| | | 1 | | import type { ParsedMapFile } from '../domain/parsed-map-file.js'; |
| | | 2 | | import type { ISecretProvider } from '../domain/ports/secret-provider.js'; |
| | | 3 | | |
| | | 4 | | /** |
| | | 5 | | * Core client that resolves secrets from a configured provider. |
| | | 6 | | * |
| | | 7 | | * For most use cases prefer the {@link Envilder} facade. |
| | | 8 | | * Use this class directly when you need a custom {@link ISecretProvider}. |
| | | 9 | | * |
| | | 10 | | * @example |
| | | 11 | | * ```typescript |
| | | 12 | | * const provider = new MyCustomProvider(); |
| | | 13 | | * const mapFile = new MapFileParser().parse(json); |
| | | 14 | | * const secrets = await new EnvilderClient(provider).resolveSecrets(mapFile); |
| | | 15 | | * ``` |
| | | 16 | | */ |
| | | 17 | | export class EnvilderClient { |
| | | 18 | | private readonly secretProvider: ISecretProvider; |
| | | 19 | | |
| | | 20 | | constructor(secretProvider: ISecretProvider) { |
| | 17 | 21 | | if (!secretProvider) { |
| | 1 | 22 | | throw new Error('secretProvider cannot be null'); |
| | | 23 | | } |
| | 16 | 24 | | this.secretProvider = secretProvider; |
| | | 25 | | } |
| | | 26 | | |
| | | 27 | | /** |
| | | 28 | | * Resolves all mappings against the configured secret provider. |
| | | 29 | | * Entries whose secret does not exist are silently omitted. |
| | | 30 | | */ |
| | | 31 | | async resolveSecrets(mapFile: ParsedMapFile): Promise<Map<string, string>> { |
| | 16 | 32 | | if (mapFile.mappings.size === 0) { |
| | 1 | 33 | | return new Map(); |
| | | 34 | | } |
| | | 35 | | |
| | 15 | 36 | | const secretPaths = [...new Set(mapFile.mappings.values())]; |
| | 15 | 37 | | const resolved = await this.secretProvider.getSecrets(secretPaths); |
| | | 38 | | |
| | 14 | 39 | | const result = new Map<string, string>(); |
| | 14 | 40 | | for (const [envVarName, secretPath] of mapFile.mappings) { |
| | 23 | 41 | | const value = resolved.get(secretPath); |
| | 23 | 42 | | if (value !== undefined) { |
| | 20 | 43 | | result.set(envVarName, value); |
| | | 44 | | } |
| | | 45 | | } |
| | | 46 | | |
| | 14 | 47 | | return result; |
| | | 48 | | } |
| | | 49 | | |
| | | 50 | | /** |
| | | 51 | | * Sets every key/value pair as a process-level environment variable. |
| | | 52 | | */ |
| | | 53 | | static injectIntoEnvironment(secrets: Map<string, string>): void { |
| | 4 | 54 | | for (const [key, value] of secrets) { |
| | 8 | 55 | | process.env[key] = value; |
| | | 56 | | } |
| | | 57 | | } |
| | | 58 | | } |