Skip to content

ddcore 0.10 ​

This series was written after the fact, from the repository's history. It records what an app would notice in each release — a capability, a contract, a default — and not every commit that went into it.

0.10.0 — 2026-09-15 ​

Added ​

  • User access scopes (SEC-01): the Core User Permission DocType gives a user allow/for_value rules, optionally limited to one DocType, enforced below the SDK on lists, counts, link search, direct reads, the whole document lifecycle, export, attachments, versions and comments, SSE events and notifications, Dynamic Link fields included. Two users with identical roles, System Manager among them, stay isolated; ignorePermissions skips role checks but not scopes; Admin and the framework's own elevated contexts are unscoped, and a scoped user is refused User Permission itself, so scope administration belongs to unscoped admins. Grants and revocations are recorded as permission.scope_grant and scope_revoke. See scopes.

Fixed ​

  • A Link field offers fresh choices after it is cleared, instead of the list it had before.

MIT Licensed · ddcore (Data Driven Core) · Development documentation (main)