diff options
Diffstat (limited to 'packages/meshbay-common/src/meshbay_common/adminop.py')
| -rw-r--r-- | packages/meshbay-common/src/meshbay_common/adminop.py | 21 |
1 files changed, 14 insertions, 7 deletions
diff --git a/packages/meshbay-common/src/meshbay_common/adminop.py b/packages/meshbay-common/src/meshbay_common/adminop.py index 51396c7..df806a9 100644 --- a/packages/meshbay-common/src/meshbay_common/adminop.py +++ b/packages/meshbay-common/src/meshbay_common/adminop.py @@ -61,15 +61,22 @@ OP_APPS_ENABLED = "apps_enabled" # security property in itself, but the pattern (every operator setting is # signed) is what keeps the authorization model simple to reason about. OP_SET_SCAN_SETTINGS = "set_scan_settings" -# Whether the node calls TMDB at all, and whether it uses the operator's own -# API token instead of the shipped default. Signed like the rest: it turns -# on outbound third-party network traffic that did not exist before the -# Videos app (docs/mediacenter.md §5.5, §8) — an unsigned toggle would let -# any member turn on egress the operator never agreed to. +# Whether the node uses the operator's own API token/language instead of the +# shipped default — node-wide (docs/mediacenter.md §5.5), one credential +# shared by every group. Signed like the rest: it turns on outbound +# third-party network traffic that did not exist before the Videos app +# (§8) — an unsigned change would let any member alter egress the operator +# never agreed to. OP_TMDB_CONFIG = "tmdb_config" +# Whether the node calls TMDB *at all* for this group — per-group, unlike +# tmdb_config above: a real media-library group and a test/demo group on the +# same node need not share the decision to spend TMDB quota and make +# outbound requests. Signed for the same reason as tmdb_config. +OP_TMDB_ENABLED = "tmdb_enabled" # Which folder (possibly a subfolder of a shared root) is the Videos app's -# entry point for this group — per-group, unlike tmdb_config. Signed like -# the rest: it decides what every member's Videos tab shows. +# entry point for this group — per-group, like tmdb_enabled above and +# unlike tmdb_config's token/language. Signed like the rest: it decides what +# every member's Videos tab shows. OP_VIDEO_ROOT = "video_root" # Correcting a wrong automatic TMDB match — signed for the same reason as # tmdb_config: it changes what every member sees for a show/movie, node-wide |