ddcore 0.10
This series was written after the fact, from the repository's history. It records what an app would notice in each release — a capability, a contract, a default — and not every commit that went into it.
0.10.0 — 2026-09-15
Added
- User access scopes (SEC-01): the Core
User PermissionDocType gives a userallow/for_valuerules, optionally limited to one DocType, enforced below the SDK on lists, counts, link search, direct reads, the whole document lifecycle, export, attachments, versions and comments, SSE events and notifications,Dynamic Linkfields included. Two users with identical roles, System Manager among them, stay isolated;ignorePermissionsskips role checks but not scopes;Adminand the framework's own elevated contexts are unscoped, and a scoped user is refusedUser Permissionitself, so scope administration belongs to unscoped admins. Grants and revocations are recorded aspermission.scope_grantandscope_revoke. See scopes.
Fixed
- A Link field offers fresh choices after it is cleared, instead of the list it had before.