# Copyright (c) 2025 Patrick Motsch # All rights reserved. """ CommCoach Feature Container - Main Module. Handles feature initialization and RBAC catalog registration. """ import logging from typing import Dict, List, Any logger = logging.getLogger(__name__) FEATURE_CODE = "commcoach" FEATURE_LABEL = "Kommunikations-Coach" FEATURE_ICON = "mdi-account-voice" UI_OBJECTS = [ { "objectKey": "ui.feature.commcoach.dashboard", "label": "Dashboard", "meta": {"area": "dashboard"} }, { "objectKey": "ui.feature.commcoach.coaching", "label": "Coaching & Dossier", "meta": {"area": "coaching"} }, { "objectKey": "ui.feature.commcoach.settings", "label": "Einstellungen", "meta": {"area": "settings"} }, ] DATA_OBJECTS = [ { "objectKey": "data.feature.commcoach.CoachingContext", "label": "Coaching-Kontext", "meta": { "table": "CoachingContext", "fields": ["id", "title", "category", "status"], "isParent": True, "displayFields": ["title", "category", "status"], } }, { "objectKey": "data.feature.commcoach.CoachingSession", "label": "Coaching-Session", "meta": { "table": "CoachingSession", "fields": ["id", "contextId", "status", "summary"], "parentTable": "CoachingContext", "parentKey": "contextId", } }, { "objectKey": "data.feature.commcoach.CoachingMessage", "label": "Coaching-Nachricht", "meta": {"table": "CoachingMessage", "fields": ["id", "sessionId", "role", "content"]} }, { "objectKey": "data.feature.commcoach.CoachingTask", "label": "Coaching-Aufgabe", "meta": { "table": "CoachingTask", "fields": ["id", "contextId", "title", "status"], "parentTable": "CoachingContext", "parentKey": "contextId", } }, { "objectKey": "data.feature.commcoach.CoachingScore", "label": "Coaching-Score", "meta": {"table": "CoachingScore", "fields": ["id", "dimension", "score", "trend"]} }, { "objectKey": "data.feature.commcoach.CoachingUserProfile", "label": "Benutzerprofil", "meta": {"table": "CoachingUserProfile", "fields": ["id", "userId", "dailyReminderEnabled"]} }, { "objectKey": "data.feature.commcoach.CoachingPersona", "label": "Coaching-Persona", "meta": {"table": "CoachingPersona", "fields": ["id", "key", "label", "gender"]} }, { "objectKey": "data.feature.commcoach.CoachingBadge", "label": "Coaching-Auszeichnung", "meta": {"table": "CoachingBadge", "fields": ["id", "badgeKey", "awardedAt"]} }, { "objectKey": "data.feature.commcoach.*", "label": "Alle CommCoach-Daten", "meta": {"wildcard": True} }, ] RESOURCE_OBJECTS = [ { "objectKey": "resource.feature.commcoach.context.create", "label": "Kontext erstellen", "meta": {"endpoint": "/api/commcoach/{instanceId}/contexts", "method": "POST"} }, { "objectKey": "resource.feature.commcoach.context.archive", "label": "Kontext archivieren", "meta": {"endpoint": "/api/commcoach/{instanceId}/contexts/{contextId}/archive", "method": "POST"} }, { "objectKey": "resource.feature.commcoach.session.start", "label": "Session starten", "meta": {"endpoint": "/api/commcoach/{instanceId}/contexts/{contextId}/sessions/start", "method": "POST"} }, { "objectKey": "resource.feature.commcoach.session.complete", "label": "Session abschliessen", "meta": {"endpoint": "/api/commcoach/{instanceId}/sessions/{sessionId}/complete", "method": "POST"} }, { "objectKey": "resource.feature.commcoach.task.manage", "label": "Aufgaben verwalten", "meta": {"endpoint": "/api/commcoach/{instanceId}/contexts/{contextId}/tasks", "method": "POST"} }, ] TEMPLATE_ROLES = [ { "roleLabel": "commcoach-viewer", "description": "Kommunikations-Coach Betrachter - Coaching-Daten ansehen (nur lesen)", "accessRules": [ {"context": "UI", "item": "ui.feature.commcoach.dashboard", "view": True}, {"context": "UI", "item": "ui.feature.commcoach.coaching", "view": True}, {"context": "UI", "item": "ui.feature.commcoach.settings", "view": True}, {"context": "DATA", "item": None, "view": True, "read": "m", "create": "n", "update": "n", "delete": "n"}, # Viewer: keine RESOURCE-Endpunkte (Mutationen); Regel explizit fuer konsistente Kontext-Matrix {"context": "RESOURCE", "item": None, "view": False}, ], }, { "roleLabel": "commcoach-user", "description": "Kommunikations-Coach Benutzer - Kann eigene Coaching-Kontexte und Sessions verwalten", "accessRules": [ {"context": "UI", "item": "ui.feature.commcoach.dashboard", "view": True}, {"context": "UI", "item": "ui.feature.commcoach.coaching", "view": True}, {"context": "UI", "item": "ui.feature.commcoach.settings", "view": True}, {"context": "DATA", "item": "data.feature.commcoach.CoachingContext", "view": True, "read": "m", "create": "m", "update": "m", "delete": "m"}, {"context": "DATA", "item": "data.feature.commcoach.CoachingSession", "view": True, "read": "m", "create": "m", "update": "m", "delete": "n"}, {"context": "DATA", "item": "data.feature.commcoach.CoachingMessage", "view": True, "read": "m", "create": "m", "update": "n", "delete": "n"}, {"context": "DATA", "item": "data.feature.commcoach.CoachingTask", "view": True, "read": "m", "create": "m", "update": "m", "delete": "m"}, {"context": "DATA", "item": "data.feature.commcoach.CoachingScore", "view": True, "read": "m", "create": "n", "update": "n", "delete": "n"}, {"context": "DATA", "item": "data.feature.commcoach.CoachingUserProfile", "view": True, "read": "m", "create": "m", "update": "m", "delete": "n"}, {"context": "RESOURCE", "item": "resource.feature.commcoach.context.create", "view": True}, {"context": "RESOURCE", "item": "resource.feature.commcoach.context.archive", "view": True}, {"context": "RESOURCE", "item": "resource.feature.commcoach.session.start", "view": True}, {"context": "RESOURCE", "item": "resource.feature.commcoach.session.complete", "view": True}, {"context": "RESOURCE", "item": "resource.feature.commcoach.task.manage", "view": True}, ], }, { "roleLabel": "commcoach-admin", "description": "Kommunikations-Coach Admin - Alle UI- und API-Aktionen; Daten nur eigene Datensaetze", "accessRules": [ {"context": "UI", "item": None, "view": True}, {"context": "RESOURCE", "item": None, "view": True}, {"context": "DATA", "item": None, "view": True, "read": "m", "create": "m", "update": "m", "delete": "m"}, ], }, ] def getFeatureDefinition() -> Dict[str, Any]: return { "code": FEATURE_CODE, "label": FEATURE_LABEL, "icon": FEATURE_ICON, "autoCreateInstance": False, } def getUiObjects() -> List[Dict[str, Any]]: return UI_OBJECTS def getResourceObjects() -> List[Dict[str, Any]]: return RESOURCE_OBJECTS def getTemplateRoles() -> List[Dict[str, Any]]: return TEMPLATE_ROLES def getDataObjects() -> List[Dict[str, Any]]: return DATA_OBJECTS def registerFeature(catalogService) -> bool: try: for uiObj in UI_OBJECTS: catalogService.registerUiObject( featureCode=FEATURE_CODE, objectKey=uiObj["objectKey"], label=uiObj["label"], meta=uiObj.get("meta") ) for resObj in RESOURCE_OBJECTS: catalogService.registerResourceObject( featureCode=FEATURE_CODE, objectKey=resObj["objectKey"], label=resObj["label"], meta=resObj.get("meta") ) for dataObj in DATA_OBJECTS: catalogService.registerDataObject( featureCode=FEATURE_CODE, objectKey=dataObj["objectKey"], label=dataObj["label"], meta=dataObj.get("meta") ) _syncTemplateRolesToDb() _seedBuiltinPersonas() _registerScheduler() logger.info(f"Feature '{FEATURE_CODE}' registered {len(UI_OBJECTS)} UI, {len(RESOURCE_OBJECTS)} resource, {len(DATA_OBJECTS)} data objects") return True except Exception as e: logger.error(f"Failed to register feature '{FEATURE_CODE}': {e}") return False def _seedBuiltinPersonas(): """Seed builtin roleplay personas into the database.""" try: from .serviceCommcoachPersonas import seedBuiltinPersonas from .interfaceFeatureCommcoach import getInterface from modules.datamodels.datamodelUam import User systemUser = User(id="system", username="system", email="system@poweron.swiss") interface = getInterface(systemUser) seedBuiltinPersonas(interface) except Exception as e: logger.warning(f"CommCoach persona seeding failed (non-fatal): {e}") def _registerScheduler(): """Register CommCoach scheduled jobs (daily reminders).""" try: from modules.shared.eventManagement import eventManager from .serviceCommcoachScheduler import registerScheduledJobs registerScheduledJobs(eventManager) except Exception as e: logger.warning(f"CommCoach scheduler registration failed (non-fatal): {e}") def _syncTemplateRolesToDb() -> int: try: from modules.interfaces.interfaceDbApp import getRootInterface from modules.datamodels.datamodelRbac import Role, AccessRule, AccessRuleContext from modules.datamodels.datamodelUtils import coerce_text_multilingual rootInterface = getRootInterface() existingRoles = rootInterface.getRolesByFeatureCode(FEATURE_CODE) templateRoles = [r for r in existingRoles if r.mandateId is None] existingRoleLabels = {r.roleLabel: str(r.id) for r in templateRoles} createdCount = 0 for roleTemplate in TEMPLATE_ROLES: roleLabel = roleTemplate["roleLabel"] if roleLabel in existingRoleLabels: roleId = existingRoleLabels[roleLabel] _ensureAccessRulesForRole(rootInterface, roleId, roleTemplate.get("accessRules", [])) else: newRole = Role( roleLabel=roleLabel, description=coerce_text_multilingual(roleTemplate.get("description", {})), featureCode=FEATURE_CODE, mandateId=None, featureInstanceId=None, isSystemRole=False ) createdRole = rootInterface.db.recordCreate(Role, newRole.model_dump()) roleId = createdRole.get("id") _ensureAccessRulesForRole(rootInterface, roleId, roleTemplate.get("accessRules", [])) logger.info(f"Created template role '{roleLabel}' with ID {roleId}") createdCount += 1 if createdCount > 0: logger.info(f"Feature '{FEATURE_CODE}': Created {createdCount} template roles") return createdCount except Exception as e: logger.error(f"Error syncing template roles for feature '{FEATURE_CODE}': {e}") return 0 def _ensureAccessRulesForRole(rootInterface, roleId: str, ruleTemplates: List[Dict[str, Any]]) -> int: from modules.datamodels.datamodelRbac import AccessRule, AccessRuleContext existingRules = rootInterface.getAccessRulesByRole(roleId) existingSignatures = set() for rule in existingRules: sig = (rule.context.value if rule.context else None, rule.item) existingSignatures.add(sig) createdCount = 0 for template in ruleTemplates: context = template.get("context", "UI") item = template.get("item") sig = (context, item) if sig in existingSignatures: continue if context == "UI": contextEnum = AccessRuleContext.UI elif context == "DATA": contextEnum = AccessRuleContext.DATA elif context == "RESOURCE": contextEnum = AccessRuleContext.RESOURCE else: contextEnum = context newRule = AccessRule( roleId=roleId, context=contextEnum, item=item, view=template.get("view", False), read=template.get("read"), create=template.get("create"), update=template.get("update"), delete=template.get("delete"), ) rootInterface.db.recordCreate(AccessRule, newRule.model_dump()) createdCount += 1 if createdCount > 0: logger.debug(f"Created {createdCount} AccessRules for role {roleId}") return createdCount