Files
api.pawol.nu/src/api/commentaire/controllers/commentaire.js
T

64 lines
1.7 KiB
JavaScript
Raw Normal View History

2022-05-12 03:22:15 +04:00
'use strict';
2022-05-12 03:03:19 +04:00
const { createCoreController } = require('@strapi/strapi').factories;
const { ApplicationError, NotFoundError, UnauthorizedError } = require("@strapi/utils").errors
2022-05-12 03:03:19 +04:00
2022-05-20 00:06:15 +04:00
module.exports = createCoreController('api::commentaire.commentaire', ({strapi}) => ({
async create(ctx) {
const {body} = ctx.request
let {data} = body
if (ctx.request && ctx.request.header && ctx.request.header.authorization) {
try {
const {id} = await strapi.plugins[
'users-permissions'
].services.jwt.getToken(ctx)
if (id !== data.user.id) {
throw new UnauthorizedError('Opération non autorisée')
}
} catch (err) {
throw new UnauthorizedError(ctx, err, 'Opération non autorisée')
}
}
2026-04-21 21:35:59 +04:00
const user = await strapi.documents('plugin::users-permissions.user').findOne({
documentId: "__TODO__"
})
2022-05-20 00:06:15 +04:00
if (!user) {
throw new NotFoundError('Utilisateur introuvable.')
}
if (user.id !== data.user.id || user.username !== data.user.username || user.email !== data.user.email) {
throw new ApplicationError('Informations non valides.')
2022-05-20 00:06:15 +04:00
}
data.user = user.id
2026-04-21 21:35:59 +04:00
const parole = await strapi.documents('api::parole.parole').findOne({
documentId: "__TODO__",
2022-05-20 00:06:15 +04:00
fields: ['id']
})
if (!parole) {
throw new NotFoundError('Texte introuvable.')
}
2026-04-21 21:35:59 +04:00
const newCommentaire = await strapi.documents('api::commentaire.commentaire').create({
2022-05-20 00:06:15 +04:00
data: {
...data
}
})
2026-04-21 21:35:59 +04:00
await strapi.documents('api::parole.parole').update({
documentId: "__TODO__",
2022-05-20 00:06:15 +04:00
data: {
commentaires: [newCommentaire.id]
}
})
return newCommentaire;
}
}))