Requests
Markup from the overlay (bottom-right pill on any page) and manual filings land here. Approve → Build → Push to preview → Review.
Operator key required
The /admin area and its actions are gated by a shared key. Paste it below to continue — your browser stores a cookie, so you won't be asked again on this device.
| Subject | Reporter | Route | Status | Created | |
|---|---|---|---|---|---|
Use the logged in user detail for the markup information #6b5d5c8f | (anonymous) | /admin/users | Awaiting push | 2 Oct 2026, 5:09 am | |
Card objects have a thick border. make it thinner #81dbec3a | (anonymous) | / | Awaiting push | 2 Oct 2026, 4:13 am | |
when push button is pressed, show feedback thats its been pressed, and change status to deploying which will no longer be picked up by the push button, ensure this updates live so user doesnt need to #031779ed | (anonymous) | /admin/requests | In review | 2 Oct 2026, 2:00 am | |
need the ability for anyone to access this page key or not, but if a key has been input then they are "full access: and allowed to build and delte requests etc. Once this has been done, push a baton t #b3557fa6 | (anonymous) | /admin/requests?open=0e812eaf-0656-468a-99b9-86810906718f | In review | 2 Oct 2026, 1:56 am |
need the ability for anyone to access this page key or not, but if a key has been input then they are "full access: and allowed to build and delte requests etc. Once this has been done, push a baton t
/admin/requests?open=0e812eaf-0656-468a-99b9-86810906718fBody
need the ability for anyone to access this page key or not, but if a key has been input then they are "full access: and allowed to build and delte requests etc. Once this has been done, push a baton through to depot telling it of this functionality and to update the baton it sent to approvals with the same information. Depot doesn't need to change though as it has users.
--- Element binding ---
Selector: main.ml-64.min-h-screen > div
Ancestors: main
Text: RequestsRequestsMarkup from the overlay (bottom-right pill on any page) and manual filings land here. Approve → Build →
Route: /admin/requests?open=0e812eaf-0656-468a-99b9-86810906718f
--- Element binding(s) ---
Annotations: {"element":{"selector":"main.ml-64.min-h-screen > div","attributes":null,"ancestors":"main","text":"RequestsRequestsMarkup from the overlay (bottom-right pill on any page) and manual filings land here. Approve → Build → ","bbox":{"x":0.09759498082955734,"y":0.016129032258064516,"w":0.8940397350993378,"h":1.176799815188172},"source":null,"component":null},"elements":[{"selector":"main.ml-64.min-h-screen > div","attributes":null,"ancestors":"main","text":"RequestsRequestsMarkup from the overlay (bottom-right pill on any page) and manual filings land here. Approve → Build → ","bbox":{"x":0.09759498082955734,"y":0.016129032258064516,"w":0.8940397350993378,"h":1.176799815188172},"source":null,"component":null}],"baked":true}Timeline
- Submitted2 Oct 2026, 1:56 am
Filed from the markup overlay.
- Building2 Oct 2026, 2:01 am
baton bab1f939-9aff-4ef5-a00d-5f93c57aab5d sent to agent
- Awaiting push2 Oct 2026, 4:02 am
What was wrong: • /admin/requests required the operator key just to view it, and the key gate was the only lock on write actions. How it was fixed: • Anyone can now open the page without a key — they see the row list, bodies, screenshots, and timeline. • Approve, Build, Push-to-preview, Approve preview, Not right, Reply, Hold, and Resume are only shown if the operator cookie is present. The server actions still check the cookie too, so a direct POST without it is rejected. • When no key is set in the server env, an inline banner surfaces that instead of hiding the whole page. • A baton to amet-depot asking them to adopt this on Approvals is still pending your call on whether Caleb has already filed it.
- Deploying2 Oct 2026, 4:17 am
Push-to-preview triggered by operator text message.
- In review2 Oct 2026, 4:17 am
Deployed to preview: • /admin/requests is now viewable without a key. Approve, Build, Push, Approve preview, Not right, Reply, and Hold only appear when the operator cookie or a signed-in user is present. • Not-signed-in visitors see a "Sign in" button in the header and an inline operator-key prompt below it. • Signed-in users see "Signed in as <name>" with a Sign out link. Smoke-tested in preview: /admin/requests returns 200 for anonymous.