Database overview
One DynamoDB table stores credentials, source summaries, minute trends, request budgets and legacy key-value memory. The authenticated Google owner scopes data independently of individual read/write tokens.
Reads use primary keys and prefix/range queries. No secondary index or table scan is needed. The storage adapter implements conditional transactions; domain and application code do not import the DynamoDB SDK.
Latest state and minute aggregation commit together. A failed or conflicting write cannot leave one updated without the other. Public token lists exclude hashes and owner keys. Data responses exclude storage keys and revisions.
Minute summaries expire after 24 hours. Reads explicitly reject expired rows while service-managed TTL deletion is pending. Latest state and token metadata remain until explicitly changed; source freshness uses its last accepted server receipt time.
See schema, entities and access patterns, monitoring contract, and Terraform setup (maintainer repository access required).