using Microsoft.AspNetCore.Identity.EntityFrameworkCore; using Microsoft.EntityFrameworkCore; using JobTrackerApi.Models; namespace JobTrackerApi.Data { public class JobTrackerContext : IdentityDbContext { public string? CurrentUserId { get; } public JobTrackerContext(DbContextOptions options, JobTrackerApi.Services.ICurrentUserService currentUser) : base(options) { CurrentUserId = currentUser.UserId; } public DbSet Companies => Set(); public DbSet Jobs => Set(); public DbSet JobApplications => Set(); public DbSet Correspondences => Set(); public DbSet GmailConnections => Set(); public DbSet GmailReviewDecisions => Set(); public DbSet MicrosoftGraphConnections => Set(); public DbSet ImapConnections => Set(); public DbSet Attachments => Set(); public DbSet RuleSettings => Set(); public DbSet UserRuleSettings => Set(); public DbSet SystemEmailSettings => Set(); public DbSet JobEvents => Set(); public DbSet CvUploadArtifacts => Set(); public DbSet CvExtractionRuns => Set(); public DbSet TailoredCvDrafts => Set(); public DbSet TwoFactorRecoveryCodes => Set(); public DbSet TrustedDevices => Set(); public DbSet UserSessions => Set(); public DbSet CareerProfiles => Set(); public DbSet CareerProfileVersions => Set(); public DbSet CareerExperiences => Set(); public DbSet CareerEducations => Set(); public DbSet CareerSkills => Set(); public DbSet CareerProjects => Set(); public DbSet CareerCertifications => Set(); public DbSet CareerLanguages => Set(); public DbSet InterviewPrepNotes => Set(); public DbSet AiWorkspaceNotes => Set(); protected override void OnModelCreating(ModelBuilder modelBuilder) { base.OnModelCreating(modelBuilder); modelBuilder.Entity() .HasQueryFilter(c => CurrentUserId != null && c.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasQueryFilter(j => CurrentUserId != null && j.OwnerUserId == CurrentUserId); // Job (the opportunity) is tenant-owned like everything else: same deny-on-null filter, // so a null CurrentUserId returns nothing rather than every tenant's rows. modelBuilder.Entity() .HasQueryFilter(j => CurrentUserId != null && j.OwnerUserId == CurrentUserId); // WithMany() with no inverse navigation: Company.Jobs is already the JobApplication // collection (a legacy name predating this split), so Job hangs off Company without // claiming it. Restrict rather than Cascade — deleting a company should not silently // destroy opportunity records that applications may still reference. modelBuilder.Entity() .HasOne(j => j.Company) .WithMany() .HasForeignKey(j => j.CompanyId) .OnDelete(DeleteBehavior.Restrict); modelBuilder.Entity() .HasIndex(j => j.OwnerUserId); // SetNull, not Cascade: an application must survive its Job row being removed, since // JobApplication still carries its own copy of the opportunity columns during the // Phase 0 -> Phase 1 transition. modelBuilder.Entity() .HasOne(j => j.Job) .WithMany(o => o.Applications) .HasForeignKey(j => j.JobId) .OnDelete(DeleteBehavior.SetNull); modelBuilder.Entity() .HasKey(x => x.OwnerUserId); modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasData(new RuleSettings { Id = 1 }); modelBuilder.Entity() .HasOne(j => j.Company) .WithMany(c => c.Jobs) .HasForeignKey(j => j.CompanyId) .OnDelete(DeleteBehavior.Cascade); modelBuilder.Entity() .HasIndex(j => j.OwnerUserId); // Owner-prefixed composite indexes for the tenant-scoped hot paths. Every // JobApplication query is scoped by the OwnerUserId global filter first, then // filtered by IsDeleted (list/board/stats/analytics) or FollowUpAt (reminders). // Status is intentionally excluded from the index because Pomelo maps the // unbounded string column to longtext, which MariaDB cannot index without a // prefix length. The actual index DDL is applied idempotently in // StartupInitializationExtensions (this repo provisions schema via that // reconciler, not via the EF ModelSnapshot, which is stale). modelBuilder.Entity() .HasIndex(j => new { j.OwnerUserId, j.IsDeleted }); modelBuilder.Entity() .HasIndex(j => new { j.OwnerUserId, j.FollowUpAt }); // Board/list endpoints that filter by both IsDeleted and Status. Same MySQL // longtext-prefix caveat as above; the reconciler applies `Status(50)` there. modelBuilder.Entity() .HasIndex(j => new { j.OwnerUserId, j.IsDeleted, j.Status }); modelBuilder.Entity() .HasIndex(c => c.OwnerUserId); modelBuilder.Entity() .HasQueryFilter(c => CurrentUserId != null && c.JobApplication.OwnerUserId == CurrentUserId) .HasOne(c => c.JobApplication) .WithMany(j => j.Messages) .HasForeignKey(c => c.JobApplicationId) .OnDelete(DeleteBehavior.Cascade); modelBuilder.Entity() .HasIndex(c => c.JobApplicationId); modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Ignore(); modelBuilder.Entity() .HasIndex(x => new { x.OwnerUserId, x.GmailAddress }) .IsUnique(); modelBuilder.Entity() .HasIndex(x => x.OwnerUserId); modelBuilder.Entity() .HasOne(a => a.JobApplication) .WithMany(j => j.Attachments) .HasForeignKey(a => a.JobApplicationId) .OnDelete(DeleteBehavior.Cascade); modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.JobApplication.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasOne(e => e.JobApplication) .WithMany(j => j.Events) .HasForeignKey(e => e.JobApplicationId) .OnDelete(DeleteBehavior.Cascade); modelBuilder.Entity() .HasIndex(e => e.JobApplicationId); modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => new { x.OwnerUserId, x.UploadedAtUtc }); modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => new { x.OwnerUserId, x.StartedAtUtc }); modelBuilder.Entity() .HasOne(x => x.Artifact) .WithMany() .HasForeignKey(x => x.ArtifactId) .OnDelete(DeleteBehavior.SetNull); modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => new { x.OwnerUserId, x.JobApplicationId }) .IsUnique(); modelBuilder.Entity() .HasOne(x => x.JobApplication) .WithOne(j => j.TailoredCvDraft) .HasForeignKey(x => x.JobApplicationId) .OnDelete(DeleteBehavior.Cascade); // No FK to AspNetUsers: the login-time challenge endpoint reads these rows before a // session (and thus CurrentUserId) exists, via IgnoreQueryFilters() -- same convention // as AdminAuditController's cross-cutting queries. modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.UserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => new { x.UserId, x.UsedAtUtc }); // No FK to AspNetUsers: the login-time trusted-device check reads these rows before a // session (and thus CurrentUserId) exists, via IgnoreQueryFilters() -- same convention // as TwoFactorRecoveryCode above. modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.UserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => x.UserId); modelBuilder.Entity() .HasIndex(x => x.TokenHash); // No FK to AspNetUsers, same convention as TrustedDevice/TwoFactorRecoveryCode above: the // OnTokenValidated auth check reads this table before CurrentUserId is meaningfully set // for the request being validated, via IgnoreQueryFilters(). modelBuilder.Entity() .HasKey(x => x.Id); modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.UserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => x.UserId); // Career Workspace foundation (docs/career-workspace-implementation-roadmap.md Phase F1). // One CareerProfile per user for now -- see roadmap "Not now: multiple profiles per user". modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => x.OwnerUserId) .IsUnique(); modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => new { x.OwnerUserId, x.CareerProfileId, x.Version }); modelBuilder.Entity() .HasOne(x => x.CareerProfile) .WithMany() .HasForeignKey(x => x.CareerProfileId) .OnDelete(DeleteBehavior.Cascade); // Phase 3: relational children of CareerProfile (the editable master profile). // docs/architecture/career-profile-model.md. Same deny-on-null tenant filter as everything // else; cascade-delete with the parent; indexed by (OwnerUserId, CareerProfileId, SortOrder) // for the ordered per-profile reads the /career editor does. ConfigureCareerChild(modelBuilder); ConfigureCareerChild(modelBuilder); ConfigureCareerChild(modelBuilder); ConfigureCareerChild(modelBuilder); ConfigureCareerChild(modelBuilder); ConfigureCareerChild(modelBuilder); // Interview prep persistence (career-workspace-implementation-roadmap.md Phase F5). modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => new { x.OwnerUserId, x.JobApplicationId }) .IsUnique(); modelBuilder.Entity() .HasOne(x => x.JobApplication) .WithMany() .HasForeignKey(x => x.JobApplicationId) .OnDelete(DeleteBehavior.Cascade); // Generic AI workspace note persistence (candidate fit, focus plan) -- same rationale as // InterviewPrepNote above, generalized because these DTOs are irregular/nested enough that // per-field columns would be unreasonable. modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => new { x.OwnerUserId, x.JobApplicationId, x.NoteType }) .IsUnique(); modelBuilder.Entity() .HasOne(x => x.JobApplication) .WithMany() .HasForeignKey(x => x.JobApplicationId) .OnDelete(DeleteBehavior.Cascade); } // Common config for CareerProfile's relational children. The 1:many FK + cascade delete is // wired by convention (each child's CareerProfileId + CareerProfile nav match the typed // collection on CareerProfile); this adds the tenant query filter and the ordered read index. private void ConfigureCareerChild(ModelBuilder modelBuilder) where T : Models.CareerChildEntity { modelBuilder.Entity() .HasQueryFilter(x => CurrentUserId != null && x.OwnerUserId == CurrentUserId); modelBuilder.Entity() .HasIndex(x => new { x.OwnerUserId, x.CareerProfileId, x.SortOrder }); } } }