π‘οΈ Access Readiness Preview
Access Planning Boundary
Planning metadata only. Cloudflare Access is not configured by this app code, and no app-level accounts exist.
Future live submissions remain blocked until Access, D1 schema, audit logs, retention policy, staff review, and privacy approval are complete.
Public Routes
These routes should stay public-safe unless their data changes. Public-safe means no resident/community submissions, no staff decisions, and no identity records.
Future Protected Routes
These routes are not implemented. They are listed here to make future protection requirements explicit before any collection starts.
| Route | Future role | Access | D1 schema | Staff review | Audit log | Retention | Status |
|---|---|---|---|---|---|---|---|
| /submit/ | communityMember | yes | yes | yes | yes | yes | not-implemented |
| /submit/announcement/ | communityMember | yes | yes | yes | yes | yes | not-implemented |
| /submit/pullup/ | communityMember | yes | yes | yes | yes | yes | not-implemented |
| /submit/pushup/ | communityMember | yes | yes | yes | yes | yes | not-implemented |
| /submit/proposal/ | communityMember | yes | yes | yes | yes | yes | not-implemented |
| /review/ | staff | yes | yes | yes | yes | yes | not-implemented |
| /review/queue/ | staff | yes | yes | yes | yes | yes | not-implemented |
| /review/submissions/ | staff | yes | yes | yes | yes | yes | not-implemented |
| /history/internal/ | staff | yes | no | no | yes | yes | not-implemented |
| /analytics/participation/ | programDirector | yes | yes | no | yes | yes | not-implemented |
| /settings/roles/ | programDirector | yes | yes | no | yes | yes | not-implemented |
Future Role To Access Group Mapping
Community Member
future groupPlanned Access group: 6th Street Community Members
Future group for protected draft workflows after privacy approval.
Structure Coordinator
future groupPlanned Access group: 6th Street Structure Coordinators
Future group for meeting-prep coordination with limited visibility.
Staff
future groupPlanned Access group: 6th Street Staff Reviewers
Future group for protected staff review workflows.
Program Director
future groupPlanned Access group: 6th Street Program Directors
Future group for leadership policy and escalation ownership.
Developer Maintainer
future groupPlanned Access group: 6th Street Developer Maintainers
Future group for deployment and infrastructure maintenance without default content access.
Required Gates Before Live Use
- Cloudflare Access or equivalent protection selected and configured manually
- Identity provider and group claims reviewed with 6th Street leadership
- Future role model approved by staff ownership
- D1 account/submission schema designed and reviewed before storage
- Retention policy approved before collecting community content
- Audit logging designed before staff-review workflows
- Staff review procedure approved before user-submitted content reaches a packet
- Privacy approval completed before resident/community information is collected
Cloudflare Access configuration remains manual and future-only. This static page does not enforce policy, create identities, or protect routes by itself.