umami/src/pages/api/teams/[id]/websites/index.ts

65 lines
1.6 KiB
TypeScript
Raw Normal View History

2023-09-22 07:59:00 +00:00
import * as yup from 'yup';
2022-12-07 02:36:41 +00:00
import { canViewTeam } from 'lib/auth';
2023-08-20 05:23:15 +00:00
import { useAuth, useValidate } from 'lib/middleware';
import { NextApiRequestQueryBody, SearchFilter } from 'lib/types';
2023-09-22 07:59:00 +00:00
import { pageInfo } from 'lib/schema';
import { NextApiResponse } from 'next';
import { methodNotAllowed, ok, unauthorized } from 'next-basics';
2023-08-20 05:23:15 +00:00
import { getWebsitesByTeamId } from 'queries';
2023-08-10 20:26:33 +00:00
import { createTeamWebsites } from 'queries/admin/teamWebsite';
2022-11-18 08:27:42 +00:00
export interface TeamWebsiteRequestQuery extends SearchFilter {
2022-11-18 08:27:42 +00:00
id: string;
}
export interface TeamWebsiteRequestBody {
websiteIds?: string[];
2022-11-18 08:27:42 +00:00
}
2023-08-20 05:23:15 +00:00
const schema = {
GET: yup.object().shape({
id: yup.string().uuid().required(),
2023-09-22 07:59:00 +00:00
...pageInfo,
2023-08-20 05:23:15 +00:00
}),
POST: yup.object().shape({
id: yup.string().uuid().required(),
websiteIds: yup.array().of(yup.string()).min(1).required(),
}),
};
2022-11-18 08:27:42 +00:00
export default async (
req: NextApiRequestQueryBody<TeamWebsiteRequestQuery, TeamWebsiteRequestBody>,
res: NextApiResponse,
) => {
await useAuth(req, res);
2023-08-20 05:23:15 +00:00
req.yup = schema;
await useValidate(req, res);
2022-11-18 08:27:42 +00:00
const { id: teamId } = req.query;
if (req.method === 'GET') {
2023-01-25 15:42:46 +00:00
if (!(await canViewTeam(req.auth, teamId))) {
2022-11-20 08:48:13 +00:00
return unauthorized(res);
}
const websites = await getWebsitesByTeamId(teamId, { ...req.query });
2022-11-18 08:27:42 +00:00
2022-12-07 02:36:41 +00:00
return ok(res, websites);
2022-11-18 08:27:42 +00:00
}
if (req.method === 'POST') {
if (!(await canViewTeam(req.auth, teamId))) {
return unauthorized(res);
}
const { websiteIds } = req.body;
const websites = await createTeamWebsites(teamId, websiteIds);
return ok(res, websites);
}
2022-11-18 08:27:42 +00:00
return methodNotAllowed(res);
};