MonitoringHive
My own project · In development
A building-monitoring platform I designed and built. Each party may see only its own buildings, and afterwards it has to be clear why a request was allowed or refused.
- Guarded service endpoints ask one evaluator. It denies by default and names the reason; a build test fails if an endpoint is neither guarded nor allowlisted.
- Each evaluation writes one decision-log row in a separate transaction, so the record survives when the operation itself is rolled back.
- PostgreSQL row-level security limits the tenant-scoped tables to the current tenant, even when a query omits the tenant filter.
Blue: the decision · dashed: evidence