-5 w-auto"
|
|
/>
|
|
</div>
|
|
<p className="text-xs text-muted-foreground">{t('works_with_ai')}</p>
|
|
</div>
|
|
<SettingsRow
|
|
label="Claude.ai"
|
|
align="baseline"
|
|
help={t.rich('claude_ai_instructions', {
|
|
connectorName,
|
|
path: (chunks) => <strong>{chunks}</strong>,
|
|
})}
|
|
>
|
|
<SettingsRowNote>{t('recommended_badge')}</SettingsRowNote>
|
|
<div className="w-full min-w-0">
|
|
<CopyBlock text={mcpUrl('claude-connector')} copyAriaLabel={t('copy_aria')} />
|
|
</div>
|
|
</SettingsRow>
|
|
|
|
<SettingsRow
|
|
label={t('claude_code_cursor')}
|
|
align="baseline"
|
|
help={t('terminal_runs_browser_login')}
|
|
>
|
|
{/* URL is quoted: unquoted `?` in the query string trips zsh globbing. */}
|
|
<div className="w-full min-w-0">
|
|
<CopyBlock text={`claude mcp add ${connectorName} --transport http "${mcpUrl('claude-code')}"`} copyAriaLabel={t('copy_aria')} />
|
|
</div>
|
|
</SettingsRow>
|
|
|
|
<button
|
|
type="button"
|
|
aria-expanded={showApiKeyMethods}
|
|
onClick={() => setShowApiKeyMethods(!showApiKeyMethods)}
|
|
className="flex items-center gap-2 px-1 py-3 text-xs text-muted-foreground transition-colors duration-150 hover:text-foreground"
|
|
>
|
|
<ChevronDown
|
|
className={cn(
|
|
'h-3.5 w-3.5 transition-transform duration-150',
|
|
!showApiKeyMethods && '-rotate-90',
|
|
)}
|
|
/>
|
|
{t('connect_with_api_key')}
|
|
</button>
|
|
<SettingsReveal open={showApiKeyMethods}>
|
|
<div className="space-y-6 pb-3 pt-1">
|
|
<div>
|
|
<p className="mb-1 text-sm">Claude Desktop</p>
|
|
<p className="mb-2 text-xs text-muted-foreground">
|
|
{t.rich('claude_desktop_instructions', {
|
|
code: (chunks) => <code className="text-xs">{chunks}</code>,
|
|
})}
|
|
</p>
|
|
<CopyBlock text={`{
|
|
"mcpServers": {
|
|
"${connectorName}": {
|
|
"command": "npx",
|
|
"args": ["gnubok-mcp"],
|
|
"env": {
|
|
"GNUBOK_API_KEY": "gnubok_sk_...",
|
|
"GNUBOK_CLIENT": "claude-desktop"
|
|
}
|
|
}
|
|
}
|
|
}`} copyAriaLabel={t('copy_aria')} />
|
|
</div>
|
|
|
|
<div>
|
|
<p className="mb-1 text-sm">{t('claude_code_cursor')}</p>
|
|
<p className="mb-2 text-xs text-muted-foreground">
|
|
{t('terminal_with_api_key')}
|
|
</p>
|
|
<CopyBlock text={`claude mcp add ${connectorName} --transport http \\
|
|
--url "${mcpUrl('claude-code')}" \\
|
|
--header "Authorization: Bearer gnubok_sk_..."`} copyAriaLabel={t('copy_aria')} />
|
|
</div>
|
|
</div>
|
|
</SettingsReveal>
|
|
</SettingsGroup>
|
|
|
|
{/* Create key dialog */}
|
|
<Dialog open={showCreateDialog} onOpenChange={setShowCreateDialog}>
|
|
<DialogContent className="max-w-[calc(100vw-2rem)] rounded-2xl p-4 sm:max-w-3xl sm:p-6">
|
|
<DialogHeader>
|
|
<DialogTitle>{t('create_dialog_title')}</DialogTitle>
|
|
<DialogDescription>
|
|
{t('create_dialog_description')}
|
|
</DialogDescription>
|
|
</DialogHeader>
|
|
<div className="space-y-6">
|
|
<div className="space-y-2">
|
|
<Label htmlFor="key-name">{t('name_label')}</Label>
|
|
<Input
|
|
id="key-name"
|
|
placeholder={t('name_placeholder')}
|
|
value={newKeyName}
|
|
onChange={(e) => setNewKeyName(e.target.value)}
|
|
onKeyDown={(e) => e.key === 'Enter' && handleCreate()}
|
|
/>
|
|
</div>
|
|
<div className="space-y-2">
|
|
<Label>{t('mode_label')}</Label>
|
|
<div className="inline-flex rounded-md border p-0.5" role="radiogroup" aria-label={t('mode_label')}>
|
|
{(['live', 'test'] as const).map((m) => (
|
|
<button
|
|
key={m}
|
|
type="button"
|
|
role="radio"
|
|
aria-checked={newKeyMode === m}
|
|
onClick={() => setNewKeyMode(m)}
|
|
className={cn(
|
|
'rounded-[5px] px-3 py-1.5 text-xs transition-colors',
|
|
newKeyMode === m
|
|
? 'bg-secondary text-foreground'
|
|
: 'text-muted-foreground hover:text-foreground',
|
|
)}
|
|
>
|
|
{t(m === 'live' ? 'mode_live' : 'mode_test')}
|
|
</button>
|
|
))}
|
|
</div>
|
|
<p className="text-xs text-muted-foreground">
|
|
{newKeyMode === 'test' ? t('mode_test_help') : t('mode_live_help')}
|
|
</p>
|
|
</div>
|
|
<div className="space-y-3">
|
|
<div className="flex items-baseline justify-between gap-3">
|
|
<div className="space-y-1">
|
|
<Label>{t('permissions_label')}</Label>
|
|
<p className="text-xs text-muted-foreground">
|
|
{t('permissions_help')}
|
|
</p>
|
|
</div>
|
|
<span className="shrink-0 text-xs tabular-nums text-muted-foreground">
|
|
{t('selected_count', { selected: newKeyScopes.size, total: ALL_SCOPES.length })}
|
|
</span>
|
|
</div>
|
|
<div className="grid grid-cols-1 gap-3 sm:grid-cols-2">
|
|
{SCOPE_GROUPS.map((group) => (
|
|
<div key={group.domain} className="space-y-2">
|
|
<h4 className="text-sm font-medium">{t(group.labelKey)}</h4>
|
|
<div className="space-y-2 px-2">
|
|
{group.read && (
|
|
<ScopeCard
|
|
entry={group.read}
|
|
checked={newKeyScopes.has(group.read.scope)}
|
|
onCheckedChange={(checked) => {
|
|
setNewKeyScopes((prev) => {
|
|
const next = new Set(prev)
|
|
if (checked) {
|
|
next.add(group.read!.scope)
|
|
} else {
|
|
next.delete(group.read!.scope)
|
|
if (group.write) next.delete(group.write.scope)
|
|
}
|
|
return next
|
|
})
|
|
}}
|
|
/>
|
|
)}
|
|
{group.write && (
|
|
<ScopeCard
|
|
entry={group.write}
|
|
checked={newKeyScopes.has(group.write.scope)}
|
|
onCheckedChange={(checked) => {
|
|
setNewKeyScopes((prev) => {
|
|
const next = new Set(prev)
|
|
if (checked) {
|
|
next.add(group.write!.scope)
|
|
if (group.read) next.add(group.read.scope)
|
|
} else {
|
|
next.delete(group.write!.scope)
|
|
}
|
|
return next
|
|
})
|
|
}}
|
|
/>
|
|
)}
|
|
</div>
|
|
</div>
|
|
))}
|
|
</div>
|
|
{hasSodConflict && (
|
|
<div
|
|
role="alert"
|
|
className="flex items-start gap-2 rounded-md border border-warning/40 bg-warning/10 p-3 text-xs text-foreground"
|
|
>
|
|
<AlertTriangle className="mt-0.5 h-4 w-4 shrink-0 text-warning" />
|
|
<p className="leading-snug">{t('sod_warning')}</p>
|
|
</div>
|
|
)}
|
|
</div>
|
|
</div>
|
|
<DialogFooter>
|
|
<Button variant="outline" onClick={() => setShowCreateDialog(false)}>
|
|
{t('cancel')}
|
|
</Button>
|
|
<Button onClick={handleCreate} disabled={isCreating || newKeyScopes.size === 0}>
|
|
{isCreating && <Loader2 className="mr-1.5 h-3.5 w-3.5 animate-spin" />}
|
|
{t('create')}
|
|
</Button>
|
|
</DialogFooter>
|
|
</DialogContent>
|
|
</Dialog>
|
|
|
|
<DestructiveConfirmDialog {...revokeDialogProps} />
|
|
<DestructiveConfirmDialog {...sodDialogProps} />
|
|
|
|
{/* Show key once dialog */}
|
|
<Dialog open={showKeyDialog} onOpenChange={(open) => {
|
|
if (!open) {
|
|
setNewKeyValue('')
|
|
}
|
|
setShowKeyDialog(open)
|
|
}}>
|
|
<DialogContent>
|
|
<DialogHeader>
|
|
<DialogTitle>{t('new_key_dialog_title')}</DialogTitle>
|
|
<DialogDescription>
|
|
{t('new_key_dialog_description')}
|
|
</DialogDescription>
|
|
</DialogHeader>
|
|
<CopyBlock text={newKeyValue} copyAriaLabel={t('copy_aria')} />
|
|
<DialogFooter>
|
|
<Button onClick={() => {
|
|
setShowKeyDialog(false)
|
|
setNewKeyValue('')
|
|
}}>
|
|
{t('done')}
|
|
</Button>
|
|
</DialogFooter>
|
|
</DialogContent>
|
|
</Dialog>
|
|
</>
|
|
)
|
|
}
|