lucianoandClaude Opus 4.7 9555022143 feat(db): encrypt Profile health fields at rest (ADR 0002)
Wire prisma-field-encryption AES-256-GCM extension on the shared Prisma
client and annotate the four sensitive columns on Profile with @encrypted:
- weightStartKg / weightCurrentKg / weightGoalKg (Decimal → String)
- targetDate (DateTime @db.Date → String, ISO YYYY-MM-DD)

Other Profile fields stay in clear text per ADR 0002 (age, gender,
heightCm, activityLevel) — they're needed for plan generation and
aggregate analytics, and are not strongly identifying on their own.

apps/api profile.routes.ts:
- serialize() now reads the columns as strings and parses them back to
  numbers for BMR/TDEE; targetDate is already an ISO string from the DB
- the upsert stringifies numeric inputs and slices the date to YYYY-MM-DD

Env wiring:
- packages/db, apps/api, apps/web .env.example all document
  PRISMA_FIELD_ENCRYPTION_KEY (k1.aesgcm256.<base64url>) — must match
  across every process that hits the DB
- key generation snippet documented inline

Migration is intentionally NOT in this commit: needs to be created against
a live Postgres instance and applied. The fields change Decimal/Date → text
so prisma migrate dev will require a USING cast — see the follow-up commit.

Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
2026-04-29 15:03:24 +02:00
2026-04-29 12:10:08 +02:00
2026-04-29 12:10:08 +02:00
2026-04-29 12:10:08 +02:00
2026-04-29 12:10:08 +02:00
2026-04-29 12:10:08 +02:00
2026-04-29 12:10:08 +02:00
2026-04-29 12:10:08 +02:00

KetoPath

Web app responsive multi-utente per la gestione personalizzata di chetogenica e digiuno intermittente.

Vedi CLAUDE.md per le convenzioni di progetto e docs/PRD_KetoPath.docx per il PRD completo.

Prerequisiti

  • Node.js >=20.11 (vedi .nvmrc)
  • pnpm >=9 (corepack enable && corepack prepare pnpm@latest --activate)

Getting started

pnpm install
pnpm typecheck
pnpm lint
pnpm format:check

Struttura del monorepo

apps/
  web/              # Next.js 14 frontend (da scaffoldare)
  api/              # Fastify backend (da scaffoldare)
packages/
  shared/           # Tipi e utility di dominio
  ui/               # Componenti UI riusabili
  db/               # Prisma client (da scaffoldare)
  tsconfig/         # tsconfig presets condivisi
  eslint-config/    # ESLint config condivisa
docs/
  PRD_KetoPath.docx

Script disponibili

  • pnpm dev — avvia tutte le app in parallelo
  • pnpm dev:web / pnpm dev:api — avvia singola app
  • pnpm build — build di produzione
  • pnpm lint / pnpm lint:fix — ESLint
  • pnpm format / pnpm format:check — Prettier
  • pnpm typecheck — tsc -b su tutto il monorepo
  • pnpm test — Vitest (unit test)
  • pnpm test:e2e — Playwright (E2E)
S
Description
No description provided
Readme
665 KiB
0 Stars 1 Watchers 0 Forks
Languages
TypeScript 97.3%
CSS 1.7%
JavaScript 1%