1
0
Fork 0
mirror of https://git.sr.ht/~roxwize/mipilin synced 2025-05-07 22:13:07 +00:00

uhhh yeah

Signed-off-by: roxwize <rae@roxwize.xyz>
This commit is contained in:
Rae 5e 2024-12-25 18:44:29 -05:00
parent 5abe0b5fad
commit afc634b0d2
Signed by: rae
GPG key ID: 5B1A0FAB9BAB81EE
43 changed files with 573 additions and 3792 deletions

View file

@ -1,13 +1,18 @@
import { NodePgDatabase } from "drizzle-orm/node-postgres";
import { Express } from "express";
import { createInviteCode, render } from "./util.js";
import { createInviteCode, render, UserStatus } from "./util.js";
import { inviteCodes, users } from "../db/schema.js";
import { desc, eq } from "drizzle-orm";
import { and, count, desc, eq, sql } from "drizzle-orm";
import dayjs from "dayjs";
const USER_REFERRAL_EXPIRATION = 7 * 24 * 60 * 60 * 1000
export default function (app: Express, db: NodePgDatabase) {
app.get("/mod", async (req, res) => {
if (!req.session["loggedIn"] || !req.session["moderator"]) {
if (
!req.session["loggedIn"] ||
!(req.session["status"] & UserStatus.MODERATOR)
) {
res.redirect("/");
return;
}
@ -15,7 +20,11 @@ export default function (app: Express, db: NodePgDatabase) {
const now = dayjs();
const codes = (
await db
.select({ expires: inviteCodes.expires, token: inviteCodes.token, uname: users.name })
.select({
expires: inviteCodes.expires,
token: inviteCodes.token,
uname: users.name
})
.from(inviteCodes)
.leftJoin(users, eq(inviteCodes.user, users.id))
.orderBy(desc(inviteCodes.granted))
@ -30,8 +39,11 @@ export default function (app: Express, db: NodePgDatabase) {
render(db, "admin", "Admin Panel", res, req, { codes });
});
app.post("/mod/codes/delete", async (req, res) => {
if (!req.session["loggedIn"] || !req.session["moderator"]) {
app.post("/codes/delete", async (req, res) => {
if (
!req.session["loggedIn"] ||
!(req.session["status"] & UserStatus.MODERATOR)
) {
res.redirect("/");
return;
}
@ -39,10 +51,38 @@ export default function (app: Express, db: NodePgDatabase) {
await db.delete(inviteCodes).where(eq(inviteCodes.token, req.body.token));
req.flash("success", "Deleted.");
res.redirect("/mod");
})
app.post("/mod/codes/create", async (req, res) => {
if (!req.session["loggedIn"] || !req.session["moderator"]) {
res.redirect("/");
});
app.post("/codes/create", async (req, res) => {
if (
!req.session["loggedIn"]
) {
res.redirect("/login");
return;
}
if (!(req.session["status"] & UserStatus.MODERATOR)) {
const { codesUsed } = (
await db
.select({ codesUsed: count() })
.from(inviteCodes)
.where(
and(
eq(inviteCodes.user, req.session["uid"]),
eq(
sql`extract(month from granted)`,
sql`extract(month from current_date)`
)
)
)
)[0];
if (codesUsed >= 5) {
req.flash("error", "You've generated the maximum of five codes this week. Your counter will reset next month.");
res.redirect("/dashboard");
return;
}
const code = await createInviteCode(db, req.session["uid"], new Date(Date.now() + USER_REFERRAL_EXPIRATION));
req.flash("success", `Your code has been created as <b>${code}</b>. It expires in a week so use it ASAP!!!`);
res.redirect("/dashboard");
return;
}

View file

@ -51,7 +51,7 @@ export default function(app: Express, db: NodePgDatabase) {
}
// invite code checking
const code = (await db.select({ expires: inviteCodes.expires, confersModerator: inviteCodes.confersModerator }).from(inviteCodes).where(eq(inviteCodes.token, req.body.referral)).limit(1))[0];
const code = (await db.select({ expires: inviteCodes.expires, confers: inviteCodes.confers }).from(inviteCodes).where(eq(inviteCodes.token, req.body.referral)).limit(1))[0];
if (!code) {
req.flash("error", "Invalid invite code! Make sure you pasted it in correctly WITH the hyphens.");
res.redirect("/register");
@ -94,7 +94,7 @@ export default function(app: Express, db: NodePgDatabase) {
name: req.body.name,
email: req.body.email, //! Not actually validating this like at all???
pass: hash,
moderator: code.confersModerator,
status: code.confers,
registered: new Date(Date.now())
})
.returning({ uid: users.id })
@ -102,7 +102,7 @@ export default function(app: Express, db: NodePgDatabase) {
await db.insert(profiles).values({ user: uid });
req.session["loggedIn"] = true;
req.session["moderator"] = code.confersModerator;
req.session["status"] = code.confers;
req.session["user"] = req.body.name;
req.session["uid"] = uid;
req.flash(
@ -138,7 +138,7 @@ export default function(app: Express, db: NodePgDatabase) {
return;
}
req.session["loggedIn"] = true;
req.session["moderator"] = user.moderator;
req.session["status"] = user.status;
req.session["user"] = user.name;
req.session["uid"] = user.id;
req.flash("success", "You're logged in! Welcome back!!");

View file

@ -2,12 +2,13 @@ import { NodePgDatabase } from "drizzle-orm/node-postgres";
import { Express } from "express";
import {
follows,
inviteCodes,
journalEntries,
profiles,
updates,
users
} from "../db/schema.js";
import { and, desc, eq } from "drizzle-orm";
import { and, count, desc, eq, sql } from "drizzle-orm";
import dayjs from "dayjs";
import { getMoods, render } from "./util.js";
@ -72,12 +73,39 @@ export default async function (app: Express, db: NodePgDatabase) {
};
});
// user invite codes
const codes = (await db
.select({ token: inviteCodes.token, expires: inviteCodes.expires })
.from(inviteCodes)
.where(eq(inviteCodes.user, req.session["uid"]))).map((e) => {
return {
token: e.token,
expires: now.to(dayjs(e.expires || 0))
}
});
const { codesUsed } = (
await db
.select({ codesUsed: count() })
.from(inviteCodes)
.where(
and(
eq(inviteCodes.user, req.session["uid"]),
eq(
sql`extract(month from granted)`,
sql`extract(month from current_date)`
)
)
)
)[0];
render(db, "dashboard", "Dashboard", res, req, {
user,
moods,
moodsSorted,
moodHistory,
recentUpdates,
codes,
codesUsed,
feed: []
});
});
@ -120,6 +148,26 @@ export default async function (app: Express, db: NodePgDatabase) {
app.get("/journal", async (req, res) => {
render(db, "journal", "Journal", res, req);
});
app.get("/journal/:id", async (req, res) => {
const entry = (
await db
.select({
uname: users.name,
content: journalEntries.entry,
date: journalEntries.date
})
.from(journalEntries)
.where(eq(journalEntries.id, parseInt(req.params.id)))
.leftJoin(users, eq(journalEntries.user, users.id))
)[0];
if (!entry) {
//! TODO write a 404 page
res.statusCode = 404;
res.write("404 not found?? :(");
return;
}
render(db, "journal_view", "Journal Entry", res, req, { entry });
});
app.post("/update/journal", async (req, res) => {
if (!req.session["loggedIn"]) {
res.redirect("/login");
@ -141,21 +189,31 @@ export default async function (app: Express, db: NodePgDatabase) {
let id: number;
try {
// @ts-expect-error
const entry = await db.insert(journalEntries).values({
user: req.session["uid"],
moodChange,
visibility,
entry: req.body.description,
date: new Date(Date.now())
}).returning({ id: journalEntries.id });
const entry = await db
.insert(journalEntries)
// @ts-expect-error
.values({
user: req.session["uid"],
moodChange,
visibility,
entry: req.body.description,
date: new Date(Date.now())
})
.returning({ id: journalEntries.id });
id = entry[0].id;
} catch (err) {
req.flash("error", "Failed to create your entry. Try again later or send these logs to roxwize so she can know what's up:<br><br>"+err);
req.flash(
"error",
"Failed to create your entry. Try again later or send these logs to roxwize so she can know what's up:<br><br>" +
err
);
res.redirect("/journal");
return;
}
req.flash("success", `Your journal entry is now available as <a href="/journal/view?id=${id}">#${id}</a>!`);
req.flash(
"success",
`Your journal entry is now available as <a href="/journal/${id}">#${id}</a>!`
);
res.redirect("/journal");
});
}

View file

@ -2,7 +2,7 @@ import { NodePgDatabase } from "drizzle-orm/node-postgres";
import { Express } from "express";
import { follows, profiles, updates, users } from "../db/schema.js";
import { and, desc, eq } from "drizzle-orm";
import { getMoods, render } from "./util.js";
import { getMoods, render, UserStatus } from "./util.js";
import { PgColumn } from "drizzle-orm/pg-core";
import dayjs from "dayjs";
@ -88,13 +88,13 @@ export default async function (app: Express, db: NodePgDatabase) {
res.redirect("/login");
return;
}
const { uname, mod } = (
const { uname } = (
await db
.select({ uname: users.name, mod: users.moderator })
.select({ uname: users.name })
.from(users)
.where(eq(users.name, req.params.user))
)[0];
if ((uname || "") !== req.session["user"] && !mod) {
if ((uname || "") !== req.session["user"] && !(req.session["status"] & UserStatus.MODERATOR)) {
res.redirect("back");
return;
}

View file

@ -4,6 +4,12 @@ import { inviteCodes, updates } from "../db/schema.js";
import { count, desc, eq } from "drizzle-orm";
import fs from "node:fs/promises";
export enum UserStatus {
MODERATOR = 0b001,
BANNED = 0b010,
TRUSTED = 0b100
};
const nonceChars =
"ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz1234567890-_";
let nonce: string;
@ -64,7 +70,7 @@ export async function render(
}
const inviteCodeChars = "abcdefghijklmnopqrstuvwxyz0123456789"
export async function createInviteCode(db: NodePgDatabase, user: number, expires: Date, confersModerator = false) {
export async function createInviteCode(db: NodePgDatabase, user: number, expires: Date, confers = 0) {
let existingToken = 1, token: string;
while (existingToken) {
token = user.toString().padStart(4, "0") + "-"
@ -84,7 +90,7 @@ export async function createInviteCode(db: NodePgDatabase, user: number, expires
user: user || undefined,
granted: new Date(Date.now()),
expires,
confersModerator
confers
});
return token;
}