thread.js 3.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140
  1. let express = require('express')
  2. let router = express.Router()
  3. const Errors = require('../lib/errors.js')
  4. let { User, Thread, Category, Post, Ban, Report, Sequelize } = require('../models')
  5. let pagination = require('../lib/pagination.js')
  6. router.get('/:thread_id', async (req, res, next) => {
  7. try {
  8. let { from, limit } = pagination.getPaginationProps(req.query)
  9. let thread = await Thread.findById(req.params.thread_id, {
  10. include: Thread.includeOptions(from, limit)
  11. })
  12. if(!thread) throw Errors.invalidParameter('id', 'thread does not exist')
  13. let meta = thread.getMeta(limit)
  14. res.json(Object.assign( thread.toJSON(), { meta } ))
  15. } catch (e) { next(e) }
  16. })
  17. //Only logged in routes
  18. router.all('*', (req, res, next) => {
  19. if(req.session.loggedIn) {
  20. next()
  21. } else {
  22. res.status(401)
  23. res.json({
  24. errors: [Errors.requestNotAuthorized]
  25. })
  26. }
  27. })
  28. router.post('/', async (req, res, next) => {
  29. let validationErrors = []
  30. try {
  31. await Ban.canCreateThreads(req.session.username)
  32. let category = await Category.findOne({ where: {
  33. value: req.body.category
  34. }})
  35. if(!category) throw Errors.invalidCategory
  36. let user = await User.findOne({ where: {
  37. username: req.session.username
  38. }})
  39. let thread = await Thread.create({
  40. name: req.body.name
  41. })
  42. await thread.setCategory(category)
  43. await thread.setUser(user)
  44. res.json(await thread.reload({
  45. include: [
  46. { model: User, attributes: ['username', 'createdAt', 'updatedAt', 'id'] },
  47. Category
  48. ]
  49. }))
  50. req.app.get('io').to('index').emit('new thread', {
  51. name: category.name,
  52. value: category.value
  53. })
  54. } catch (e) { next(e) }
  55. })
  56. //Only admin routes
  57. router.all('*', (req, res, next) => {
  58. if(req.session.admin) {
  59. next()
  60. } else {
  61. res.status(401)
  62. res.json({
  63. errors: [Errors.requestNotAuthorized]
  64. })
  65. }
  66. })
  67. router.delete('/:thread_id', async (req, res, next) => {
  68. try {
  69. let thread = await Thread.findById(req.params.thread_id)
  70. if(!thread) {
  71. throw Errors.sequelizeValidation(Sequelize, {
  72. error: 'invalid thread id',
  73. value: req.params.thread_id
  74. })
  75. } else {
  76. //Find all posts with reports and get reports
  77. //Then delete those reports
  78. //Temporary fix because cascade is not working
  79. let posts = await Post.findAll({
  80. where: {
  81. ThreadId: thread.id
  82. },
  83. include: [Report]
  84. })
  85. let reports = posts
  86. .map(post => post.Reports)
  87. .reduce((a, b) => a.concat(b), [])
  88. let destroyPromises = reports.map(report => report.destroy())
  89. await Promise.all(destroyPromises)
  90. await Post.destroy({ where: { ThreadId: thread.id } })
  91. await thread.destroy()
  92. res.json({ success: true })
  93. }
  94. } catch (e) { next(e) }
  95. })
  96. router.put('/:thread_id', async (req, res, next) => {
  97. try {
  98. let thread = await Thread.findById(req.params.thread_id)
  99. if(!thread) {
  100. res.status(400)
  101. res.json({ errors:
  102. [Errors.invalidParameter('threadId', 'thread does not exist')]
  103. })
  104. } else {
  105. if(req.body.locked) {
  106. await thread.update({ locked: true })
  107. } else {
  108. await thread.update({ locked: false })
  109. }
  110. res.json({ success: true })
  111. }
  112. } catch (e) { next(e) }
  113. })
  114. module.exports = router