TenantAtlas/apps/platform/app/Services/Evidence/Sources/PermissionPostureSource.php
ahmido e64bae9cfc feat: cut over tenant core to managed environments (#335)
## Summary
- replace the legacy Tenant and TenantMembership core models with ManagedEnvironment and ManagedEnvironmentMembership
- propagate the managed environment naming and key changes across Filament resources, pages, controllers, jobs, models, and supporting runtime paths
- add feature 279 spec artifacts and focused managed-environment test coverage for model behavior, route binding, panel context, authorization, and legacy guardrails

## Validation
- `cd apps/platform && ./vendor/bin/sail artisan test --compact tests/Feature/ManagedEnvironment/LegacyTenantCoreGuardTest.php tests/Feature/ManagedEnvironment/ManagedEnvironmentAuthorizationTest.php tests/Feature/ManagedEnvironment/ManagedEnvironmentPanelContextTest.php tests/Feature/ManagedEnvironment/ManagedEnvironmentRouteBindingTest.php tests/Unit/ManagedEnvironment/ManagedEnvironmentContextResolverTest.php tests/Unit/ManagedEnvironment/ManagedEnvironmentModelTest.php`
- `cd apps/platform && ./vendor/bin/sail bin pint --dirty --format agent`

## Notes
- branch pushed from commit `1123b122`
- browser smoke test file was added but not run in this pass

Co-authored-by: Ahmed Darrazi <ahmed.darrazi@live.de>
Reviewed-on: #335
2026-05-07 06:38:14 +00:00

62 lines
2.3 KiB
PHP

<?php
declare(strict_types=1);
namespace App\Services\Evidence\Sources;
use App\Models\StoredReport;
use App\Models\ManagedEnvironment;
use App\Services\Evidence\Contracts\EvidenceSourceProvider;
use App\Support\Evidence\EvidenceCompletenessState;
final class PermissionPostureSource implements EvidenceSourceProvider
{
public function key(): string
{
return 'permission_posture';
}
public function collect(ManagedEnvironment $tenant): array
{
$report = StoredReport::query()
->where('managed_environment_id', (int) $tenant->getKey())
->where('report_type', StoredReport::REPORT_TYPE_PERMISSION_POSTURE)
->latest('id')
->first();
$payload = is_array($report?->payload) ? $report->payload : [];
$requiredCount = (int) ($payload['required_count'] ?? 0);
$grantedCount = (int) ($payload['granted_count'] ?? 0);
$state = match (true) {
! $report instanceof StoredReport => EvidenceCompletenessState::Missing->value,
$requiredCount > 0 && $grantedCount < $requiredCount => EvidenceCompletenessState::Partial->value,
default => EvidenceCompletenessState::Complete->value,
};
return [
'dimension_key' => $this->key(),
'state' => $state,
'required' => true,
'source_kind' => 'stored_report',
'source_record_type' => $report instanceof StoredReport ? StoredReport::class : StoredReport::class,
'source_record_id' => $report instanceof StoredReport ? (string) $report->getKey() : null,
'source_fingerprint' => $report?->fingerprint,
'measured_at' => $report?->updated_at,
'freshness_at' => $report?->updated_at,
'summary_payload' => [
'posture_score' => $payload['posture_score'] ?? null,
'required_count' => $requiredCount,
'granted_count' => $grantedCount,
'payload' => $payload,
],
'fingerprint_payload' => [
'fingerprint' => $report?->fingerprint,
'required_count' => $requiredCount,
'granted_count' => $grantedCount,
],
'sort_order' => 20,
];
}
}