[Studio] feat: add per-user session details - #4231
Merged
Merged
Conversation
RockteMQ-AI
approved these changes
Sep 11, 2026
RockteMQ-AI
left a comment
There was a problem hiding this comment.
Summary
Adds per-user active session details to Studio user management. Backend exposes a new GET /api/studio/users/{userId}/sessions endpoint that returns session status, idle time, remaining TTL, and last-seen info — without exposing token hashes. Frontend adds a drawer component with refresh and revoke-all actions.
Findings
- [Warning]
AuthService.java:272—listActiveSessionsForUsercallsgetUser(userId)which throws if the user doesn't exist. This is correct behavior, but the error message should be clear (e.g. 404 vs generic 500). Verify the exception handler maps this to a user-friendly response. - [Info]
StudioUserSessionDetailVO.java— Good design decision to excludetokenHashfrom the per-user detail VO. The session overview VO still includes the count, which is the right level of detail for the UI. - [Info] Frontend tests cover both the happy path and the empty-state case. The
onClosecallback pattern for the drawer is clean.
LGTM — well-structured feature with good test coverage on both backend and frontend.
lizhimins
force-pushed
the
fix-091101
branch
from
September 16, 2026 08:05
8f4a5bd to
11fb9f8
Compare
3 tasks done
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
What is the purpose of the change
Add per-user active session details to Studio user management, so administrators can inspect which active sessions belong to a user before revoking them.
Brief changelog
Verifying this change