Switch GST operator agent to custom protocol launch

This commit is contained in:
A R R R Associates
2026-09-11 12:40:00 +05:30
parent a32132348d
commit b361a66e44
7 changed files with 181 additions and 287 deletions
@@ -1,27 +1,25 @@
ARRR GST Operator Agent 1.0.1
ARRR GST Operator Agent 1.1.0
Purpose
- Runs only on the GST operator's Windows workstation.
- Listens only on 127.0.0.1:8791.
- Exposes a trusted local HTTPS endpoint at https://localhost:8791.
- Opens visible Chrome/Edge for GST Portal authentication and return download.
- Autofills the selected Credential Vault username/password supplied through the ERP short-lived job token.
- CAPTCHA/OTP remains interactive with the operator.
- Does not run Tally and does not hold the client storage.
- Completed GST packages continue through the ERP to the already configured Local Storage Agent.
-------
Runs only on the GST operator workstation. It opens visible Chrome/Edge, redeems a short-lived GST job token from ARRR ERP, fills the selected Credential Vault username/password, waits for manual CAPTCHA/OTP, downloads selected GST return data, and uploads the package back to ERP for transfer to the configured Storage Agent.
Install
1. Extract the downloaded ZIP.
2. Run PowerShell in the extracted ARRR_GST_Operator_Agent folder:
powershell.exe -NoProfile -ExecutionPolicy Bypass -File .\install_gst_operator_agent.ps1
3. The installer creates a localhost TLS certificate and trusts it only for the current Windows user.
4. Verify https://localhost:8791/api/status.
5. Refresh the ERP GST Return Reconciliation page.
Architecture
------------
ARRR ERP starts the agent through the Windows custom URL protocol arrrgst://. No browser-to-localhost HTTP/HTTPS request is used. No localhost TLS certificate, local web server, Tally access, or client storage access is required on the operator workstation.
Upgrade from 1.0.0
- Download the current agent ZIP from ERP and run install_gst_operator_agent.ps1 again.
- The installer stops the old HTTP listener, replaces the runtime, installs the trusted localhost certificate and starts v1.0.1 over HTTPS.
Installation
------------
Run install_gst_operator_agent.ps1 as the Windows user who will operate GST downloads. Administrator rights are not required. Python 3.11+ and installed Chrome or Edge are required.
Browser prompt
--------------
The first time ARRR ERP opens arrrgst://, Chrome/Edge may ask whether to open ARRR GST Operator Agent. Choose Open/Allow.
Security
--------
The custom URL contains only a short-lived signed job token. GST username/password are redeemed by the local agent directly from ARRR ERP and are never inserted in ERP page HTML or in the custom URL. CAPTCHA/OTP remains manual.
Uninstall
- Run uninstall_gst_operator_agent.ps1 from the installed/downloaded package.
- The installer-created certificate is also removed from the current user's trusted root store.
---------
Run uninstall_gst_operator_agent.ps1. It removes the protocol registration and also cleans legacy v1.0.x localhost listener/startup/certificate state.