mirror of
https://github.com/HabitRPG/habitica.git
synced 2025-12-16 22:27:26 +01:00
commit3aba0abeddAuthor: SabreCat <sabe@habitica.com> Date: Mon Oct 2 20:51:20 2023 -0500 fix(router): use state to pass modal launch info commit541eadd319Merge:c0bb56c8c289fff49d02Author: SabreCat <sabe@habitica.com> Date: Mon Oct 2 20:12:40 2023 -0500 Merge branch 'release' into report-profile-modal commitc0bb56c8c2Author: SabreCat <sabe@habitica.com> Date: Wed Sep 27 16:15:28 2023 -0500 test(profiles): add integrations commit9b644e9ad8Author: SabreCat <sabe@habitica.com> Date: Tue Sep 26 17:17:22 2023 -0500 fix(profile): adjust margin commitbfefe5dfa9Author: SabreCat <sabe@habitica.com> Date: Tue Sep 26 17:12:24 2023 -0500 fix(profiles): moar layout fixes commit8f211ee3e2Author: SabreCat <sabe@habitica.com> Date: Mon Sep 25 17:32:04 2023 -0500 fix(profile): fix admin actions Correct "user is banned" banner Fix bouncing modal Add "Days" smart plural Fix leaky CSS on Market page Refactor some redundant functions commitb1d23ec88bMerge:ee9709a9e1a63cc84779Author: SabreCat <sabe@habitica.com> Date: Mon Sep 25 15:37:54 2023 -0500 Merge branch 'release' into report-profile-modal commitee9709a9e1Author: CuriousMagpie <eilatan@gmail.com> Date: Mon Sep 18 16:30:30 2023 -0400 WIP(profile): add banned banner, toggle switches now toggle, add "days" to Next Login Reward commitf80928a895Author: CuriousMagpie <eilatan@gmail.com> Date: Mon Sep 18 13:43:34 2023 -0400 update(node): update node modules commit1d552f7e80Author: SabreCat <sabe@habitica.com> Date: Fri Sep 15 16:52:22 2023 -0500 fix(import): remove empty import commitf55d74a95dAuthor: SabreCat <sabe@habitica.com> Date: Fri Sep 15 16:39:50 2023 -0500 refactor(profiles): remove email feature also still more visual cleanup of profile modal commit311c743284Author: SabreCat <sabe@habitica.com> Date: Fri Sep 15 15:44:56 2023 -0500 refactor(profile): remove page view commitf8632bf50dMerge:ec85159c659e25360102Author: SabreCat <sabe@habitica.com> Date: Fri Sep 15 15:23:21 2023 -0500 Merge branch 'release' into report-profile-modal commitec85159c65Author: SabreCat <sabe@habitica.com> Date: Mon Sep 11 22:53:14 2023 -0500 feat(profiles): load modal instead of page? commit9986082914Author: CuriousMagpie <eilatan@gmail.com> Date: Fri Sep 8 14:49:57 2023 -0400 WIP(profile): fixed a comment, woohoo commit6262a9ba0cMerge:ae2b614df2ea2b007b1aAuthor: CuriousMagpie <eilatan@gmail.com> Date: Fri Sep 8 13:40:23 2023 -0400 Merge remote-tracking branch 'origin/report-profile-modal' into report-profile-modal commitea2b007b1aAuthor: SabreCat <sabe@habitica.com> Date: Thu Sep 7 16:54:19 2023 -0500 fix(profile): focus behavior commitae2b614df2Author: CuriousMagpie <eilatan@gmail.com> Date: Thu Sep 7 17:47:08 2023 -0400 WIP(profile): styling updates commit2e0723f1b9Author: SabreCat <sabe@habitica.com> Date: Thu Sep 7 15:37:59 2023 -0500 feat(moderation): unflag profile Also a few stylistic tweaks commitedcf8113deAuthor: SabreCat <sabe@habitica.com> Date: Wed Sep 6 16:39:02 2023 -0500 WIP(profile): dropdown draft commit0691483d63Author: CuriousMagpie <eilatan@gmail.com> Date: Wed Sep 6 16:33:30 2023 -0400 WIP(profile): Styling and string updates commit7e9d57d10aAuthor: SabreCat <sabe@habitica.com> Date: Wed Sep 6 11:40:31 2023 -0500 feat(profile): functional dropdown buttons commita2989b2833Merge:af6575e40ce072d7c09cAuthor: SabreCat <sabe@habitica.com> Date: Wed Sep 6 10:04:57 2023 -0500 Merge branch 'release' into report-profile-modal commitaf6575e40cAuthor: CuriousMagpie <eilatan@gmail.com> Date: Wed Sep 6 11:01:05 2023 -0400 WIP(profile): comment cleanup commit7b1de37202Author: CuriousMagpie <eilatan@gmail.com> Date: Tue Sep 5 17:22:14 2023 -0400 WIP(profile): remove shadowban tooltip commitd1177c32b9Merge:321a01b08131f821021bAuthor: CuriousMagpie <eilatan@gmail.com> Date: Tue Sep 5 17:02:40 2023 -0400 Merge branch 'sabrecat/report-profile' into report-profile-modal commit321a01b081Author: CuriousMagpie <eilatan@gmail.com> Date: Fri Sep 1 16:14:36 2023 -0400 WIP(profile): close button finally workinating commite143d36d28Author: CuriousMagpie <eilatan@gmail.com> Date: Fri Sep 1 15:52:38 2023 -0400 WIP(profile): close icon moved to profile.vue commit31f821021bMerge:a8f5e25d388957c5c009Author: SabreCat <sabe@habitica.com> Date: Fri Sep 1 14:52:31 2023 -0500 Merge branch 'report-profile-modal' into sabrecat/report-profile commit8957c5c009Merge:d340f06a220aec3866a4Author: CuriousMagpie <eilatan@gmail.com> Date: Fri Sep 1 15:38:12 2023 -0400 Merge remote-tracking branch 'origin/report-profile-modal' into report-profile-modal commitd340f06a22Author: CuriousMagpie <eilatan@gmail.com> Date: Fri Sep 1 15:37:57 2023 -0400 WIP(profile): fixed user not found error commit0aec3866a4Merge:b01f323b14ac7c8e0eb6Author: Natalie <78037386+CuriousMagpie@users.noreply.github.com> Date: Fri Sep 1 15:28:58 2023 -0400 Merge branch 'HabitRPG:develop' into report-profile-modal commita8f5e25d38Author: SabreCat <sabe@habitica.com> Date: Thu Aug 31 17:02:07 2023 -0500 feat(community): basic "report profile" commitb01f323b14Author: CuriousMagpie <eilatan@gmail.com> Date: Thu Aug 31 17:42:12 2023 -0400 WIP(profile): removed refactoring crud, located where close icon should be (profileModal.vue) commitce7d51a20cMerge:010f2299f0ac7c8e0eb6Author: SabreCat <sabe@habitica.com> Date: Thu Aug 31 14:20:37 2023 -0500 Merge branch 'release' into sabrecat/report-profile commit18b41acd94Author: CuriousMagpie <eilatan@gmail.com> Date: Thu Aug 31 12:23:41 2023 -0400 WIP(profile): moar buttonz commit9387b3a6bcAuthor: CuriousMagpie <eilatan@gmail.com> Date: Wed Aug 30 17:21:36 2023 -0400 WIP(profile): buttons commitb3ea48c4f5Author: CuriousMagpie <eilatan@gmail.com> Date: Fri Aug 25 15:52:41 2023 -0400 WIP(profile): work on achievement component commita1ceb2ea75Author: CuriousMagpie <eilatan@gmail.com> Date: Fri Aug 25 14:39:12 2023 -0400 WIP(profile): create achievements component commit4a24d9b80bMerge:8fe263a3771e05297e96Author: CuriousMagpie <eilatan@gmail.com> Date: Wed Aug 23 13:14:39 2023 -0400 Merge branch 'develop' into report-profile-modal commit1e05297e96Author: CuriousMagpie <eilatan@gmail.com> Date: Wed Aug 23 13:12:52 2023 -0400 package updates commit8fe263a377Author: CuriousMagpie <eilatan@gmail.com> Date: Wed Aug 23 12:12:36 2023 -0400 update(dependencies): ran npm install to update dependencies commit190fe048a1Merge:3ea48ab5cbfa83d1a9cfAuthor: CuriousMagpie <eilatan@gmail.com> Date: Wed Aug 23 11:52:08 2023 -0400 Merge branch 'develop' into report-profile-modal commit3ea48ab5cbAuthor: CuriousMagpie <eilatan@gmail.com> Date: Fri Aug 11 17:12:31 2023 -0400 WIP(user profile): dropdown menu and toggles and colors oh my commitc301a2b460Merge:1da6af11b5647b27c55fAuthor: CuriousMagpie <eilatan@gmail.com> Date: Fri Aug 11 12:40:07 2023 -0400 Merge branch 'develop' into report-profile-modal commit1da6af11b5Author: CuriousMagpie <eilatan@gmail.com> Date: Thu Aug 10 16:50:07 2023 -0400 WIP(user profile): moved some CSS classes out of unscoped and into the scoped section, started on toggle buttons commitdd55cbc928Author: CuriousMagpie <eilatan@gmail.com> Date: Wed Aug 9 15:38:46 2023 -0400 WIP(user profile): workin on the hamburger (kebab?) menu commit3834093207Author: CuriousMagpie <eilatan@gmail.com> Date: Tue Aug 8 14:14:40 2023 -0400 WIP(user profiles): working on the drop down menu commitf2be588195Author: CuriousMagpie <eilatan@gmail.com> Date: Mon Aug 7 16:10:30 2023 -0400 WIP(user profile): options menu commit010f2299f0Author: SabreCat <sabe@habitica.com> Date: Mon Aug 7 11:49:04 2023 -0500 fix(lint): eof and const commit4551dbf4b3Author: CuriousMagpie <eilatan@gmail.com> Date: Fri Aug 4 15:34:05 2023 -0400 WIP(user profile): styling the top portion of the modal commit19a9fe3644Author: CuriousMagpie <eilatan@gmail.com> Date: Thu Aug 3 15:06:51 2023 -0400 WIP(user profile): adding buttons commitdfdb305b1cAuthor: CuriousMagpie <eilatan@gmail.com> Date: Wed Aug 2 14:41:20 2023 -0400 WIP(user profile): layout commitded4eee693Author: CuriousMagpie <eilatan@gmail.com> Date: Wed Aug 2 12:04:02 2023 -0400 WIP(user profile): start flex grid & tidy up CSS commitaaca48be32Author: CuriousMagpie <eilatan@gmail.com> Date: Fri Jul 28 16:44:06 2023 -0400 WIP(user profile): mostly css updates commite531985b87Author: CuriousMagpie <eilatan@gmail.com> Date: Thu Jul 27 16:49:44 2023 -0400 WIP(user profile): one infinitesimal change that's hardly worth the electricity it's made from commiteb4021fcc7Author: CuriousMagpie <eilatan@gmail.com> Date: Wed Jul 26 16:33:05 2023 -0400 feat(content): upgrade profile page commit1b25394f3eMerge:c50cee0d888558dcc3a8Author: CuriousMagpie <eilatan@gmail.com> Date: Wed Jul 26 11:50:12 2023 -0400 Merge branch 'develop' into report-profile-modal commitc50cee0d88Author: SabreCat <sabe@habitica.com> Date: Wed Jul 12 16:32:25 2023 -0500 fix(flagging): debug params issue Also add and document the "source" body param commit55848c58beAuthor: SabreCat <sabe@habitica.com> Date: Mon Jul 10 16:24:20 2023 -0500 WIP(members): basic report a user API commitdda6180792Author: SabreCat <sabe@habitica.com> Date: Thu Jul 6 10:05:07 2023 -0500 fix(lint): remove console.info
430 lines
13 KiB
JavaScript
430 lines
13 KiB
JavaScript
import _ from 'lodash';
|
|
import validator from 'validator';
|
|
import { authWithHeaders } from '../../middlewares/auth';
|
|
import { ensurePermission } from '../../middlewares/ensureAccessRight';
|
|
import { model as User } from '../../models/user';
|
|
import { model as Group } from '../../models/group';
|
|
import common from '../../../common';
|
|
import {
|
|
NotFound,
|
|
} from '../../libs/errors';
|
|
import apiError from '../../libs/apiError';
|
|
import {
|
|
validateItemPath,
|
|
castItemVal,
|
|
} from '../../libs/items/utils';
|
|
|
|
const api = {};
|
|
|
|
/**
|
|
* @api {get} /api/v3/hall/patrons Get all patrons
|
|
* @apiDescription Returns an array of objects containing the patrons who backed Habitica's
|
|
* original kickstarter. The array is sorted by the backer tier in descending order.
|
|
* By default, only the first 50 patrons are returned. More can be accessed by passing ?page=n
|
|
* @apiName GetPatrons
|
|
* @apiGroup Hall
|
|
*
|
|
* @apiParam (Query) {Number} [page=0] The result page.
|
|
* @apiSuccess {Array} data An array of patrons
|
|
*
|
|
* @apiSuccessExample {json} Example response
|
|
* {
|
|
* "success": true,
|
|
* "data": [
|
|
* {
|
|
* "_id": "3adb52a9-0dfb-4752-81f2-a62d911d1bf5",
|
|
* "profile": {
|
|
* "name": "mattboch"
|
|
* },
|
|
* "contributor": {},
|
|
* "backer": {
|
|
* "tier": 800,
|
|
* "npc": "Beast Master"
|
|
* }
|
|
* },
|
|
* {
|
|
* "_id": "9da65443-ed43-4c21-804f-d260c1361596",
|
|
* "profile": {
|
|
* "name": "ʎǝlᴉɐq s,┴I"
|
|
* },
|
|
* "contributor": {
|
|
* "text": "Pollen Purveyor",
|
|
* "admin": true,
|
|
* "level": 8
|
|
* },
|
|
* "backer": {
|
|
* "npc": "Town Crier",
|
|
* "tier": 800,
|
|
* "tokensApplied": true
|
|
* }
|
|
* }
|
|
* ]
|
|
* }
|
|
*
|
|
*
|
|
* @apiUse NoAuthHeaders
|
|
* @apiUse NoAccount
|
|
*/
|
|
api.getPatrons = {
|
|
method: 'GET',
|
|
url: '/hall/patrons',
|
|
middlewares: [authWithHeaders()],
|
|
async handler (req, res) {
|
|
req.checkQuery('page').optional().isInt({ min: 0 }, apiError('queryPageInteger'));
|
|
|
|
const validationErrors = req.validationErrors();
|
|
if (validationErrors) throw validationErrors;
|
|
|
|
const page = req.query.page ? Number(req.query.page) : 0;
|
|
const perPage = 50;
|
|
|
|
const patrons = await User
|
|
.find({
|
|
'backer.tier': { $gt: 0 },
|
|
})
|
|
.select('contributor backer profile.name')
|
|
.sort('-backer.tier')
|
|
.skip(page * perPage)
|
|
.limit(perPage)
|
|
.lean()
|
|
.exec();
|
|
|
|
res.respond(200, patrons);
|
|
},
|
|
};
|
|
|
|
/**
|
|
* @api {get} /api/v3/hall/heroes Get all Heroes (contributors)
|
|
* @apiName GetHeroes
|
|
* @apiGroup Hall
|
|
*
|
|
* @apiDescription Returns an array of objects containing the heroes who have
|
|
* contributed for Habitica. The array is sorted by the contribution level in descending order.
|
|
*
|
|
* @apiSuccess {Array} heroes An array of heroes
|
|
*
|
|
* @apiSuccessExample {json} Example response:
|
|
* {
|
|
* "success": true,
|
|
* "data": [
|
|
* {
|
|
* "_id": "e6e01d2a-c2fa-4b9f-9c0f-7865b777e7b5",
|
|
* "profile": {
|
|
* "name": "test2"
|
|
* },
|
|
* "contributor": {
|
|
* "admin": false,
|
|
* "level": 2,
|
|
* "text": "Linguist"
|
|
* },
|
|
* "backer": {}
|
|
* }
|
|
* ]
|
|
* }
|
|
*
|
|
* @apiUse NoAuthHeaders
|
|
* @apiUse NoAccount
|
|
*/
|
|
api.getHeroes = {
|
|
method: 'GET',
|
|
url: '/hall/heroes',
|
|
middlewares: [authWithHeaders()],
|
|
async handler (req, res) {
|
|
const heroes = await User
|
|
.find({
|
|
'contributor.level': { $gt: 0 },
|
|
})
|
|
.select('contributor backer profile.name')
|
|
.sort('-contributor.level')
|
|
.lean()
|
|
.exec();
|
|
|
|
res.respond(200, heroes);
|
|
},
|
|
};
|
|
|
|
// Note, while the following routes are called getHero / updateHero
|
|
// they can be used by admins to get/update any user
|
|
|
|
const heroAdminFields = 'auth balance contributor flags items lastCron party preferences profile purchased secret permissions';
|
|
const heroAdminFieldsToFetch = heroAdminFields; // these variables will make more sense when...
|
|
const heroAdminFieldsToShow = heroAdminFields; // ... apiTokenObscured is added
|
|
|
|
const heroPartyAdminFields = 'balance challengeCount leader leaderOnly memberCount purchased quest';
|
|
// must never include Party name, description, summary, leaderMessage
|
|
|
|
/**
|
|
* @api {get} /api/v3/hall/heroes/:heroId Get any user ("hero") given the UUID or Username
|
|
* @apiParam (Path) {UUID} heroId user ID
|
|
* @apiName GetHero
|
|
* @apiGroup Hall
|
|
* @apiPermission Admin
|
|
*
|
|
* @apiDescription Returns various data about the user. User does not need to be a contributor.
|
|
*
|
|
* @apiSuccess {Object} data The user object
|
|
*
|
|
* @apiUse NoAuthHeaders
|
|
* @apiUse NoAccount
|
|
* @apiUse NoUser
|
|
* @apiUse NotAdmin
|
|
*/
|
|
api.getHero = {
|
|
method: 'GET',
|
|
url: '/hall/heroes/:heroId',
|
|
middlewares: [authWithHeaders(), ensurePermission('userSupport')],
|
|
async handler (req, res) {
|
|
req.checkParams('heroId', res.t('heroIdRequired')).notEmpty();
|
|
|
|
const validationErrors = req.validationErrors();
|
|
if (validationErrors) throw validationErrors;
|
|
|
|
const { heroId } = req.params;
|
|
|
|
let query;
|
|
if (validator.isUUID(heroId)) {
|
|
query = { _id: heroId };
|
|
} else {
|
|
query = { 'auth.local.lowerCaseUsername': heroId.toLowerCase() };
|
|
}
|
|
|
|
const hero = await User
|
|
.findOne(query)
|
|
.select(heroAdminFieldsToFetch)
|
|
.exec();
|
|
|
|
if (!hero) throw new NotFound(res.t('userWithIDNotFound', { userId: heroId }));
|
|
const heroRes = hero.toJSON({ minimize: true });
|
|
// supply to the possible absence of hero.contributor
|
|
// if we didn't pass minimize: true it would have returned all fields as empty
|
|
if (!heroRes.contributor) heroRes.contributor = {};
|
|
|
|
heroRes.secret = hero.getSecretData();
|
|
heroRes.profile.flags = hero.getFlagData();
|
|
|
|
res.respond(200, heroRes);
|
|
},
|
|
};
|
|
|
|
// e.g., tier 5 gives 4 gems. Tier 8 = moderator. Tier 9 = staff
|
|
const gemsPerTier = {
|
|
1: 3, 2: 3, 3: 3, 4: 4, 5: 4, 6: 4, 7: 4, 8: 0, 9: 0,
|
|
};
|
|
|
|
/**
|
|
* @api {put} /api/v3/hall/heroes/:heroId Update any user ("hero")
|
|
* @apiParam (Path) {UUID} heroId User ID
|
|
* @apiName UpdateHero
|
|
* @apiGroup Hall
|
|
* @apiPermission Admin
|
|
*
|
|
* @apiDescription Update various details in the user's User document,
|
|
* including but not limited to privileges, gems, contributions, items.
|
|
*
|
|
* @apiExample Example Body:
|
|
* {
|
|
* "balance": 1000,
|
|
* "auth": {"blocked": false},
|
|
* "flags": {
|
|
* "chatRevoked": true,
|
|
* "chatShadowMuted": true
|
|
* },
|
|
* "purchased": {"ads": true},
|
|
* "contributor": {
|
|
* "admin": true,
|
|
* "newsPoster": false,
|
|
* "contributions": "Improving API documentation",
|
|
* "level": 5,
|
|
* "text": "Scribe, Blacksmith"
|
|
* },
|
|
* "secret": {
|
|
* "text": "child with permission to use site",
|
|
* },
|
|
* "itemPath": "items.pets.BearCub-Skeleton",
|
|
* "itemVal": 5,
|
|
* "changeApiToken": true,
|
|
* }
|
|
*
|
|
* @apiSuccess {Object} data The updated user object
|
|
*
|
|
* @apiUse NoAuthHeaders
|
|
* @apiUse NoAccount
|
|
* @apiUse NoUser
|
|
* @apiUse NotAdmin
|
|
*/
|
|
api.updateHero = {
|
|
method: 'PUT',
|
|
url: '/hall/heroes/:heroId',
|
|
middlewares: [authWithHeaders(), ensurePermission('userSupport')],
|
|
async handler (req, res) {
|
|
const { heroId } = req.params;
|
|
const updateData = req.body;
|
|
|
|
req.checkParams('heroId', res.t('heroIdRequired')).notEmpty().isUUID();
|
|
|
|
const validationErrors = req.validationErrors();
|
|
if (validationErrors) throw validationErrors;
|
|
|
|
const hero = await User.findById(heroId).exec();
|
|
if (!hero) throw new NotFound(res.t('userWithIDNotFound', { userId: heroId }));
|
|
|
|
if (updateData.balance && updateData.balance !== hero.balance) {
|
|
await hero.updateBalance(updateData.balance - hero.balance, 'admin_update_balance', '', 'Given by Habitica staff');
|
|
|
|
hero.balance = updateData.balance;
|
|
}
|
|
|
|
if (updateData.purchased && updateData.purchased.plan) {
|
|
if (updateData.purchased.plan.gemsBought) {
|
|
hero.purchased.plan.gemsBought = updateData.purchased.plan.gemsBought;
|
|
}
|
|
if (updateData.purchased.plan.perkMonthCount) {
|
|
hero.purchased.plan.perkMonthCount = updateData.purchased.plan.perkMonthCount;
|
|
}
|
|
if (updateData.purchased.plan.consecutive) {
|
|
if (updateData.purchased.plan.consecutive.trinkets) {
|
|
const changedHourglassTrinkets = updateData.purchased.plan.consecutive.trinkets
|
|
- hero.purchased.plan.consecutive.trinkets;
|
|
|
|
if (changedHourglassTrinkets !== 0) {
|
|
await hero.updateHourglasses(
|
|
changedHourglassTrinkets,
|
|
'admin_update_hourglasses', '', 'Updated by Habitica staff',
|
|
);
|
|
}
|
|
|
|
hero.purchased.plan.consecutive.trinkets = updateData.purchased.plan.consecutive.trinkets;
|
|
}
|
|
if (updateData.purchased.plan.consecutive.gemCapExtra) {
|
|
hero.purchased.plan.consecutive.gemCapExtra = updateData.purchased.plan.consecutive.gemCapExtra; // eslint-disable-line max-len
|
|
}
|
|
if (updateData.purchased.plan.consecutive.count) {
|
|
hero.purchased.plan.consecutive.count = updateData.purchased.plan.consecutive.count; // eslint-disable-line max-len
|
|
}
|
|
}
|
|
}
|
|
|
|
// give them gems if they got an higher level
|
|
// tier = level in this context
|
|
let newTier = updateData.contributor && updateData.contributor.level;
|
|
|
|
const oldTier = (hero.contributor && hero.contributor.level) || 0;
|
|
if (newTier > oldTier) {
|
|
hero.flags.contributor = true;
|
|
let tierDiff = newTier - oldTier; // can be 2+ tier increases at once
|
|
while (tierDiff) {
|
|
await hero.updateBalance(gemsPerTier[newTier] / 4, 'contribution', newTier); // eslint-disable-line no-await-in-loop
|
|
tierDiff -= 1;
|
|
newTier -= 1; // give them gems for the next tier down if they weren't already that tier
|
|
}
|
|
|
|
hero.addNotification('NEW_CONTRIBUTOR_LEVEL');
|
|
}
|
|
|
|
if (updateData.contributor) _.assign(hero.contributor, updateData.contributor);
|
|
if (updateData.permissions && res.locals.user.hasPermission('userSupport')) _.assign(hero.permissions, updateData.permissions);
|
|
if (updateData.purchased && updateData.purchased.ads) {
|
|
hero.purchased.ads = updateData.purchased.ads;
|
|
}
|
|
|
|
// give them the Dragon Hydra pet if they're above level 6
|
|
if (hero.contributor.level >= 6) {
|
|
hero.items.pets['Dragon-Hydra'] = 5;
|
|
hero.markModified('items.pets');
|
|
}
|
|
if (updateData.itemPath && updateData.itemVal && validateItemPath(updateData.itemPath)) {
|
|
// Sanitization at 5c30944 (deemed unnecessary)
|
|
_.set(hero, updateData.itemPath, castItemVal(updateData.itemPath, updateData.itemVal));
|
|
}
|
|
|
|
if (updateData.auth && updateData.auth.blocked === true) {
|
|
hero.auth.blocked = updateData.auth.blocked;
|
|
hero.preferences.sleep = true; // when blocking, have them rest at an inn to prevent damage
|
|
}
|
|
if (updateData.auth && updateData.auth.blocked === false) {
|
|
hero.auth.blocked = false;
|
|
}
|
|
|
|
if (updateData.flags && _.isBoolean(updateData.flags.chatRevoked)) {
|
|
hero.flags.chatRevoked = updateData.flags.chatRevoked;
|
|
}
|
|
if (updateData.flags && _.isBoolean(updateData.flags.chatShadowMuted)) {
|
|
hero.flags.chatShadowMuted = updateData.flags.chatShadowMuted;
|
|
}
|
|
|
|
if (updateData.secret) {
|
|
if (typeof updateData.secret.text !== 'undefined') {
|
|
hero.secret.text = updateData.secret.text;
|
|
}
|
|
}
|
|
|
|
if (updateData.changeApiToken) {
|
|
hero.apiToken = common.uuid();
|
|
}
|
|
|
|
if (updateData.resetCron) {
|
|
// Set last cron to yesterday. Quick approach so we don't need moment() for one line
|
|
const yesterday = new Date(new Date().setDate(new Date().getDate() - 1));
|
|
hero.lastCron = yesterday;
|
|
hero.auth.timestamps.loggedin = yesterday; // so admin panel doesn't gripe about mismatch
|
|
}
|
|
|
|
const savedHero = await hero.save();
|
|
const heroJSON = savedHero.toJSON();
|
|
heroJSON.secret = savedHero.getSecretData();
|
|
const responseHero = { _id: heroJSON._id }; // only respond with important fields
|
|
heroAdminFieldsToShow.split(' ').forEach(field => {
|
|
_.set(responseHero, field, _.get(heroJSON, field));
|
|
});
|
|
|
|
res.respond(200, responseHero);
|
|
},
|
|
};
|
|
|
|
/**
|
|
* @api {get} /api/v3/hall/heroes/party/:groupId Get any Party given its ID
|
|
* @apiParam (Path) {UUID} groupId party's group ID
|
|
* @apiName GetHeroParty
|
|
* @apiGroup Hall
|
|
* @apiPermission userSupport
|
|
*
|
|
* @apiDescription Returns some basic information about a given Party,
|
|
* to assist admins with user support.
|
|
*
|
|
* @apiSuccess {Object} data The party object (contains computed fields
|
|
* that are not in the Group model)
|
|
*
|
|
* @apiUse NoAuthHeaders
|
|
* @apiUse NoAccount
|
|
* @apiUse NoUser
|
|
* @apiUse NoPrivs
|
|
* @apiUse groupIdRequired
|
|
* @apiUse GroupNotFound
|
|
*/
|
|
api.getHeroParty = { // @TODO XXX add tests
|
|
method: 'GET',
|
|
url: '/hall/heroes/party/:groupId',
|
|
middlewares: [authWithHeaders(), ensurePermission('userSupport')],
|
|
async handler (req, res) {
|
|
req.checkParams('groupId', apiError('groupIdRequired')).notEmpty().isUUID();
|
|
|
|
const validationErrors = req.validationErrors();
|
|
if (validationErrors) throw validationErrors;
|
|
|
|
const { groupId } = req.params;
|
|
|
|
const query = { _id: groupId, type: 'party' };
|
|
|
|
const party = await Group
|
|
.findOne(query)
|
|
.select(heroPartyAdminFields)
|
|
.exec();
|
|
|
|
if (!party) throw new NotFound(apiError('groupWithIDNotFound', { groupId }));
|
|
const partyRes = party.toJSON();
|
|
res.respond(200, partyRes);
|
|
},
|
|
};
|
|
|
|
export default api;
|