feat: per-board activity log

Adds an audit trail per board, visible from a new clock-icon button on the
toolbar. Useful for review-style work where someone wants to see who
contributed which references and when.

Logged events (high-signal only — canvas-edit noise intentionally skipped):
- image / video / pdf added (whether dropped, pasted, or pulled from a URL)
- board created / renamed / deleted
- thread started, resolved, reopened
- comment posted on a thread

Backend:
- new activity_logs table (id, board_id, user_id, denormalised actor name +
  email, action, target_type/id/label, metadata JSON, created_at) with an
  index on (board_id, created_at DESC).
- logActivity helper resolves the user once at log time and stores their
  display name + email so entries survive deactivation/rename.
- recordActivity wraps logActivity + a Socket.IO emit to the board's room
  so the panel updates live without polling.
- GET /api/boards/:id/activity?limit=&before= for pagination
  (collection-membership gated, viewer+).

Frontend:
- ActivityPanel side-drawer: time-grouped feed (Today / Yesterday / older),
  per-action icons + tone colours (add/remove/edit/comment), pagination
  via "Load older", live append on Socket.IO 'activity:new'.
- Relative timestamps refresh every 30s.
- Wired into Editor + Toolbar.

README updated; roadmap entry checked off.
This commit is contained in:
Hiren Kangad
2026-04-28 21:29:48 +05:30
parent 2fb71b4ae1
commit eb0bd210ac
12 changed files with 541 additions and 3 deletions
+2
View File
@@ -101,6 +101,7 @@ const uploadRoutes = require('./routes/upload');
const adminRoutes = require('./routes/admin');
const threadRoutes = require('./routes/threads');
const pdfRoutes = require('./routes/pdf');
const activityRoutes = require('./routes/activity');
app.use('/api/auth', authRoutes);
app.use('/api/collections', collectionRoutes);
@@ -109,6 +110,7 @@ app.use('/api/upload', uploadRoutes);
app.use('/api/admin', adminRoutes);
app.use('/api/boards', threadRoutes);
app.use('/api/boards', pdfRoutes);
app.use('/api/boards', activityRoutes);
// Public shared collection route (no auth required)
app.get('/api/c/:shareToken', (req, res) => {