umami/src/pages/api/teams/[id]/websites/[websiteId].ts

42 lines
1 KiB
TypeScript
Raw Normal View History

import { canDeleteTeamWebsite } from 'lib/auth';
2023-08-20 05:23:15 +00:00
import { useAuth, useValidate } from 'lib/middleware';
import { NextApiRequestQueryBody } from 'lib/types';
import { NextApiResponse } from 'next';
import { methodNotAllowed, ok, unauthorized } from 'next-basics';
2023-08-20 05:23:15 +00:00
import * as yup from 'yup';
2024-01-26 07:47:11 +00:00
import { deleteWebsite } from 'queries/admin/website';
2023-04-09 23:04:28 +00:00
export interface TeamWebsitesRequestQuery {
id: string;
2023-04-09 23:04:28 +00:00
websiteId: string;
}
2023-08-20 05:23:15 +00:00
const schema = {
DELETE: yup.object().shape({
id: yup.string().uuid().required(),
websiteId: yup.string().uuid().required(),
}),
};
export default async (
2023-04-09 23:04:28 +00:00
req: NextApiRequestQueryBody<TeamWebsitesRequestQuery>,
res: NextApiResponse,
) => {
await useAuth(req, res);
2023-09-30 03:24:48 +00:00
await useValidate(schema, req, res);
2023-08-20 05:23:15 +00:00
2023-04-09 23:04:28 +00:00
const { id: teamId, websiteId } = req.query;
if (req.method === 'DELETE') {
2023-04-09 23:04:28 +00:00
if (!(await canDeleteTeamWebsite(req.auth, teamId, websiteId))) {
return unauthorized(res);
}
2024-01-26 07:47:11 +00:00
await deleteWebsite(websiteId);
2023-04-14 03:33:21 +00:00
return ok(res);
}
return methodNotAllowed(res);
};