nis2-agile/docs/sql
DevEnv nis2-agile ea2a291325 [FEAT] Gap Analysis ACN: assessment misure/requisiti Det. 164179/2025 (backend)
Assessment di SECONDO LIVELLO sulla Determinazione ACN 164179/2025 (non le 10
lettere generiche Art.21, gia coperte). Distingue soggetti importanti/essenziali:
- IMPORTANTI (All.1): 37 misure, 87 requisiti
- ESSENZIALI (All.2): 43 misure, 116 requisiti

- application/data/acn_measures.json: dataset canonico estratto dai testi
  UFFICIALI ACN (Allegati 1+2), testi requisiti INTEGRALI (no troncamenti),
  flag per-requisito importante/essenziale. Validato 37/87 + 43/116, zero
  discrepanze vs codici di riferimento.
- AcnAssessmentController: catalog/list/create/get/requirements/respond/complete/
  report/aiAnalyze. Pre-popola requisiti applicabili per entity_level, scoring
  per funzione FW (GOVERN/IDENTIFY/PROTECT/DETECT/RESPOND/RECOVER), grounding AI
  sui 203 requisiti ACN gia in KB. Anti-IDOR, snapshot testo immutabile.
- Migrazione 036: acn_assessments + acn_assessment_responses (APPLICATA su host).
- Router: acn-gap controllerMap + actionMap.

Origine: finding revisore (la Gap Analysis Art.21 non e l'autovalutazione ACN).

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
2026-06-01 08:02:59 +02:00
..
001_initial_schema.sql [CORE] Initial project scaffold - NIS2 Agile Compliance Platform 2026-02-17 17:50:18 +01:00
002_email_log.sql [FEAT] Add EmailService, RateLimitService, ReportService + integrations 2026-02-17 19:12:46 +01:00
003_voluntary_compliance.sql [FEAT] Visura auto-fill, adesione volontaria, modulo NCR/CAPA 2026-02-18 08:12:57 +01:00
004_ncr_capa.sql [FEAT] Visura auto-fill, adesione volontaria, modulo NCR/CAPA 2026-02-18 08:12:57 +01:00
005_consultant_support.sql [FEAT] Ruolo Consulente + Wizard Registrazione v2 2026-02-20 08:53:30 +01:00
006_security_improvements.sql [FIX] Migration 006: usa stored procedure per indici condizionali 2026-02-20 12:08:44 +01:00
007_services_api.sql [FIX] Migration SQL: INT NOT NULL per FK verso organizations/users (signed) 2026-03-07 13:22:08 +01:00
008_whistleblowing.sql [FIX] Migration SQL: INT NOT NULL per FK verso organizations/users (signed) 2026-03-07 13:22:08 +01:00
009_normative_updates.sql [FIX] Migration SQL: INT NOT NULL per FK verso organizations/users (signed) 2026-03-07 13:22:08 +01:00
010_audit_hash_chain.sql [FEAT] Simulazioni Demo + Audit Trail Certificato SHA-256 2026-03-07 13:56:53 +01:00
011_provisioning.sql [INTEG] Provisioning B2B automatico + fix JWT helpers 2026-03-07 15:02:11 +01:00
012_consulting_firms.sql [FEAT] Knowledge Base RAG multi-livello (SYSTEM/FIRM/ORG) + Qdrant + Voyage 2026-05-29 15:44:13 +02:00
012_invites.sql [INVITE] Sistema inviti/licenze B2B + provisioning con invite_token 2026-03-07 15:22:25 +01:00
013_firm_assignments.sql [FEAT] Knowledge Base RAG multi-livello (SYSTEM/FIRM/ORG) + Qdrant + Voyage 2026-05-29 15:44:13 +02:00
013_license_ext.sql [DB] Fix migration 013: MySQL 8.0 compat + script deploy idempotente 2026-03-07 16:48:53 +01:00
014_feedback.sql [FEAT] Sistema Segnalazioni & Risoluzione AI (feedback) 2026-03-10 08:51:52 +01:00
015_sso_columns.sql [FEAT] Allineamento NIS2 ↔ TRPG (Fasi 1-5): SSO + Sessions + Reset + Impersonate + Branding 2026-05-29 13:18:35 +02:00
016_active_sessions.sql [FEAT] Allineamento NIS2 ↔ TRPG (Fasi 1-5): SSO + Sessions + Reset + Impersonate + Branding 2026-05-29 13:18:35 +02:00
017_password_reset.sql [FEAT] Allineamento NIS2 ↔ TRPG (Fasi 1-5): SSO + Sessions + Reset + Impersonate + Branding 2026-05-29 13:18:35 +02:00
018_user_preferences.sql [FEAT] Allineamento NIS2 ↔ TRPG (Fasi 1-5): SSO + Sessions + Reset + Impersonate + Branding 2026-05-29 13:18:35 +02:00
019_firm_branding.sql [FEAT] Allineamento NIS2 ↔ TRPG (Fasi 1-5): SSO + Sessions + Reset + Impersonate + Branding 2026-05-29 13:18:35 +02:00
020_asset_relevance.sql [FEAT] Integrazione analisi docs/nis2 v1.7.0 — scoring asset, tassonomia incidenti, PIR, NIST CSF, fonti certe 2026-05-29 17:15:13 +02:00
021_incident_nis2_taxonomy.sql [FEAT] Integrazione analisi docs/nis2 v1.7.0 — scoring asset, tassonomia incidenti, PIR, NIST CSF, fonti certe 2026-05-29 17:15:13 +02:00
022_incident_metrics_pir.sql [FEAT] Integrazione analisi docs/nis2 v1.7.0 — scoring asset, tassonomia incidenti, PIR, NIST CSF, fonti certe 2026-05-29 17:15:13 +02:00
023_incident_ingestion.sql [FEAT] Ingestion incidenti SIEM/SOC/EDR (P1) -> endpoint /services/incidents-ingest 2026-05-30 08:41:57 +02:00
024_evidence_automation.sql [FEAT] Evidence Automation + Continuous Control Monitoring (P1) 2026-05-30 08:55:26 +02:00
025_asset_import.sql [FEAT] Asset import CMDB/cloud + scoring automatico GV.OC-04 (P2) 2026-05-30 09:14:12 +02:00
026_risk_quantitative.sql [FEAT] Risk quantitativo FAIR + KRI dashboard (P2) 2026-05-30 09:25:46 +02:00
027_supplier_self_assessment.sql [FEAT] Self-assessment fornitori (P3 supply chain) - portale pubblico con token 2026-05-30 10:19:01 +02:00
028_policy_attestation_versioning.sql [FEAT] Policy attestation + versioning/diff (P3 policy management) 2026-05-30 10:20:59 +02:00
029_org_connectors.sql [FEAT] Connettori per-azienda nella card cliente (Evidence Automation) - config in DB, secret nel vault 2026-05-30 10:51:44 +02:00
030_policy_versions_unique.sql [FIX] Policy: UNIQUE(policy_id,version) + diff LCS posizionale (findings review) 2026-05-30 11:39:38 +02:00
031_acn_requirements.sql [FEAT] Gap Analysis estesa ai requisiti ACN (specifiche di base 164179/2025) 2026-05-31 08:07:38 +02:00
032_supplier_questionnaires_module.sql [FIX] Import fornitori: valida scope org di category_id + allinea header migrazioni 032/033 2026-05-31 11:16:43 +02:00
033_suppliers_category_source.sql [FIX] Import fornitori: valida scope org di category_id + allinea header migrazioni 032/033 2026-05-31 11:16:43 +02:00
034_supplier_portal_auth.sql [DOCS] Design modulo questionari fornitori + portale OTP + AI consulente normativo 2026-05-31 09:53:07 +02:00
035_migrate_027_to_campaigns.sql [DOCS] Design modulo questionari fornitori + portale OTP + AI consulente normativo 2026-05-31 09:53:07 +02:00
036_acn_gap_assessment.sql [FEAT] Gap Analysis ACN: assessment misure/requisiti Det. 164179/2025 (backend) 2026-06-01 08:02:59 +02:00
deploy_013.sh [DB] Fix migration 013: MySQL 8.0 compat + script deploy idempotente 2026-03-07 16:48:53 +01:00
reset-demo.sql [FIX] reset-demo.sql: gestione trigger audit_log + drop/recreate 2026-03-09 09:51:40 +01:00
seed_agile_tech_demo.sql [FEAT] MktgLead getJsonBody + script import-feedback-to-nexus + seed demo agile-tech 2026-05-29 15:42:05 +02:00