Loading
docs(api): record passkey login-handler deferral rationale
The passkey login/assertion HTTP handler stays deferred after its design checkpoint; capture the reasoning in the handler header so the decision is durable in the repo rather than only in task notes. - RP boundary (resolved): felis-api is the app-login relying party (panel.*); the WebAuthn security gate lives at the Cloudflare Access edge. Spec §14 ties WebAuthn/posture to admin.* (Access) while panel.* is plain app login, so there is neither a spec-required assertion handler nor a backend step-up consumer for one. - Identifier (blocking): a from-zero login needs a unique, human-typable handle to resolve an account, but users.email is nullable and non-unique and a player's username is their Minecraft uuid. Username-first assertion has nothing to key on; re-link stays the returning-player door. Discoverable (usernameless) credentials are the future enabler; the adapter crypto is already verified so that slice inherits correct crypto.