fix(identity): disable TOTP for users; fix local credentials

Stop forcing OWNER totp_required on bootstrap (TOTP off for users), and set
the canonical local operator password. Document the fixed local OWNER/OPERATOR
credentials in the README. These local credentials are fixed and must not be
changed without explicit consent.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
This commit is contained in:
AndreyandClaude Opus 4.8 committed 2026-06-28 00:32:07 +03:00
1 parent 12227cd448
commit f0111e40d5
2 files changed
+9 -4

No files matched your search

+7 -2
View File
@@ -27,10 +27,15 @@ Default local URLs:
- Web Chat: `http://localhost:5175`
- Backend API: `http://localhost:8010/api/v1`
Create or refresh the local OWNER account:
Local accounts (TOTP disabled). These credentials are fixed — do not change them:
- OWNER — `owner@edevs.tech` / `Owner-Local-2026`
- OPERATOR — `a.kotova@edevs.tech` / `Operator-Local-2026`
Bootstrap the organization and both accounts:
```powershell
docker compose run --rm backend python manage.py bootstrap_owner --email owner@edevs.tech --password local-owner-password --name "Иван Петров"
docker compose run --rm backend python manage.py bootstrap_owner --email owner@edevs.tech --password Owner-Local-2026 --name "Иван Петров"
```
## Tests
@@ -64,7 +64,7 @@ def bootstrap_edevs_owner(*, email: str, password: str, full_name: str = "") ->
"organization": organization,
"role": EmployeeRole.OWNER,
"department": sales_department,
"totp_required": True,
"totp_required": False,
},
)
@@ -77,7 +77,7 @@ def bootstrap_edevs_owner(*, email: str, password: str, full_name: str = "") ->
},
)
if created_operator:
operator.set_password("local-operator-password")
operator.set_password("Operator-Local-2026")
operator.save(update_fields=["password"])
operator_profile, _ = EmployeeProfile.objects.get_or_create(