editFlipToExternal warned only on the internal → external transition. Switching `token → public` or `session → public` while already external is equally risky (opens topic to anonymous subscribers) but produced no warning. Replace with editPermissivenessChange that ranks the (external, auth_mode) pair on a 0..3 scale and fires the warning whenever the resulting rank strictly exceeds the current one: 0 internal (any auth) 1 external + session 2 external + token 3 external + public Keep `editFlipToExternal` as an alias pointing at the new derived so nothing downstream breaks. AUDIT.md anchor: F-S-014. Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
PiCloud Dashboard
SvelteKit SPA for the PiCloud control plane.
Stack
- SvelteKit 2 with
adapter-static(SPA fallback) - Svelte 5 (runes)
- TypeScript
- Vite
Scripts
npm install
npm run dev # vite dev server on :5173, proxies /api → PICLOUD_API
npm run build # static SPA bundle into ./build/
npm run check # svelte-check
npm run lint
npm run format
By default npm run dev proxies /api/* and /healthz to
http://127.0.0.1:18080. Override with PICLOUD_API=http://host:port npm run dev.
How it fits in
In production Caddy serves the contents of ./build/ as static files and
falls back to index.html for client-side routing. The dashboard only
talks to the control plane (/api/admin/* on the manager); data-plane
invocations go through /api/execute/* on the orchestrator and are not
issued from the dashboard directly during MVP.