"""API Token(给 Android 用,可独立撤销)。""" from __future__ import annotations from datetime import datetime from sqlalchemy import DateTime, ForeignKey, String, func from sqlalchemy.orm import Mapped, mapped_column from app.database import Base class ApiToken(Base): __tablename__ = "api_tokens" id: Mapped[int] = mapped_column(primary_key=True) user_id: Mapped[int] = mapped_column( ForeignKey("users.id", ondelete="CASCADE"), nullable=False, index=True ) name: Mapped[str] = mapped_column(String(64), nullable=False) # "Xiaomi-14" token_hash: Mapped[str] = mapped_column(String(128), unique=True, nullable=False, index=True) # 只存 hash,原始 token 一次性返回给用户 last_used_at: Mapped[datetime | None] = mapped_column(DateTime(timezone=True)) expires_at: Mapped[datetime | None] = mapped_column(DateTime(timezone=True)) revoked_at: Mapped[datetime | None] = mapped_column(DateTime(timezone=True)) created_at: Mapped[datetime] = mapped_column( DateTime(timezone=True), server_default=func.now(), nullable=False )