mirror of
https://github.com/roleypoly/roleypoly.git
synced 2025-04-25 03:49:11 +00:00
* miniflare init * feat(api): add tests * chore: more tests, almost 100% * add sessions/state spec * add majority of routes and datapaths, start on interactions * nevermind, no interactions * nevermind x2, tweetnacl is bad but SubtleCrypto has what we need apparently * simplify interactions verify * add brute force interactions tests * every primary path API route is refactored! * automatically import from legacy, or die trying. * check that we only fetch legacy once, ever * remove old-src, same some historic pieces * remove interactions & worker-utils package, update misc/types * update some packages we don't need specific pinning for anymore * update web references to API routes since they all changed * fix all linting issues, upgrade most packages * fix tests, divorce enzyme where-ever possible * update web, fix integration issues * pre-build api * fix tests * move api pretest to api package.json instead of CI * remove interactions from terraform, fix deploy side configs * update to tf 1.1.4 * prevent double writes to worker in GCS, port to newer GCP auth workflow * fix api.tf var refs, upgrade node action * change to curl-based script upload for worker script due to terraform provider limitations * oh no, cloudflare freaked out :(
47 lines
1.3 KiB
TypeScript
47 lines
1.3 KiB
TypeScript
import { Context, RoleypolyMiddleware } from '@roleypoly/api/src/utils/context';
|
|
import {
|
|
engineeringProblem,
|
|
forbidden,
|
|
notFound,
|
|
} from '@roleypoly/api/src/utils/response';
|
|
import { UserGuildPermissions } from '@roleypoly/types';
|
|
|
|
export const requireEditor: RoleypolyMiddleware = async (
|
|
request: Request,
|
|
context: Context
|
|
) => {
|
|
if (!context.params.guildId) {
|
|
return engineeringProblem('params not set up correctly');
|
|
}
|
|
|
|
if (!context.session) {
|
|
return engineeringProblem('middleware not set up correctly');
|
|
}
|
|
|
|
const guild = context.session.guilds.find((g) => g.id === context.params.guildId);
|
|
if (!guild) {
|
|
return notFound(); // 404 because we don't want enumeration of guilds
|
|
}
|
|
|
|
if (guild.permissionLevel === UserGuildPermissions.User) {
|
|
return forbidden();
|
|
}
|
|
};
|
|
|
|
export const requireMember: RoleypolyMiddleware = async (
|
|
request: Request,
|
|
context: Context
|
|
) => {
|
|
if (!context.params.guildId) {
|
|
return engineeringProblem('params not set up correctly');
|
|
}
|
|
|
|
if (!context.session) {
|
|
return engineeringProblem('middleware not set up correctly');
|
|
}
|
|
|
|
const guild = context.session.guilds.find((g) => g.id === context.params.guildId);
|
|
if (!guild) {
|
|
return notFound(); // 404 because we don't want enumeration of guilds
|
|
}
|
|
};
|