| auth-core | feat(auth): M2M client credentials + production OIDC IdP surface | 4d ago |
| billing | feat(admin): B Phase 3 — real Mavi Pay billing + Subscribers & Billing page | 4w ago |
| abuse.test.ts | feat(api): project auto-suspension on abuse-report resolution | 3mo ago |
| abuse.ts | feat(api,web): abuse_reports dedicated table + invite-only allowlist | 3mo ago |
| access.test.ts | chore: initial commit | 3mo ago |
| access.ts | chore: initial commit | 3mo ago |
| account-deletion.integration.test.ts | feat(auth): Phase 2 — fix invite gate, GDPR purge, suspend→keys + hardening | 4w ago |
| account-deletion.ts | fix(ci): green all jobs + stop failure-email noise | 1w ago |
| admin-overview.ts | feat(admin): real data everywhere — fix dead pages, deep users + revenue, restore amputated routes | 4w ago |
| admin-revenue.ts | feat(auth): close gap-fix + Auth v2 depth — SSO pricing, branding, enterprise | 6d ago |
| admin-suspend.integration.test.ts | test(api): prove suspendUser lock-out + scoped key revocation against real DB | 4w ago |
| admin-user-detail.ts | feat(admin): real data everywhere — fix dead pages, deep users + revenue, restore amputated routes | 4w ago |
| admin.ts | fix(ci): green all jobs + stop failure-email noise | 1w ago |
| ai-explain.ts | feat: streaming AI + vector search SDK + branching/workflows skeletons | 3mo ago |
| ai-function-gen.test.ts | feat(api,web): ai function generator — companion to ai schema | 3mo ago |
| ai-function-gen.ts | feat: streaming AI + vector search SDK + branching/workflows skeletons | 3mo ago |
| ai-schema-gen.test.ts | feat(api): AI schema generator endpoint (gated on BRIVEN_OLLAMA_URL) | 3mo ago |
| ai-schema-gen.ts | feat: streaming AI + vector search SDK + branching/workflows skeletons | 3mo ago |
| ai-stream.ts | feat: streaming AI + vector search SDK + branching/workflows skeletons | 3mo ago |
| api-keys.test.ts | chore: initial commit | 3mo ago |
| api-keys.ts | chore: initial commit | 3mo ago |
| assistant.ts | feat: in-product AI database assistant (self-hosted Ollama) | 1mo ago |
| audit.ts | feat(api,web): migration follow-ons — lead promotion + customer timeline + funnel | 2mo ago |
| auth-account-linking.ts | feat(auth): S3 password policy + account linking | 1w ago |
| auth-app-logs.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| auth-audit.ts | Sprint 2 (Batch B) wave 1 — ISY-data-path landmines fixed | 4w ago |
| auth-branding-logo.test.ts | fix(auth): repair users + api-keys + sparkline tabs; add branding logo upload | 4w ago |
| auth-branding-logo.ts | fix(auth): repair users + api-keys + sparkline tabs; add branding logo upload | 4w ago |
| auth-breach-detection.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| auth-bulk-ops.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| auth-compliance.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| auth-device-tracking.test.ts | fix(ci): green typecheck + runtime fail-closed; S2 devices/sessions | 1w ago |
| auth-device-tracking.ts | fix(auth): magic-link emails use api.briven.tech (valid TLS for all tenants) | 6d ago |
| auth-email-templates.ts | fix(auth): self-heal tenant schema so magic-link/OTP never 500 on drift | 1w ago |
| auth-enterprise-pack.test.ts | feat(auth): full enterprise pack — compliance kit, SCIM roles, OIDC PKCE | 1w ago |
| auth-enterprise-pack.ts | feat(auth): full enterprise pack — compliance kit, SCIM roles, OIDC PKCE | 1w ago |
| auth-gdpr-export.ts | feat(auth): gap-fix sprint #5-16 | 2w ago |
| auth-hardening.test.ts | feat(auth): S4 hardening — domain TXT, RelayState, scopes, rate-limit tests | 1w ago |
| auth-hardening.ts | feat(auth): S4 hardening — domain TXT, RelayState, scopes, rate-limit tests | 1w ago |
| auth-impersonate.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| auth-import.ts | Sprint 2 S2.1b — rebuild customer-auth tables to Better-Auth schema (login works) | 4w ago |
| auth-jwt-templates.ts | feat(auth): Phase 7 — Developer Experience & Polish | 2w ago |
| auth-mailer.test.ts | fix(auth): unverified tenant sender domain must never break login emails | 3w ago |
| auth-mailer.ts | feat(auth): S6 reliability bar — metrics, tests, admin snapshot | 1w ago |
| auth-mau.ts | feat(auth): Phase 4 — Enterprise + Analytics | 2w ago |
| auth-orgs.ts | feat(auth): S4 hardening — domain TXT, RelayState, scopes, rate-limit tests | 1w ago |
| auth-origin-allowlist.ts | ci: fix remaining CI failures — typecheck, lint, pre-existing issues | 2w ago |
| auth-password-policy.test.ts | feat(auth): S3 password policy + account linking | 1w ago |
| auth-password-policy.ts | feat(auth): S3 password policy + account linking | 1w ago |
| auth-provisioning-self-heal.test.ts | fix(auth): real passkey WebAuthn flow in SDK + platform wiring | 1w ago |
| auth-provisioning.test.ts | fix(api): auth enable on DoltGres — quote primary, drop expression indexes | 1w ago |
| auth-provisioning.ts | fix(auth): real passkey WebAuthn flow in SDK + platform wiring | 1w ago |
| auth-rate-limit.test.ts | feat(auth): S6 reliability bar — metrics, tests, admin snapshot | 1w ago |
| auth-rate-limit.ts | feat(auth): S6 reliability bar — metrics, tests, admin snapshot | 1w ago |
| auth-reliability.test.ts | feat(auth): S6 reliability bar — metrics, tests, admin snapshot | 1w ago |
| auth-reliability.ts | feat(auth): S6 reliability bar — metrics, tests, admin snapshot | 1w ago |
| auth-scim-role-maps.ts | fix(web,api): storage new-key UX + SCIM role-map index on DoltGres | 1w ago |
| auth-scim.test.ts | feat(auth): SCIM 2.0 provisioning + re-enable auto-deploy | 1w ago |
| auth-scim.ts | feat(auth): full enterprise pack — compliance kit, SCIM roles, OIDC PKCE | 1w ago |
| auth-sdk-keys.test.ts | fix(ci): green all jobs + stop failure-email noise | 1w ago |
| auth-sdk-keys.ts | feat(auth): readiness bar — tests, better-auth upgrade, trust sprint plan | 1w ago |
| auth-security-email.test.ts | feat(auth): S3 password policy + account linking | 1w ago |
| auth-security.ts | feat(auth): S3 password policy + account linking | 1w ago |
| auth-signin-tokens.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| auth-sso-pricing.test.ts | feat(auth): close gap-fix + Auth v2 depth — SSO pricing, branding, enterprise | 6d ago |
| auth-sso-pricing.ts | feat(auth): close gap-fix + Auth v2 depth — SSO pricing, branding, enterprise | 6d ago |
| auth-sso.ts | feat(auth): close gap-fix + Auth v2 depth — SSO pricing, branding, enterprise | 6d ago |
| auth-team-seats.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| auth-tenant-isolation.test.ts | feat(auth): pen test + dogfood runbook + quickstart + launch-readiness (steps 11-14) | 2mo ago |
| auth-tenant-pool-plugins.test.ts | fix(auth): magic-link emails open on project URL, not api.briven.tech | 6d ago |
| auth-tenant-pool.integration.test.ts | Sprint 2 S2.1b — rebuild customer-auth tables to Better-Auth schema (login works) | 4w ago |
| auth-tenant-pool.ts | fix(auth): magic-link emails open on project URL, not api.briven.tech | 6d ago |
| auth-test-tokens.ts | feat(auth): Phase 7 — Developer Experience & Polish | 2w ago |
| auth-turnstile.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| auth-user-avatar.ts | feat(auth): Phase 7 — Developer Experience & Polish | 2w ago |
| auth-user-emails.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| auth-user-metadata.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| auth-usernames.ts | feat(auth): Phase 7 — Developer Experience & Polish | 2w ago |
| auth-users.test.ts | feat(auth): briven auth service v1 — dashboard + SDK + hosted pages | 2mo ago |
| auth-users.ts | fix(web,api): wire branding logo upload + DoltGres-safe users query | 3w ago |
| auth-v2-workspace.test.ts | feat(auth): Phase 8.1/8.4 — Security page for 2FA backup codes + password rules | 6d ago |
| auth-v2-workspace.ts | feat(auth): Phase 8.1/8.4 — Security page for 2FA backup codes + password rules | 6d ago |
| auto-snapshots.ts | feat(snapshots): automatic scheduled snapshots with retention | 1mo ago |
| billing.ts | chore: commit deployed-but-uncommitted fixes into git | 1mo ago |
| branches.ts | feat: streaming AI + vector search SDK + branching/workflows skeletons | 3mo ago |
| connection-seconds.test.ts | feat(api,realtime,web): connection-seconds metric + subscription caps | 3mo ago |
| connection-seconds.ts | feat(api,realtime,web): connection-seconds metric + subscription caps | 3mo ago |
| contact.ts | feat(api): support-ticket system — auto-ticket on #tag, admin + user endpoints | 4w ago |
| convex-schema-translator.ts | feat(api,web): offline convex schema → briven DSL translator | 2mo ago |
| db-shell.integration.test.ts | S2.9 finish: DoltGres-proof db-shell role provisioning + green test harness | 4w ago |
| db-shell.ts | Pre-Sprint-3 prep: S2.9 retire postgres.js + Katsuro footer + gitignore internal docs | 4w ago |
| deploy-history.test.ts | feat(api): deploy_history table + treat 'dev' build-sha as sentinel | 3mo ago |
| deploy-history.ts | feat(api): deploy_history table + treat 'dev' build-sha as sentinel | 3mo ago |
| deployments.ts | fix: converge Studio + functions onto DoltGres data plane | 4w ago |
| email-admin.test.ts | feat(admin): Email Admin cockpit — sender/transport status + per-template stats (Phase 8) | 4w ago |
| email-admin.ts | feat(admin): Email Admin cockpit — sender/transport status + per-template stats (Phase 8) | 4w ago |
| export-import.ts | feat(api): phase 3 — usage metering, abuse pipeline, invite UX, studio backend | 3mo ago |
| function-logs.ts | fix(api): studio table page 500 + hourly-invocations driver crash | 4w ago |
| image-transform.ts | feat(api): M4 — signed image-transform (imgproxy) URLs | 3w ago |
| incidents.ts | feat(api,web): DB-backed status incidents + admin publish surface | 3mo ago |
| invitations.ts | feat(api): phase 3 — usage metering, abuse pipeline, invite UX, studio backend | 3mo ago |
| invoke.ts | fix: converge Studio + functions onto DoltGres data plane | 4w ago |
| marketing-events.ts | feat(api,web): migration follow-ons — lead promotion + customer timeline + funnel | 2mo ago |
| mcp-access.test.ts | feat(mcp): delete a revoked MCP key (admin cockpit + user dashboard) | 4w ago |
| mcp-access.ts | feat(mcp): delete a revoked MCP key (admin cockpit + user dashboard) | 4w ago |
| mcp-answer-writer.ts | feat(mcp): self-growing briven_ask knowledge base + "reach your data from any stack" guide | 2w ago |
| mcp-auth-bridge.test.ts | fix(mcp): teach briven-engine FDI, not retired auth-tenant | 4d ago |
| mcp-auth-bridge.ts | fix(mcp): teach briven-engine FDI, not retired auth-tenant | 4d ago |
| mcp-briven-ask.test.ts | docs(mcp): teach auth agents passkey GET, magic/OTP 500, provider rules | 1w ago |
| mcp-briven-ask.ts | fix(mcp): teach briven-engine FDI, not retired auth-tenant | 4d ago |
| mcp-db-lifecycle.ts | feat(db): lifecycle controls — MCP tools + admin dashboard (Build 4) + revenue view fix | 3w ago |
| mcp-server.test.ts | feat(db): lifecycle controls — MCP tools + admin dashboard (Build 4) + revenue view fix | 3w ago |
| mcp-tools.ts | fix(auth): brk_ keys can enable passwordless + mint pk_briven_auth_ | 6d ago |
| me.ts | fix(admin): env-pinned superadmin allowlist + absolute dashboard link | 4w ago |
| members.ts | chore: initial commit | 3mo ago |
| migration-requests.ts | feat: migration delete + profile-billing header restyle | 2mo ago |
| minio-admin.ts | fix(api): storage-key mint failed — MinIO svcacct name >32 chars | 3w ago |
| ollama.ts | feat: in-product AI database assistant (self-hosted Ollama) | 1mo ago |
| org-invitations.ts | feat(api,web): org-level member invitations | 3mo ago |
| orgs.test.ts | feat(api,web): unlimited teams on pro tier + team rename + settings page | 3mo ago |
| orgs.ts | fix: robust duplicate-org error handling + self-heal personal flag | 2mo ago |
| outbound-webhooks.ts | feat(auth): Phase 5 — Enterprise SSO + Phase 6 — Dashboard & Compliance | 2w ago |
| platform-agents.ts | fix(admin): AI agent test hits the models path, not the bare origin | 3w ago |
| platform-health.test.ts | feat(admin): B Phase 4 — real host metrics (CPU/RAM/disk) from Prometheus | 4w ago |
| platform-health.ts | feat(health): real-login vault gate with 3-strike seatbelt | 3w ago |
| platform-settings.ts | feat: scheduled maintenance (real down-page) + footer contact link | 4w ago |
| project-env.ts | chore: initial commit | 3mo ago |
| projects.ts | fix(api): deploy route and project creation now respect actual project tier | 2w ago |
| realtime-stats.ts | feat(api,realtime,web): tier-aware subscription cap + project warning banner | 3mo ago |
| schedules.ts | feat(api,web,schema,infra): cron + storage + webhooks + tier caps + marketing | 3mo ago |
| schema-apply.test.ts | Briven DoltGres readiness — Sprint 0 (smoke alarm) + Sprint 1 (Batch A) | 4w ago |
| schema-apply.ts | Briven DoltGres readiness — Sprint 0 (smoke alarm) + Sprint 1 (Batch A) | 4w ago |
| schema-export.test.ts | feat(api): schema → briven DSL exporter | 2mo ago |
| schema-export.ts | feat(api): schema → briven DSL exporter | 2mo ago |
| signup-allowlist.integration.test.ts | feat(auth): Phase 2 — fix invite gate, GDPR purge, suspend→keys + hardening | 4w ago |
| signup-allowlist.ts | feat(api,web): abuse_reports dedicated table + invite-only allowlist | 3mo ago |
| signup-geo-admin.ts | feat(admin): capture sign-up IP + geo for platform SEO analytics | 3w ago |
| signup-geo.ts | feat(admin): capture sign-up IP + geo for platform SEO analytics | 3w ago |
| sla.test.ts | feat: status incidents + RSS + DNS cutover runbook + SLA breach math | 3mo ago |
| sla.ts | feat: status incidents + RSS + DNS cutover runbook + SLA breach math | 3mo ago |
| snapshots.ts | Briven DoltGres readiness — Sprint 0 (smoke alarm) + Sprint 1 (Batch A) | 4w ago |
| storage-admin.enforcement.test.ts | test(api): fix stale tier caps, env race + pre-existing mock.module leak | 4w ago |
| storage-admin.integration.test.ts | feat(admin): Sprint 4 Phase 2-3 — storage admin (tier caps + per-project limits + usage) | 4w ago |
| storage-admin.test.ts | feat(admin): Sprint 4 storage admin — usage, per-project limits & editable tier caps | 4w ago |
| storage-admin.ts | feat(storage): M2 quota enforcement (flag->block, default off, fail-open) | 3w ago |
| storage-grants.enforcement.test.ts | feat(storage): M5 storage MCP tools + cross-project grants (strict-deny) | 3w ago |
| storage-grants.ts | feat(storage): M5 storage MCP tools + cross-project grants (strict-deny) | 3w ago |
| storage-keys.ts | feat(api,cli,web): standard project setup includes S3 bucket + default key | 1w ago |
| storage-share-links.enforcement.test.ts | feat(storage): M5 tokenized public share-links (the deferred fast-follow) | 3w ago |
| storage-share-links.ts | feat(storage): M5 tokenized public share-links (the deferred fast-follow) | 3w ago |
| storage.ts | feat(storage): M5 tokenized public share-links (the deferred fast-follow) | 3w ago |
| studio.integration.test.ts | Briven DoltGres readiness — Sprint 0 (smoke alarm) + Sprint 1 (Batch A) | 4w ago |
| studio.test.ts | Briven DoltGres readiness — Sprint 0 (smoke alarm) + Sprint 1 (Batch A) | 4w ago |
| studio.ts | feat(studio): row filtering + multi-column update; fix DoltGres RETURNING (videoDJ P3/P4a) | 3w ago |
| support-tickets.test.ts | feat(api): support-ticket system — auto-ticket on #tag, admin + user endpoints | 4w ago |
| support-tickets.ts | feat(admin): all-messages inbox with reply — plain contact messages get a home | 4w ago |
| suppressions.test.ts | feat(infra,web,test): postgres-exporter scrape + suppression unit tests + first-run empty state | 3mo ago |
| suppressions.ts | feat(email): mittera suppression layer + envelope-aware webhook | 3mo ago |
| templates.ts | feat(api): starter-template engine + apply-template endpoint | 1mo ago |
| tenant-config-store.test.ts | feat(auth): Clerk-simple starter pack — passwordless ON by default | 6d ago |
| tenant-config-store.ts | feat(auth): Clerk-simple starter pack — passwordless ON by default | 6d ago |
| tenant-instance-pool.test.ts | feat(auth): briven auth service v1 — dashboard + SDK + hosted pages | 2mo ago |
| tenant-instance-pool.ts | feat(auth): briven auth service v1 — dashboard + SDK + hosted pages | 2mo ago |
| tenant-secret-store.test.ts | feat(auth): briven auth service v1 — dashboard + SDK + hosted pages | 2mo ago |
| tenant-secret-store.ts | feat(auth): briven auth service v1 — dashboard + SDK + hosted pages | 2mo ago |
| tenant-secrets.integration.test.ts | test(api): prove tenant_secrets persistence round-trip on the real table | 4w ago |
| tenant-secrets.ts | feat(auth): per-tenant OAuth client-secret storage — social login works end-to-end | 4w ago |
| tier-enforcement.ts | feat(api,web,schema,infra): cron + storage + webhooks + tier caps + marketing | 3mo ago |
| tiers.test.ts | S2.9 finish: DoltGres-proof db-shell role provisioning + green test harness | 4w ago |
| tiers.ts | feat(api): M2 start — per-tier file-recovery windows (7/30/90 days) | 3w ago |
| usage-admin.ts | feat(api,web): admin · retry skipped polar usage events | 3mo ago |
| usage.integration.test.ts | Sprint 2 (Batch B) wave 1 — ISY-data-path landmines fixed | 4w ago |
| usage.test.ts | feat(api,realtime,web): connection-seconds metric + subscription caps | 3mo ago |
| usage.ts | Sprint 2 (Batch B) wave 1 — ISY-data-path landmines fixed | 4w ago |
| webhooks.ts | feat(api,web,schema,infra): cron + storage + webhooks + tier caps + marketing | 3mo ago |
| workflows.ts | feat: streaming AI + vector search SDK + branching/workflows skeletons | 3mo ago |
| zone1-data-integrity.test.ts | fix(api/data): account-purge FK sweep + transaction/race hardening (bug audit Z1) | 4w ago |