1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305
// Næ§@@@ÑÉ©
// æ@@@@@@@@@@@@@@@@@@
// Ñ@@@@?.?@@@@@@@@@@@@@@@@@@@N
// ¶@@@@@?^%@@.=@@@@@@@@@@@@@@@@@@@@
// N@@@@@@@?^@@@»^@@@@@@@@@@@@@@@@@@@@@@
// @@@@@@@@?^@@@».............?@@@@@@@@@É
// Ñ@@@@@@@@?^@@@@@@@@@@@@@@@@@@'?@@@@@@@@Ñ
// @@@@@@@@@?^@@@»..............»@@@@@@@@@@
// @@@@@@@@@?^@@@»^@@@@@@@@@@@@@@@@@@@@@@@@
// @@@@@@@@@?^ë@@&.@@@@@@@@@@@@@@@@@@@@@@@@
// @@@@@@@@?^´@@@o.%@@@@@@@@@@@@@@@@@@@@©
// @@@@@@@?.´@@@@@ë.........*.±@@@@@@@æ
// @@@@@@@@?´.I@@@@@@@@@@@@@@.&@@@@@N
// N@@@@@@@@@@ë.*=????????=?@@@@@Ñ
// @@@@@@@@@@@@@@@@@@@@@@@@@@@¶
// É@@@@@@@@@@@@@@@@Ѷ
// Næ§@@@ÑÉ©
// Copyright 2020 Chris D'Costa
// This file is part of Totem Live Accounting.
// Authors:
// - Félix Daudré-Vignier email: felix@totemaccounting.com
// - Chris D'Costa email: chris.dcosta@totemaccounting.com
// Totem is free software: you can redistribute it and/or modify
// it under the terms of the GNU General Public License as published by
// the Free Software Foundation, either version 3 of the License, or
// (at your option) any later version.
// Totem is distributed in the hope that it will be useful,
// but WITHOUT ANY WARRANTY; without even the implied warranty of
// GNU General Public License for more details.
// You should have received a copy of the GNU General Public License
// along with Totem. If not, see <http://www.gnu.org/licenses/>.
//! Provides a decentralised authority for data storage.
//! In Totem we require an off-chain searchable database that may end up containing billions of records.
//! IPFS is not a solution as the type of data to be stored may be queried, editied, and each time IPFS cannot overwrite or update existing datasets.
//! Additionally IPFS may drop files that are not considered current, used or needed, which is not ideal for static records like invoices.
//! We wanted a solution where permission for storing an editing data should not be dependent on third-party authentication and access
//! was global, recoverable and self-sovereign.
//! Bonsai is a simple protocol, for allowing independent databases to come to a consensus on content.
//! It works by assuming that the data to be stored must be previously authenticated by its owner on-chain.
//! # How it works
//! Firstly, a reference to the record is created either on-chain or offchain by an account which immediately becomes its owner.
//! The reference is a hash (H256) with sufficient entropy to be unique per the record.
//! A transaction is sent to the blockchain at some point associating the reference to an address for the first time.
//! The reference is considered to be the key to some other data which is not suitable for onchain storage, but will be stored in an offchain database.
//! The offchain database will only accept new or changing records, provided that it can
//! a) find the reference hash onchain, and
//! b) an associated data-hash which it also finds on chain with a hash of the incoming data.
//! The data may be plaintext or encrypted, neither matters as long as the hash of this data matches onchain data-hash.
//! As the on-chain transaction validates the signature, the off-chain database does not need to authenticate the client that communicates
//! the insertion or change request as it has already been "pre-authorised" by the blockchain runtime.
//! Totem believes there is a fee market for storage in this model.
//! # Process
//! A third party database receives a request to store some data. The Database queries the blockchain to find out:
//! 1. Does the reference hash exist on chain and of it does, then collect the associated data-hash also stored onchain;
//! 2. Upon confirmation the reference hash exists, hashing the received data and compare the data-hash to the one found on chain. If it does not match, then do nothing
//! (effectively rejecting the attempt to store the data), and if it does match then store the data using the reference hash as the key;
//! 3. In the event that an reference hash already exists, the data-hash obtained from the blockchain is always king. Provided it matches, overwrite exiting data.
#![cfg_attr(not(feature = "std"), no_std)]
pub use pallet::*;
mod pallet {
use frame_support::{fail, pallet_prelude::*};
use frame_system::pallet_prelude::*;
use sp_runtime::traits::{Convert, Hash};
use sp_std::prelude::*;
use totem_common::StorageMapExt;
use totem_primitives::{
bonsai::Storing, orders::Validating as OrderValidating,
teams::Validating as TeamsValidating, timekeeping::Validating as TimeValidating,
#[pallet::generate_store(trait Store)]
pub struct Pallet<T>(_);
/// Bonsai Storage.
#[pallet::getter(fn is_valid_record)]
pub type IsValidRecord<T: Config> = StorageMap<_, Blake2_128Concat, T::Hash, T::Hash>;
/* Hacky workaround for inability of RPC to query transaction by hash */
/// Maps to current block number allows interrogation of errors.
#[pallet::getter(fn is_started)]
pub type IsStarted<T: Config> = StorageMap<_, Blake2_128Concat, T::Hash, T::BlockNumber>;
/// Future block number beyond which the Hash should deleted.
#[pallet::getter(fn is_successful)]
pub type IsSuccessful<T: Config> = StorageMap<_, Blake2_128Concat, T::Hash, T::BlockNumber>;
/// Tracking to ensure that we can perform housekeeping on finalization of block.
#[pallet::getter(fn tx_list)]
pub type TxList<T: Config> = StorageMap<_, Blake2_128Concat, T::Hash, Vec<T::Hash>>;
pub trait Config: frame_system::Config {
type Event: From<Event<Self>> + IsType<<Self as frame_system::Config>::Event>;
type Timekeeping: TimeValidating<Self::AccountId, Self::Hash>;
type Projects: TeamsValidating<Self::AccountId, Self::Hash>;
type Orders: OrderValidating<Self::AccountId, Self::Hash>;
type BonsaiConverter: Convert<Self::BlockNumber, u32> + Convert<u32, Self::BlockNumber>;
pub enum Error<T> {
/// Queued transaction already completed.
/// Someone is attempting to use this TX_UID after a transaction failed.
impl<T: Config> Hooks<BlockNumberFor<T>> for Pallet<T> {}
impl<T: Config> Pallet<T> {
/// This function stores a record hash for BONSAI 2FA for couchDB
/// Record types are the same as the Archive Record Types
/// * 3000 Activities (previously Projects)
/// * 4000 Timekeeping
/// * 5000 Orders
pub fn update_record(
origin: OriginFor<T>,
record_type: RecordType,
key: T::Hash,
bonsai_token: T::Hash,
) -> DispatchResultWithPostInfo {
// check transaction signed
let who = ensure_signed(origin)?;
Self::check_remote_ownership(who, key.clone(), bonsai_token.clone(), record_type)?;
Self::insert_record(key, bonsai_token)?;
pub fn on_finalize_example(origin: OriginFor<T>) -> DispatchResultWithPostInfo {
let _who = ensure_signed(origin)?;
let current_block: T::BlockNumber = frame_system::Pallet::<T>::block_number();
let current: u32 = T::BonsaiConverter::convert(current_block);
// Get all hashes
let default_bytes = b"nobody can save fiat currency now";
let list_key: T::Hash = T::Hashing::hash(default_bytes.encode().as_slice());
if let Some(hashes) = Self::tx_list(&list_key) {
// check which storage the hashes come from and hashes that are old
for key in hashes {
match Self::is_started(&key) {
Some(block) => {
let target_block = T::BonsaiConverter::convert(block) + 172800_u32;
// let mut target_deletion_block: T::BlockNumber = <T::BonsaiConverter as Convert<u32, T::BlockNumber>>::convert(target_block);
// cleanup 30 Days from when the transaction started, but did not complete
// It's possible this comparison is not working
if current >= target_block {
None => {
if let Some(block) = Self::is_successful(&key) {
let target_block = T::BonsaiConverter::convert(block);
if current >= target_block {
TxList::<T>::mutate_or_err(&list_key, |tx_list| tx_list.retain(|v| v != &key))?;
#[pallet::generate_deposit(pub(super) fn deposit_event)]
pub enum Event<T: Config> {
/// You are not the owner of this Record.
/// This is an unknown record type.
impl<T: Config> Pallet<T> {
fn check_remote_ownership(
o: T::AccountId,
k: T::Hash,
t: T::Hash,
e: RecordType,
) -> DispatchResultWithPostInfo {
// check which type of record
// then check that the supplied hash is owned by the signer of the transaction
match e {
RecordType::Teams => {
if false == T::Projects::is_project_owner(o, k) {
fail!("You cannot add a record you do not own");
RecordType::Timekeeping => {
if false == T::Timekeeping::is_time_record_owner(o, k) {
fail!("You cannot add a record you do not own");
RecordType::Orders => {
if false == T::Orders::is_order_party(o, k) {
fail!("You cannot add a record you do not own");
fn insert_record(k: T::Hash, t: T::Hash) -> DispatchResultWithPostInfo {
// TODO implement fee payment mechanism (currently just transaction fee)
IsValidRecord::<T>::insert(k, t);
fn start_uuid(u: T::Hash) -> DispatchResultWithPostInfo {
if IsSuccessful::<T>::contains_key(&u) {
// Throw an error because the transaction already completed.
} else if IsStarted::<T>::contains_key(&u) {
// Apparently someone is attempting to use this TX_UID after a transaction failed.
} else {
// this is a new UUID just starting the transaction
let current_block = frame_system::Pallet::<T>::block_number();
let default_bytes = b"nobody can save fiat currency now";
let list_key: T::Hash = T::Hashing::hash(default_bytes.encode().as_slice());
TxList::<T>::mutate_or_err(list_key, |tx_list| tx_list.push(u))?;
IsStarted::<T>::insert(u, current_block);
fn end_uuid(u: T::Hash) -> DispatchResultWithPostInfo {
if IsSuccessful::<T>::contains_key(&u) {
// Throw an error because the transaction already completed
} else if IsStarted::<T>::contains_key(&u) {
// The transaction is now completed successfully update the state change
// remove from started, and place in successful
let current_block = frame_system::Pallet::<T>::block_number();
let block: u32 = T::BonsaiConverter::convert(current_block);
let block = block + 172800_u32; // cleanup in 30 Days
let deletion_block: T::BlockNumber = T::BonsaiConverter::convert(block);
IsSuccessful::<T>::insert(u, deletion_block);
} else {
// This situation should not exist.
impl<T: Config> Storing<T::Hash> for Pallet<T> {
fn claim_data(r: T::Hash, d: T::Hash) -> DispatchResultWithPostInfo {
Self::insert_record(r, d)
fn start_tx(u: T::Hash) -> DispatchResultWithPostInfo {
fn end_tx(u: T::Hash) -> DispatchResultWithPostInfo {