Skip to content

Connect business approvals to verified till checkout and receipt recovery - #1013

Closed
sridharkalaibala wants to merge 4 commits into
codex/business-decision-accessfrom
codex/business-device-bridge
Closed

sridharkalaibala wants to merge 4 commits into
codex/business-decision-accessfrom
codex/business-device-bridge

Conversation

@sridharkalaibala

Copy link
Copy Markdown
Contributor

Discount approvals now reach the authenticated desktop checkout through a verified installation boundary. The cashier requests a server-priced bill, the owner approves it, and checkout rechecks the actual final pricing before consuming a single-use execution permit and saving an immutable receipt. A retry returns the existing sale; a consumed permit cannot authorize a second writer.

Cloud tills use fresh Gateway device checks and five-second, exact-operation tenant grants. Explicit Community mode uses a server-owned installation identity and the same decision ledger/checkout guard. Cloud pairing never falls back to a local ledger. Current cashier generation, branch membership and sales access are rechecked, alongside the approving owner's session/policy at execution.

Durable receipt-only recovery uses the existing desktop timer, examines at most four due commands, and never invokes a sale writer. Cloud acknowledgement waits for the matching sale receipt to arrive through ordinary synchronization. Missing receipts stay unresolved instead of triggering another sale. Cashier UI, operator resolution of missing receipts, broader bill combinations and native qualification remain open; the production feature flag must stay disabled.

Validation: 147 sales controller tests; 90 sale/pricing/validation/route unit tests; 30 real-database access, ledger, device and reporting tests; eight outbox/recovery/controller-to-Mongoose checkout integration cases; 50 language catalogue checks and five sync-classification tests. The companion Gateway contract suite passes seven cases, including delayed receipt sync and actual owner authentication. Relevant lint passes with existing legacy warnings only; formatting, generated API docs (737 endpoints), diff checks and human attribution pass. No CI expansion or production deployment.

Stacked on #1012. Companion Gateway branch: codex/business-device-bridge.

@sridharkalaibala

Copy link
Copy Markdown
Contributor Author

The complete Business companion stack, including this change, is integrated into develop through #1023. All checks, including CodeQL, passed before merge. Closing this superseded stacked PR.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant