feat: unify user analytics and optimize overview aggregation

Merge user accounts and usage reporting into one page with a combined ranking and account table, shared precise time ranges, and simpler range labels.

Parse overview metadata once through a schema-only view migration and disable JIT locally for bucket rebuilds. Preserve automatic backfills.

Add redacted OAuth refresh diagnostics, bucket failure context, and regression coverage. Resolve strict Clippy warnings.
This commit is contained in:
elky
2026-10-05 00:28:31 +08:00
parent 2075cd95de
commit cb7b9c9ecd
27 changed files with 1255 additions and 587 deletions
@@ -155,14 +155,17 @@ pub(crate) async fn perform_oauth_token_refresh_once(
Ok(None) => {
summary.skipped = summary.skipped.saturating_add(1);
}
Err(_) => {
Err(err) => {
summary.failed = summary.failed.saturating_add(1);
warn!(
event_name = "oauth_token_refresh_failed",
log_type = "ops",
worker = "oauth_token_refresh",
provider_id = %provider.id,
provider_type = %provider.provider_type,
endpoint_id = %endpoint.id,
key_id = %key.id,
error = %crate::error::redact_error_debug(&err),
"gateway oauth token auto refresh failed"
);
}
@@ -440,6 +443,7 @@ mod tests {
agent_identity_needs_task_recovery, auth_config_has_refresh_token,
is_nonfatal_legacy_catalog_credential_error, oauth_refresh_candidate,
};
use crate::error::redact_error_debug;
use crate::GatewayError;
#[test]
@@ -543,4 +547,18 @@ mod tests {
)
));
}
#[test]
fn oauth_refresh_failure_detail_preserves_context_without_credentials() {
let error = GatewayError::Internal(
r#"oauth request failed: status=503 token="refresh-secret" retry=2"#.to_string(),
);
let detail = redact_error_debug(&error);
assert!(detail.contains("oauth request failed"));
assert!(detail.contains("status=503"));
assert!(detail.contains("[REDACTED]"));
assert!(!detail.contains("refresh-secret"));
}
}