Skip to content

セキュリティパッチ対応#200

Open
sakho13 wants to merge 129 commits intomainfrom
develop
Open

セキュリティパッチ対応#200
sakho13 wants to merge 129 commits intomainfrom
develop

Conversation

@sakho13
Copy link
Copy Markdown
Owner

@sakho13 sakho13 commented Dec 14, 2025

概要

関連タスク

チェック

影響範囲・懸念

備考

dependabot bot and others added 30 commits June 30, 2025 06:17
Bumps [jest](https://github.com/jestjs/jest/tree/HEAD/packages/jest) from 30.0.2 to 30.0.3.
- [Release notes](https://github.com/jestjs/jest/releases)
- [Changelog](https://github.com/jestjs/jest/blob/main/CHANGELOG.md)
- [Commits](https://github.com/jestjs/jest/commits/v30.0.3/packages/jest)

---
updated-dependencies:
- dependency-name: jest
  dependency-version: 30.0.3
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
…jest-30.0.3

⬆️ Bump jest from 30.0.2 to 30.0.3
Bumps [jest-environment-jsdom](https://github.com/jestjs/jest/tree/HEAD/packages/jest-environment-jsdom) from 29.7.0 to 30.0.2.
- [Release notes](https://github.com/jestjs/jest/releases)
- [Changelog](https://github.com/jestjs/jest/blob/main/CHANGELOG.md)
- [Commits](https://github.com/jestjs/jest/commits/v30.0.2/packages/jest-environment-jsdom)

---
updated-dependencies:
- dependency-name: jest-environment-jsdom
  dependency-version: 30.0.2
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
…jest-environment-jsdom-30.0.2

⬆️ Bump jest-environment-jsdom from 29.7.0 to 30.0.2
Bumps [@radix-ui/react-slot](https://github.com/radix-ui/primitives) from 1.2.0 to 1.2.3.
- [Changelog](https://github.com/radix-ui/primitives/blob/main/release-process.md)
- [Commits](https://github.com/radix-ui/primitives/commits)

---
updated-dependencies:
- dependency-name: "@radix-ui/react-slot"
  dependency-version: 1.2.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [zod](https://github.com/colinhacks/zod) from 3.25.67 to 3.25.74.
- [Release notes](https://github.com/colinhacks/zod/releases)
- [Commits](colinhacks/zod@v3.25.67...v3.25.74)

---
updated-dependencies:
- dependency-name: zod
  dependency-version: 3.25.74
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
…radix-ui/react-slot-1.2.3

⬆️ Bump @radix-ui/react-slot from 1.2.0 to 1.2.3
Bumps [@prisma/client](https://github.com/prisma/prisma/tree/HEAD/packages/client) from 6.10.1 to 6.11.1.
- [Release notes](https://github.com/prisma/prisma/releases)
- [Commits](https://github.com/prisma/prisma/commits/6.11.1/packages/client)

---
updated-dependencies:
- dependency-name: "@prisma/client"
  dependency-version: 6.11.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
…zod-3.25.74

⬆️ Bump zod from 3.25.67 to 3.25.74
Bumps [eslint-config-next](https://github.com/vercel/next.js/tree/HEAD/packages/eslint-config-next) from 15.2.4 to 15.3.5.
- [Release notes](https://github.com/vercel/next.js/releases)
- [Changelog](https://github.com/vercel/next.js/blob/canary/release.js)
- [Commits](https://github.com/vercel/next.js/commits/v15.3.5/packages/eslint-config-next)

---
updated-dependencies:
- dependency-name: eslint-config-next
  dependency-version: 15.3.5
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [next](https://github.com/vercel/next.js) from 15.2.4 to 15.3.5.
- [Release notes](https://github.com/vercel/next.js/releases)
- [Changelog](https://github.com/vercel/next.js/blob/canary/release.js)
- [Commits](vercel/next.js@v15.2.4...v15.3.5)

---
updated-dependencies:
- dependency-name: next
  dependency-version: 15.3.5
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
…next-15.3.5

⬆️ Bump next from 15.2.4 to 15.3.5
…prisma/client-6.11.1

⬆️ Bump @prisma/client from 6.10.1 to 6.11.1
sakho13 and others added 24 commits September 13, 2025 22:38
認証プロバイダテーブルとの整合性を保つため、
シードスクリプトを更新

🤖 Generated with [Claude Code](https://claude.ai/code)

Co-Authored-By: Claude <noreply@anthropic.com>
Bumps [firebase](https://github.com/firebase/firebase-js-sdk) from 12.1.0 to 12.2.1.
- [Release notes](https://github.com/firebase/firebase-js-sdk/releases)
- [Changelog](https://github.com/firebase/firebase-js-sdk/blob/main/CHANGELOG.md)
- [Commits](https://github.com/firebase/firebase-js-sdk/compare/firebase@12.1.0...firebase@12.2.1)

---
updated-dependencies:
- dependency-name: firebase
  dependency-version: 12.2.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [tailwindcss](https://github.com/tailwindlabs/tailwindcss/tree/HEAD/packages/tailwindcss) from 4.1.6 to 4.1.13.
- [Release notes](https://github.com/tailwindlabs/tailwindcss/releases)
- [Changelog](https://github.com/tailwindlabs/tailwindcss/blob/main/CHANGELOG.md)
- [Commits](https://github.com/tailwindlabs/tailwindcss/commits/v4.1.13/packages/tailwindcss)

---
updated-dependencies:
- dependency-name: tailwindcss
  dependency-version: 4.1.13
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [@radix-ui/react-collapsible](https://github.com/radix-ui/primitives) from 1.1.11 to 1.1.12.
- [Changelog](https://github.com/radix-ui/primitives/blob/main/release-process.md)
- [Commits](https://github.com/radix-ui/primitives/commits)

---
updated-dependencies:
- dependency-name: "@radix-ui/react-collapsible"
  dependency-version: 1.1.12
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
…radix-ui/react-collapsible-1.1.12

⬆️ Bump @radix-ui/react-collapsible from 1.1.11 to 1.1.12
…tailwindcss-4.1.13

⬆️ Bump tailwindcss from 4.1.6 to 4.1.13
- AuthProviderServiceの全機能をUserServiceに移行
- 重複機能を解消し、認証プロバイダ管理をUserServiceに集約
- AuthProviderEntityの適切な型実装に修正
- 新しいAPIエラータイプを追加 (AuthProviderAlreadyExistsError, InvalidAuthProviderUpgradeError)
- DateUtilityを使用したタイムスタンプ管理に統一

🤖 Generated with [Claude Code](https://claude.ai/code)

Co-Authored-By: Claude <noreply@anthropic.com>
Bumps [@testing-library/dom](https://github.com/testing-library/dom-testing-library) from 10.4.0 to 10.4.1.
- [Release notes](https://github.com/testing-library/dom-testing-library/releases)
- [Changelog](https://github.com/testing-library/dom-testing-library/blob/main/CHANGELOG.md)
- [Commits](testing-library/dom-testing-library@v10.4.0...v10.4.1)

---
updated-dependencies:
- dependency-name: "@testing-library/dom"
  dependency-version: 10.4.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
- Promise.allをfor...ofループに変更し逐次実行に変更
- データベーストランザクションの競合を回避
- 採点処理での正確なカウント管理を実現

🤖 Generated with [Claude Code](https://claude.ai/code)

Co-Authored-By: Claude <noreply@anthropic.com>
…firebase-12.2.1

⬆️ Bump firebase from 12.1.0 to 12.2.1
Bumps [@radix-ui/react-dialog](https://github.com/radix-ui/primitives) from 1.1.14 to 1.1.15.
- [Changelog](https://github.com/radix-ui/primitives/blob/main/release-process.md)
- [Commits](https://github.com/radix-ui/primitives/commits)

---
updated-dependencies:
- dependency-name: "@radix-ui/react-dialog"
  dependency-version: 1.1.15
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
- UserテーブルからfirebaseUid列を削除
- AuthProviderテーブルとの関連により認証情報を管理
- マイグレーション: 20250923061645_delete_firebaseuid_in_user
- IAuthProviderインターフェースを定義
- FirebaseAuthProviderクラスでFirebase認証をラップ
- 認証プロバイダータイプ(GUEST、EMAIL、GOOGLE)のサポート
- 認証プロパティ(email、phoneNumber)の抽象化
- AuthProviderEntityクラスを実装(バリデーション、アクティブ制御)
- UserEntityに認証プロバイダー管理機能を追加
- プライマリ認証プロバイダーの優先度制御
- ゲスト状態判定ロジックの実装
- 型定義の更新(UserEntityType)
- FirebaseAuthUserRepositoryで認証プロバイダー対応
- PrismaUserAuthRepositoryで認証プロバイダーCRUD操作
- PrismaUserRepositoryでfindByFirebaseUid廃止、認証プロバイダー経由に変更
- 管理系リポジトリの認証プロバイダー対応
- 不要なUserRepositoryクラスを削除
- インターフェース定義の更新
- UserServiceで認証プロバイダー管理機能を追加
- ユーザー登録時の認証プロバイダー連携
- 認証プロバイダーのアクティブ/非アクティブ制御
- アップグレードパス検証機能の実装
- 管理系サービスの認証プロバイダー対応
- ApiV1Wrapperで認証プロバイダー統合
- ログインAPIで認証プロバイダー経由のユーザー管理
- 全ユーザーAPIエンドポイントで認証プロバイダー対応
- 管理者APIの認証プロバイダー対応
- isGuestByAuthProviderによるゲスト判定統一
- 既存ユーザーに対する認証プロバイダーデータの移行
- FirebaseUidから認証プロバイダーへのデータ変換
- 既存データの整合性保持
- Claude Code設定ファイルの更新
…radix-ui/react-dialog-1.1.15

⬆️ Bump @radix-ui/react-dialog from 1.1.14 to 1.1.15
- ユーザー登録時の不要なfirebaseUidパラメータを削除
- 認証プロバイダーエラーメッセージを日本語化
- PrismaUserAuthRepositoryでauthProvidersフィールドの明示的取得
…tructure

148 認証プロバイダーデータ構造の実装
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant