From 45df4d0d9b577fecee798d672695fe24ff57fb1b Mon Sep 17 00:00:00 2001 From: mo khan Date: Tue, 15 Jul 2025 16:37:08 -0600 Subject: feat: migrate from Cedar to SpiceDB authorization system This is a major architectural change that replaces the Cedar policy-based authorization system with SpiceDB's relation-based authorization. Key changes: - Migrate from Rust to Go implementation - Replace Cedar policies with SpiceDB schema and relationships - Switch from envoy `ext_authz` with Cedar to SpiceDB permission checks - Update build system and dependencies for Go ecosystem - Maintain Envoy integration for external authorization This change enables more flexible permission modeling through SpiceDB's Google Zanzibar inspired relation-based system, supporting complex hierarchical permissions that were difficult to express in Cedar. Breaking change: Existing Cedar policies and Rust-based configuration will no longer work and need to be migrated to SpiceDB schema. --- vendor/github.com/google/yamlfmt/engine.go | 141 +++++++++++++++++++++++++++++ 1 file changed, 141 insertions(+) create mode 100644 vendor/github.com/google/yamlfmt/engine.go (limited to 'vendor/github.com/google/yamlfmt/engine.go') diff --git a/vendor/github.com/google/yamlfmt/engine.go b/vendor/github.com/google/yamlfmt/engine.go new file mode 100644 index 00000000..bd43f0c7 --- /dev/null +++ b/vendor/github.com/google/yamlfmt/engine.go @@ -0,0 +1,141 @@ +// Copyright 2024 Google LLC +// +// Licensed under the Apache License, Version 2.0 (the "License"); +// you may not use this file except in compliance with the License. +// You may obtain a copy of the License at +// +// http://www.apache.org/licenses/LICENSE-2.0 +// +// Unless required by applicable law or agreed to in writing, software +// distributed under the License is distributed on an "AS IS" BASIS, +// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. +// See the License for the specific language governing permissions and +// limitations under the License. + +package yamlfmt + +import ( + "fmt" + "os" + "slices" + + "github.com/google/yamlfmt/internal/collections" + "github.com/google/yamlfmt/internal/multilinediff" +) + +type Operation int + +const ( + OperationFormat Operation = iota + OperationLint + OperationDry + OperationStdin + OperationPrintConfig +) + +type Engine interface { + FormatContent(content []byte) ([]byte, error) + Format(paths []string) (fmt.Stringer, error) + Lint(paths []string) (fmt.Stringer, error) + DryRun(paths []string) (fmt.Stringer, error) +} + +type FormatDiff struct { + Original string + Formatted string + LineSep string +} + +func (d *FormatDiff) MultilineDiff() (string, int) { + return multilinediff.Diff(d.Original, d.Formatted, d.LineSep) +} + +func (d *FormatDiff) Changed() bool { + return d.Original != d.Formatted +} + +type FileDiff struct { + Path string + Diff *FormatDiff +} + +func (fd *FileDiff) StrOutput() string { + diffStr, _ := fd.Diff.MultilineDiff() + return fmt.Sprintf("%s:\n%s\n", fd.Path, diffStr) +} + +func (fd *FileDiff) StrOutputQuiet() string { + return fd.Path + "\n" +} + +func (fd *FileDiff) Apply() error { + // If there is no diff in the format, there is no need to write the file. + if !fd.Diff.Changed() { + return nil + } + return os.WriteFile(fd.Path, []byte(fd.Diff.Formatted), 0644) +} + +type FileDiffs map[string]*FileDiff + +func (fds FileDiffs) Add(diff *FileDiff) error { + if _, ok := fds[diff.Path]; ok { + return fmt.Errorf("a diff for %s already exists", diff.Path) + } + + fds[diff.Path] = diff + return nil +} + +func (fds FileDiffs) StrOutput() string { + result := "" + sortedPaths := fds.sortedPaths() + for _, path := range sortedPaths { + fd := fds[path] + if fd.Diff.Changed() { + result += fd.StrOutput() + } + } + return result +} + +func (fds FileDiffs) StrOutputQuiet() string { + result := "" + sortedPaths := fds.sortedPaths() + for _, path := range sortedPaths { + fd := fds[path] + if fd.Diff.Changed() { + result += fd.StrOutputQuiet() + } + } + return result +} + +func (fds FileDiffs) ApplyAll() error { + applyErrs := make(collections.Errors, len(fds)) + i := 0 + for _, diff := range fds { + applyErrs[i] = diff.Apply() + i++ + } + return applyErrs.Combine() +} + +func (fds FileDiffs) ChangedCount() int { + changed := 0 + for _, fd := range fds { + if fd.Diff.Changed() { + changed++ + } + } + return changed +} + +func (fds FileDiffs) sortedPaths() []string { + pathKeys := []string{} + for path := range fds { + pathKeys = append(pathKeys, path) + } + slices.Sort(pathKeys) + return pathKeys +} -- cgit v1.2.3