PR-C — Control Center Sessions Integration - #32
Merged
Conversation
Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Integrates the Session Foundation from
omnibioai-authinto the OmniBioAI Control Center.Sessions are exposed as a self-service feature under:
Security → Sessions
The Control Center remains a relay layer. Session authorization and lifecycle decisions remain owned by
omnibioai-auth.Architecture
Browser
→ control-center-web nginx
→ control-center backend
→ omnibioai-auth
No API Gateway was inserted into this path.
API
GET /sessionsGET /sessions/{session_id}POST /sessions/{session_id}/revokeUI
A "current session" indicator was intentionally not added because the current Session API/JWT contract does not expose a reliable browser-session correlation identifier.
Security
omnibioai-authomnibioai-authnginx
The Sessions route uses the existing dynamic Docker DNS upstream:
$control_center_upstreamThis preserves the previously implemented Docker DNS re-resolution fix and avoids stale container-IP caching.
Validation
git diff --check: PASSValidated flow:
Browser
→
admin.omnibioai.org→ control-center-web
→ control-center
→ omnibioai-auth
Verified:
Scope
This PR does not modify
omnibioai-auth.This PR does not implement Interactions.
This PR does not introduce a new session store in Control Center.
Review notes
Unrelated concurrent working-tree changes were deliberately excluded from this commit and remain outside this PR.
🤖 Generated with Claude Code