fix: disable native touch panning on mobile terminal and archive specs

- Change mobile terminal CSS to use touch-action: none and
  overscroll-behavior: none so the custom touch handler owns swipes
- Archive completed/partial OpenSpec specs to
  openspec/changes/archive/2026-06-14-completed-specs-archive/
- Regenerate project maps

Quality gates: npm run typecheck, npm run lint (apps/web)
This commit is contained in:
Developer
2026-06-14 18:07:01 +00:00
parent 896674195c
commit c8db6ce933
580 changed files with 4678 additions and 4333 deletions
@@ -1,15 +1,15 @@
# archive/2026-05-17-auth-oauth (index)
dir: archive/2026-05-17-auth-oauth
# 2026-05-17-auth-oauth (index)
dir: 2026-05-17-auth-oauth
## role
Archive directory containing design documents and proposals for an OAuth2/OIDC authentication system with Authentik integration and JWT token management.
Authentication and authorization package implementing OAuth2/OIDC integration with Authentik for secure user session management.
## parent
index: archive/.pi-map.index.md
map: archive/.pi-map.md
index: ./.pi-map.index.md
map: ./.pi-map.md
## children
- archive/2026-05-17-auth-oauth/specs
index: archive/2026-05-17-auth-oauth/specs/.pi-map.index.md
map: archive/2026-05-17-auth-oauth/specs/.pi-map.md
- 2026-05-17-auth-oauth/specs
index: 2026-05-17-auth-oauth/specs/.pi-map.index.md
map: 2026-05-17-auth-oauth/specs/.pi-map.md
## files
- .openspec.yaml
- README.md
@@ -17,8 +17,8 @@ map: archive/.pi-map.md
- proposal.md
- tasks.md
## links
index: archive/2026-05-17-auth-oauth/.pi-map.index.md
map: archive/2026-05-17-auth-oauth/.pi-map.md
index: 2026-05-17-auth-oauth/.pi-map.index.md
map: 2026-05-17-auth-oauth/.pi-map.md
## workflows
-
## dirty
@@ -1,10 +1,10 @@
# archive/2026-05-17-auth-oauth
dir: archive/2026-05-17-auth-oauth
# 2026-05-17-auth-oauth
dir: 2026-05-17-auth-oauth
index: archive/2026-05-17-auth-oauth/.pi-map.index.md
index: 2026-05-17-auth-oauth/.pi-map.index.md
## role
Archive directory containing design documents and proposals for an OAuth2/OIDC authentication system with Authentik integration and JWT token management.
Authentication and authorization package implementing OAuth2/OIDC integration with Authentik for secure user session management.
## files
- .openspec.yaml | Defines an OpenAPI specification file metadata with schema type and creation date
- README.md | Documents a project that implements OAuth2/OIDC authentication using Authentik with internal JWTs and database-backed refresh tokens | dep: Authentik, OAuth2, OIDC, JWT
@@ -12,7 +12,7 @@ Archive directory containing design documents and proposals for an OAuth2/OIDC a
- proposal.md | Proposes a technical implementation plan for adding production-ready OAuth2/OIDC authentication with Authentik integration, JWT session management, and secure token lifecycle handling to a backend API project. | dep: Authentik, OAuth2/OIDC, JWKS, JWT, database, apps/api/src, config, models, auth services, API routes
- tasks.md | Task tracking document for implementing OIDC/JWT authentication system with refresh tokens in a backend application. | dep: SQLAlchemy, Alembic, Authentik OIDC, pytest, ruff, mypy, asyncpg, PostgreSQL
## arch
Document-driven design specification using markdown-based RFCs, with OpenAPI metadata, separating concerns into design rationale (design.md), implementation planning (proposal.md), task tracking (tasks.md), and project documentation (README.md).
Layered security architecture with external IdP delegation (Authentik OIDC), internal JWT stateless access tokens, database-backed opaque refresh tokens, and environment-aware cookie security policies.
## tags
oidc, authentik, oauth2, jwt, authentication, tokens, refresh, design
## symbols
@@ -1,19 +1,19 @@
# archive/2026-05-17-auth-oauth/specs (index)
dir: archive/2026-05-17-auth-oauth/specs
# 2026-05-17-auth-oauth/specs (index)
dir: 2026-05-17-auth-oauth/specs
## role
Contains historical specification documents for the OAuth authentication implementation from May 2026, serving as archived design reference.
Contains specification documents defining requirements, interfaces, and behavior contracts for the OAuth authentication system.
## parent
index: archive/2026-05-17-auth-oauth/.pi-map.index.md
map: archive/2026-05-17-auth-oauth/.pi-map.md
index: 2026-05-17-auth-oauth/.pi-map.index.md
map: 2026-05-17-auth-oauth/.pi-map.md
## children
- archive/2026-05-17-auth-oauth/specs/auth-oauth
index: archive/2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.index.md
map: archive/2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.md
- 2026-05-17-auth-oauth/specs/auth-oauth
index: 2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.index.md
map: 2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.md
## files
## links
index: archive/2026-05-17-auth-oauth/specs/.pi-map.index.md
map: archive/2026-05-17-auth-oauth/specs/.pi-map.md
index: 2026-05-17-auth-oauth/specs/.pi-map.index.md
map: 2026-05-17-auth-oauth/specs/.pi-map.md
## workflows
-
## dirty
@@ -1,13 +1,13 @@
# archive/2026-05-17-auth-oauth/specs
dir: archive/2026-05-17-auth-oauth/specs
# 2026-05-17-auth-oauth/specs
dir: 2026-05-17-auth-oauth/specs
index: archive/2026-05-17-auth-oauth/specs/.pi-map.index.md
index: 2026-05-17-auth-oauth/specs/.pi-map.index.md
## role
Contains historical specification documents for the OAuth authentication implementation from May 2026, serving as archived design reference.
Contains specification documents defining requirements, interfaces, and behavior contracts for the OAuth authentication system.
## files
## arch
Documentation-only archive with no active code; likely contains markdown/ADR-style specification files capturing past architectural decisions for external authentication provider integration.
Documentation-driven design using specification files (likely markdown or similar) to formalize system requirements before implementation.
## tags
-
## symbols
@@ -1,18 +1,18 @@
# archive/2026-05-17-auth-oauth/specs/auth-oauth (index)
dir: archive/2026-05-17-auth-oauth/specs/auth-oauth
# 2026-05-17-auth-oauth/specs/auth-oauth (index)
dir: 2026-05-17-auth-oauth/specs/auth-oauth
## role
Defines authentication requirements for OAuth2/OIDC integration with Authentik identity provider.
Defines authentication and authorization requirements for OAuth2/OIDC integration with Authentik identity provider.
## parent
index: archive/2026-05-17-auth-oauth/specs/.pi-map.index.md
map: archive/2026-05-17-auth-oauth/specs/.pi-map.md
index: 2026-05-17-auth-oauth/specs/.pi-map.index.md
map: 2026-05-17-auth-oauth/specs/.pi-map.md
## children
-
## files
- spec.md
## links
index: archive/2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.index.md
map: archive/2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.md
index: 2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.index.md
map: 2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.md
## workflows
-
## dirty
@@ -1,14 +1,14 @@
# archive/2026-05-17-auth-oauth/specs/auth-oauth
dir: archive/2026-05-17-auth-oauth/specs/auth-oauth
# 2026-05-17-auth-oauth/specs/auth-oauth
dir: 2026-05-17-auth-oauth/specs/auth-oauth
index: archive/2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.index.md
index: 2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.index.md
## role
Defines authentication requirements for OAuth2/OIDC integration with Authentik identity provider.
Defines authentication and authorization requirements for OAuth2/OIDC integration with Authentik identity provider.
## files
- spec.md | Specifies OAuth2/OIDC authentication, session security, token refresh, and logout requirements for a web application using Authentik as the identity provider. | dep: Authentik, JWKS, OAuth2, OIDC, HTTP cookies, database
## arch
Requirements specification document following standard markdown-based spec format with no implemented architecture.
Specification-driven security architecture using standard OAuth2/OIDC flows with session management, token lifecycle, and secure logout patterns.
## tags
oauth2, oidc, authentik, spec, specifies, authentication, session, security
## symbols