trading-platform/orchestration/tareas
Adrian Flores Cortes 54ea125d82 docs(auth): Document BLOCKER-001 Token Refresh improvements (Phases 1-2)
FASE 1 : Rate limiting específico para /auth/refresh
- Nuevo refreshTokenRateLimiter (15 refreshes/15min por token)
- Key generator: IP + hash(refreshToken)
- Previene abuse de tokens individuales

FASE 2 : Token rotation mechanism
- Backend code implementado (backward-compatible)
- Detección de token reuse → revoca todas las sesiones
- Nuevo refresh token en cada refresh
- Migration SQL creada: apps/database/migrations/2026-01-27_add_token_rotation.sql

Archivos de código modificados (en .gitignore):
- apps/backend/src/core/middleware/rate-limiter.ts
- apps/backend/src/modules/auth/auth.routes.ts
- apps/backend/src/modules/auth/services/token.service.ts
- apps/backend/src/modules/auth/types/auth.types.ts
- apps/database/ddl/schemas/auth/tables/04-sessions.sql
- apps/database/migrations/2026-01-27_add_token_rotation.sql

Pendiente: FASE 3 (Session Validation) y FASE 4 (Proactive Refresh)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-01-27 00:46:19 -06:00
..
_templates/TASK-TEMPLATE [SIMCO-ESTRUCTURA-TAREAS] feat: Add date-based task organization structure 2026-01-24 17:14:49 -06:00
TASK-2026-01-25-002-FRONTEND-COMPREHENSIVE-AUDIT docs: Add governance validation report for TASK-002 2026-01-25 14:30:34 -06:00
TASK-2026-01-25-FRONTEND-ANALYSIS [TASK-2026-01-25-FRONTEND-ANALYSIS] docs: Update task documentation - 100% complete 2026-01-25 02:05:48 -06:00
TASK-2026-01-25-FRONTEND-COMPONENTS-OQI-004-006-007 [DOCS] docs: Add task documentation for OQI-004, OQI-006, OQI-007 components 2026-01-25 14:10:26 -06:00
TASK-2026-01-25-FRONTEND-MODULE-DOCS docs: Complete TASK-2026-01-25-FRONTEND-MODULE-DOCS 2026-01-25 23:23:22 -06:00
TASK-2026-01-25-ML-DATA-MIGRATION [TASK-2026-01-25-ML-DATA-MIGRATION] docs: Add CAPVED documentation for ML data migration task 2026-01-25 06:17:40 -06:00
TASK-2026-01-25-ML-TRAINING-ENHANCEMENT feat: Add comprehensive analysis and integration plan for trading-platform 2026-01-26 16:40:56 -06:00
TASK-2026-01-25-NOTIFICACIONES-COMPLETAS docs: Complete documentation for notifications system implementation 2026-01-25 04:10:09 -06:00
TASK-2026-01-25-OQI-002-EDUCATION-ADVANCED [OQI-002] docs: Add task documentation and update inventories 2026-01-25 14:44:47 -06:00
TASK-2026-01-25-OQI-003-TRADING-ADVANCED [DOCS] docs: Add task documentation for TASK-2026-01-25-OQI-003-TRADING-ADVANCED 2026-01-25 14:28:51 -06:00
TASK-2026-01-25-OQI-003-TRADING-PANELS [OQI-003] feat: TradingStatsPanel and OrderBookPanel - inventory updates 2026-01-25 09:51:43 -06:00
TASK-2026-01-25-OQI-004-ACCOUNT-DETAIL [OQI-004] docs: Update inventories with complete investment module 2026-01-25 09:24:43 -06:00
TASK-2026-01-25-OQI-004-INVESTMENT-ADVANCED [OQI-004] docs: Add task documentation and update inventories 2026-01-25 23:21:18 -06:00
TASK-2026-01-25-OQI-005-PAYMENTS-ADVANCED [OQI-005] docs: Complete CAPVED documentation and module updates 2026-01-26 10:02:20 -06:00
TASK-2026-01-25-OQI-008-PORTFOLIO-MANAGER [OQI-008] docs: Add complete task documentation for Portfolio Manager 2026-01-25 08:56:20 -06:00
TASK-2026-01-25-PHASE1-MVP docs: Complete documentation for notifications system implementation 2026-01-25 04:10:09 -06:00
TASK-2026-01-26-ANALYSIS-INTEGRATION-PLAN docs(orchestration): Add closure report and pending tasks documentation 2026-01-26 23:44:10 -06:00
TASK-2026-01-26-OQI-006-ML-UTILITY-PANELS [OQI-006] docs: Add task documentation and update inventories 2026-01-26 11:03:44 -06:00
TASK-2026-01-26-OQI-007-LLM-ASSISTANT-PANELS [OQI-007] feat: Add 4 LLM assistant components and CAPVED docs 2026-01-26 12:37:03 -06:00
TASK-2026-01-27-BLOCKER-001-TOKEN-REFRESH docs(auth): Document BLOCKER-001 Token Refresh improvements (Phases 1-2) 2026-01-27 00:46:19 -06:00
_INDEX.yml feat: Add comprehensive analysis and integration plan for trading-platform 2026-01-26 16:40:56 -06:00