Skip to content

feat(app-shell,plugin-detail): read-gated Approvals tab on the record detail page (#3461) - #3493

Merged
baozhoutao merged 3 commits into
mainfrom
claude/issue-3461-ce4wke
Aug 6, 2026
Merged

feat(app-shell,plugin-detail): read-gated Approvals tab on the record detail page (#3461)#3493
baozhoutao merged 3 commits into
mainfrom
claude/issue-3461-ce4wke

Conversation

@baozhoutao

Copy link
Copy Markdown
Contributor

Closes #3461.

Problem

A record sitting in approval exposed nothing about the running approval to anyone but the current pending approver. useRecordApprovals was consumed solely to inject the header Approve/Reject buttons; the pending-approver list, decision progress, and the sys_approval_action timeline existed only in the Approval Center — a setup-app surface business roles cannot navigate to, whose backing object is tenant-wide (granting read there is over-broad). The record's own audit history is no help either: the engine mirrors business fields as runAs:'system' and decisions never enter record history. Submitters couldn't tell whom to nudge; QA leads audited stuck records one by one.

What this does

Records with approval requests grow an Approvals tab on the detail page — a peer of Details/Related with a request-count badge (same promotion Attachments got in objectstack#4358). Visibility is gated by record read access, not approver status. Records without requests carry no tab.

The tab wraps the new schema-addressable record:approvals node (RecordApprovalsPanel):

  • Current flow/step + status — server labels, ADR-0044 round chip, and the enriched flow_steps strip;
  • Decision progress — server-computed decision_progress rendered verbatim (quorum segmented bar, per-group 会签 ticks); never re-derived client-side;
  • Waiting onpending_approver_names / pending_approver_groups resolved to name chips with group labels and collapsed ×N slot counts (never raw ids);
  • Activity — one chronological timeline merged across all of the record's requests (a multi-level flow opens one request per node), with decision comments, attachments (signed-URL open), and structured reassign from/to;
  • Remind — inline submitter nudge posting the existing POST /approvals/requests/:id/remind (viewer.is_submitter, id-match fallback for older backends; throttle surfaced as friendly copy).

How

  • buildDefaultTabs accepts approvals?: { count, node } and emits the tab only when the host reports requests. The label localizes through the tab strip's KNOWN_LABEL_DICT (审批), which already carried it.
  • On the synthesized page, RecordDetailView threads its live useRecordApprovals result through the node — the same read behind the header decision buttons, so tab and header can never disagree, and a decision re-renders the tab. On authored pages the renderer self-fetches via RecordContext; an authored page that omits the node gets a bottom-of-page fallback append (gated on hasExplicitApprovals(renderedPage) — introspected on the rendered tree, not the early synth, which would have double-rendered).
  • useRecordApprovals now exposes the full requests array plus listApprovalActions / remindApprovalRequest; ApprovalRequestLite types the display enrichment the single-read endpoint already sent (process_label, step_label, flow_steps, viewer, round).
  • Copy reuses the Approval Center's approvalsInbox.* keys so the two surfaces cannot drift; one new key (detail.approvalsPanelTitle) lands in all ten locales.

Verification

  • 14 new tests (panel rendering for non-approver viewers, multi-request timeline merge, remind gating + endpoint, chip collapsing, synth tab emission/order/payload) — plus full plugin-detail + app-shell suites: 334 files / 2908 tests green; eslint 0 errors.
  • Live-stack dogfood against the showcase backend (per_group 会签 + quorum demo requests): tab strip shows Details | Related 4 | Approvals 1; approving one group ticks the bar to 1/2, flips the group badge, and appends the decision to the timeline; exactly one panel instance renders. Verified in zh-CN too (页签「审批」, 待审批/会签进度/等待以下审批人/审批动态 all localized).

Changeset included (minor, no major per repo policy). Docs updated (app-shell README, console guide).

Related: #3055 (decision-action parity on the record page — complementary, this PR is the read-only visibility half), #2763 (SDUI rebuild would absorb this as a standard block).


Generated by Claude Code

claude added 2 commits August 6, 2026 07:39
…3461)

A record in approval exposed NOTHING about the running approval to anyone
but the current pending approver: useRecordApprovals was consumed solely to
inject the header Approve/Reject buttons, while the pending-approver list,
decision progress, and the sys_approval_action timeline lived only in the
Approval Center — a setup-app surface business roles cannot navigate to,
whose backing object is tenant-wide (granting read there is over-broad).
The submitter could not tell whom to nudge, and record history was no help:
the engine mirrors business fields as runAs:'system' and decisions never
enter record history.

RecordDetailView now renders a RecordApprovalsPanel below the record body
for EVERY viewer who can read the record (read-gated, not approver-gated):

- current flow/step, status badge, ADR-0044 round chip, and the enriched
  flow-steps strip;
- server-computed decision progress (quorum tally, per-group ticks) — never
  re-derived client-side;
- "waiting on" chips with server-resolved display names, group labels and
  collapsed slot counts (never raw ids);
- ONE chronological action timeline merged across all of the record's
  requests (a multi-level flow opens one request per node), with decision
  comments and attachments;
- an inline remind button for the submitter (viewer.is_submitter, id-match
  fallback for older backends) posting the existing
  POST /approvals/requests/:id/remind.

Copy reuses the Approval Center's approvalsInbox.* i18n keys so the two
surfaces cannot drift; the one new key (detail.approvalsPanelTitle) lands
in all ten locales. useRecordApprovals additionally exposes the full
`requests` array plus listApprovalActions / remindApprovalRequest, and
ApprovalRequestLite now types the display enrichment the single-read
endpoint already sent (process_label, step_label, flow_steps, viewer,
round). The panel renders nothing when the approvals plugin is absent or
the record has no requests.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01PvgCPXn9SUzg2iVm5hpLUr
…n Approvals tab (#3461)

The panel landed below the discussion feed — the page tree stretches
min-h-full, so on most screens the one thing a submitter opens the record
to learn ("who is this waiting on") sat below the fold. Same failure mode
Attachments had before objectstack#4358 promoted them to a tab; approvals
now take the same path.

- `buildDefaultTabs` accepts `approvals?: { count, node }` and emits an
  Approvals tab (peer of Details/Related, after Related) wrapping a
  `record:approvals` node, with a request-count badge (explicit spec count,
  the PageTabsRenderer affordance related lists already use). The label
  localizes through KNOWN_LABEL_DICT (审批), which already carried it.
  Emitted ONLY when the host reports requests, so approval-free records
  carry no dead tab.
- New `record:approvals` renderer (app-shell): host-first data — the
  synthesized page threads RecordDetailView's LIVE useRecordApprovals
  result through the node (the same read behind the header decision
  buttons, so tab and header can never disagree, and a decision re-renders
  the tab); on authored pages that place the node bare, it self-fetches
  via RecordContext.
- RecordDetailView passes the payload through synthParts (the history
  pattern); the bottom append is demoted to an authored-page fallback,
  gated on `hasExplicitApprovals(renderedPage)` — introspected on the
  RENDERED tree, not the early `effectivePage` synth, which never contains
  the runtime-data-dependent tab and would have double-rendered the panel.
- Synth tests for tab emission/order/payload; README, console guide and
  the pending changeset updated to describe the tab surface.

Verified in the live showcase stack: tab strip shows
"Details | Related 4 | Approvals 1"; the tab renders the panel with group
progress, waiting-on chips and the timeline; exactly one panel instance.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01PvgCPXn9SUzg2iVm5hpLUr
@vercel

vercel Bot commented Aug 6, 2026

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

1 Skipped Deployment
Project Deployment Actions Updated (UTC)
objectui Ignored Ignored Aug 6, 2026 12:34pm

Request Review

@github-actions github-actions Bot added documentation Improvements or additions to documentation plugin tests labels Aug 6, 2026
…ad key with spaces

Control Byte Scan (PR #3493) flagged three raw U+0000 bytes in
RecordApprovalsPanel.tsx — the join/split sentinels inside the timeline
reload key. A NUL makes grep/ripgrep classify the whole file as binary, so
it silently drops out of code search. Request ids (areq_<uuid>) and status
values cannot contain a space, so a plain space separator carries the same
guarantee a reader can actually verify. Byte-identical semantics otherwise;
panel tests green.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01PvgCPXn9SUzg2iVm5hpLUr
@github-actions

github-actions Bot commented Aug 6, 2026

Copy link
Copy Markdown
Contributor

✅ Console Performance Budget

Metric Value Budget
Main entry (gzip) 28.1 KB 350 KB
Entry file index-dg_m6J1g.js
Status PASS

📦 Bundle Size Report

Package Size Gzipped
app-shell (index.js) 8.66KB 3.13KB
app-shell (runtime-config.js) 7.42KB 2.32KB
app-shell (types.js) 0.01KB 0.04KB
app-shell (urlParams.js) 7.57KB 2.97KB
auth (AuthContext.js) 0.31KB 0.24KB
auth (AuthGuard.js) 1.17KB 0.53KB
auth (AuthProvider.js) 22.10KB 4.37KB
auth (AuthShell.js) 3.49KB 1.40KB
auth (ForgotPasswordForm.js) 12.21KB 3.45KB
auth (LoginForm.js) 18.13KB 5.39KB
auth (PreviewBanner.js) 0.90KB 0.50KB
auth (RegisterForm.js) 6.64KB 2.21KB
auth (SocialSignInButtons.js) 9.60KB 3.89KB
auth (UserMenu.js) 3.40KB 1.22KB
auth (auth-gate-events.js) 1.29KB 0.66KB
auth (authStyles.js) 5.04KB 1.72KB
auth (createAuthClient.js) 35.76KB 9.11KB
auth (createAuthenticatedFetch.js) 4.37KB 1.69KB
auth (index.js) 2.35KB 1.07KB
auth (org-roles.js) 6.66KB 2.78KB
auth (phone-identifier.js) 1.11KB 0.66KB
auth (types.js) 0.59KB 0.35KB
auth (useAuth.js) 4.91KB 0.87KB
auth (useIsWorkspaceAdmin.js) 1.61KB 0.85KB
collaboration (CommentThread.js) 21.35KB 5.70KB
collaboration (LiveCursors.js) 3.17KB 1.27KB
collaboration (PresenceAvatars.js) 6.49KB 2.64KB
collaboration (PresenceProvider.js) 2.79KB 1.13KB
collaboration (index.js) 1.65KB 0.73KB
collaboration (useCollaborationTranslation.js) 5.30KB 2.24KB
collaboration (useCommentSearch.js) 1.98KB 0.88KB
collaboration (useConflictResolution.js) 7.75KB 1.86KB
collaboration (useMentionNotifications.js) 1.81KB 0.68KB
collaboration (usePresence.js) 6.33KB 1.84KB
collaboration (useRealtimeSubscription.js) 7.91KB 2.01KB
components (index.js) 479.63KB 105.43KB
core (index.js) 2.47KB 0.91KB
create-plugin (index.js) 9.28KB 2.98KB
data-objectstack (index.js) 136.30KB 34.76KB
fields (index.js) 229.82KB 56.53KB
i18n (LocalizationContext.js) 1.76KB 0.96KB
i18n (currency.js) 1.22KB 0.64KB
i18n (i18n.js) 4.32KB 1.77KB
i18n (index.js) 2.65KB 1.06KB
i18n (pickLocalized.js) 1.70KB 0.83KB
i18n (provider.js) 9.48KB 3.27KB
i18n (useObjectLabel.js) 26.14KB 6.07KB
i18n (useSafeTranslation.js) 3.26KB 1.44KB
layout (index.js) 38.53KB 10.71KB
mobile (MobileProvider.js) 0.92KB 0.49KB
mobile (ResponsiveContainer.js) 0.94KB 0.38KB
mobile (breakpoints.js) 1.51KB 0.70KB
mobile (createOfflineDataSource.js) 5.61KB 1.74KB
mobile (index.js) 1.50KB 0.62KB
mobile (offlineQueue.js) 3.91KB 1.35KB
mobile (pwa.js) 0.97KB 0.49KB
mobile (serviceWorker.js) 1.48KB 0.62KB
mobile (serviceWorkerSource.js) 3.41KB 1.48KB
mobile (useBreakpoint.js) 1.54KB 0.65KB
mobile (useGesture.js) 6.96KB 1.98KB
mobile (useOfflineSync.js) 1.99KB 0.72KB
mobile (usePullToRefresh.js) 2.53KB 0.85KB
mobile (useResponsive.js) 0.71KB 0.42KB
mobile (useResponsiveConfig.js) 1.36KB 0.63KB
mobile (useSpecGesture.js) 4.05KB 1.53KB
mobile (useTouchTarget.js) 1.01KB 0.54KB
permissions (MePermissionsProvider.js) 8.75KB 3.06KB
permissions (PermissionContext.js) 0.31KB 0.25KB
permissions (PermissionGuard.js) 0.89KB 0.45KB
permissions (PermissionProvider.js) 3.67KB 1.12KB
permissions (evaluator.js) 4.41KB 1.44KB
permissions (index.js) 0.91KB 0.41KB
permissions (store.js) 0.91KB 0.42KB
permissions (useFieldPermissions.js) 1.28KB 0.52KB
permissions (usePermissions.js) 1.55KB 0.71KB
plugin-ai (index.js) 15.71KB 3.79KB
plugin-calendar (index.js) 44.98KB 12.37KB
plugin-charts (index.js) 61.04KB 17.31KB
plugin-chatbot (index.js) 180.09KB 42.72KB
plugin-dashboard (index.js) 112.03KB 28.88KB
plugin-designer (index.js) 210.51KB 42.51KB
plugin-detail (index.js) 232.79KB 57.42KB
plugin-editor (index.js) 2.46KB 1.10KB
plugin-form (index.js) 111.54KB 26.97KB
plugin-gantt (index.js) 162.55KB 39.57KB
plugin-grid (index.js) 185.25KB 49.08KB
plugin-kanban (index.js) 48.03KB 13.22KB
plugin-list (index.js) 105.19KB 25.39KB
plugin-map (index.js) 16.81KB 5.24KB
plugin-markdown (index.js) 13.72KB 4.69KB
plugin-report (index.js) 40.58KB 10.58KB
plugin-timeline (index.js) 25.76KB 7.33KB
plugin-tree (index.js) 8.50KB 2.88KB
plugin-view (index.js) 84.03KB 20.55KB
providers (DataSourceProvider.js) 0.75KB 0.39KB
providers (MetadataProvider.js) 1.37KB 0.59KB
providers (ThemeProvider.js) 1.90KB 0.85KB
providers (UploadProvider.js) 11.71KB 3.53KB
providers (index.js) 0.44KB 0.22KB
providers (types.js) 0.01KB 0.04KB
react-runtime (index.js) 5.67KB 2.37KB
react (LazyPluginLoader.js) 3.77KB 1.33KB
react (SchemaRenderer.js) 19.28KB 6.38KB
react (data-invalidation.js) 5.05KB 2.08KB
react (index.js) 1.02KB 0.55KB
react (spec-input.js) 0.20KB 0.18KB
sdui-parser (codegen.js) 4.09KB 1.74KB
sdui-parser (index.js) 4.47KB 2.03KB
sdui-parser (parse.js) 10.04KB 2.82KB
sdui-parser (types.js) 0.29KB 0.24KB
sdui-parser (validate.js) 4.69KB 1.48KB
types (ai.js) 0.20KB 0.17KB
types (api-types.js) 0.20KB 0.18KB
types (app.js) 2.87KB 0.99KB
types (base.js) 0.20KB 0.18KB
types (blocks.js) 0.20KB 0.18KB
types (complex.js) 0.20KB 0.18KB
types (crud.js) 0.20KB 0.18KB
types (data-display.js) 0.20KB 0.18KB
types (data-protocol.js) 0.20KB 0.19KB
types (data.js) 0.20KB 0.18KB
types (designer.js) 1.87KB 0.85KB
types (disclosure.js) 0.20KB 0.18KB
types (error-code.js) 1.54KB 0.88KB
types (feedback.js) 0.20KB 0.18KB
types (field-types.js) 0.20KB 0.18KB
types (form.js) 0.20KB 0.18KB
types (http-retry.js) 4.32KB 2.02KB
types (index.js) 2.46KB 1.21KB
types (layout.js) 0.20KB 0.18KB
types (managed-by.js) 0.19KB 0.18KB
types (mobile.js) 0.20KB 0.18KB
types (navigation.js) 0.20KB 0.18KB
types (objectql.js) 0.20KB 0.18KB
types (overlay.js) 0.20KB 0.18KB
types (permissions.js) 0.20KB 0.18KB
types (plugin-scope.js) 0.20KB 0.18KB
types (record-components.js) 0.20KB 0.19KB
types (record-semantics.js) 1.28KB 0.67KB
types (registry.js) 0.20KB 0.18KB
types (reports.js) 0.20KB 0.18KB
types (spec-report.js) 5.05KB 1.93KB
types (system-fields.js) 3.33KB 1.54KB
types (theme.js) 0.20KB 0.18KB
types (ui-action.js) 3.40KB 1.71KB
types (views.js) 0.20KB 0.18KB
types (widget.js) 0.20KB 0.18KB

Size Limits

  • ✅ Core packages should be < 50KB gzipped
  • ✅ Component packages should be < 100KB gzipped
  • ⚠️ Plugin packages should be < 150KB gzipped

@baozhoutao
baozhoutao added this pull request to the merge queue Aug 6, 2026
Merged via the queue into main with commit 5af2852 Aug 6, 2026
19 checks passed
@baozhoutao
baozhoutao deleted the claude/issue-3461-ce4wke branch August 6, 2026 13:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

documentation Improvements or additions to documentation plugin tests

Projects

None yet

Development

Successfully merging this pull request may close these issues.

console: 业务记录页看不到审批信息 —— 「等待以下审批人」与审批动态只长在审批中心,非审批人看不到任何进展

2 participants