"""审计日志模型。 全链路操作记录,保留 ≥ 6 月。 """ import uuid from datetime import datetime, timezone from sqlalchemy import DateTime, ForeignKey, String, Text from sqlalchemy.orm import Mapped, mapped_column from app.core.database import Base from app.core.types import JSONBType class AuditLog(Base): """审计日志。""" __tablename__ = "audit_logs" id: Mapped[str] = mapped_column(String(36), primary_key=True, default=lambda: str(uuid.uuid4())) tenant_id: Mapped[str] = mapped_column(String(36), ForeignKey("tenants.id"), nullable=False, index=True) user_id: Mapped[str | None] = mapped_column(String(36), ForeignKey("users.id"), nullable=True) action: Mapped[str] = mapped_column(String(100), nullable=False, comment="操作类型:login/view/create/update/delete/export/ai_call") resource_type: Mapped[str | None] = mapped_column(String(50), nullable=True, comment="资源类型") resource_id: Mapped[str | None] = mapped_column(String(36), nullable=True, comment="资源 ID") detail_json: Mapped[dict | None] = mapped_column(JSONBType, nullable=True, comment="操作详情") ip: Mapped[str | None] = mapped_column(String(45), nullable=True, comment="IP 地址") created_at: Mapped[datetime] = mapped_column( DateTime(timezone=True), default=lambda: datetime.now(timezone.utc) )