mirror of
https://github.com/idanoo/autobrr
synced 2025-07-23 00:39:13 +00:00

* feat(backend): added change password api endpoint. * feat(web): added profile UI to change password. I think we can change the username too, but I don't know if we should for now disabled the username field. * refactor: don't leak username or password. * refactor: protect the route. * generic * feat: add ChangeUsername * fix(tests): speculative fix for TestUserRepo_Update * Revert "feat: add ChangeUsername" This reverts commit d4c1645002883a278aa45dec3c8c19fa1cc75d9b. * refactor into 1 endpoint that handles both * feat: added option to change username as well. :pain: * refactor: frontend * refactor: function names in backend I think this makes it more clear what their function is * fix: change to 2 cols with separator * refactor: update user * fix: test db create user --------- Co-authored-by: Kyle Sanderson <kyle.leet@gmail.com> Co-authored-by: soup <soup@r4tio.dev> Co-authored-by: martylukyy <35452459+martylukyy@users.noreply.github.com> Co-authored-by: ze0s <ze0s@riseup.net>
145 lines
3.5 KiB
Go
145 lines
3.5 KiB
Go
// Copyright (c) 2021 - 2023, Ludvig Lundgren and the autobrr contributors.
|
|
// SPDX-License-Identifier: GPL-2.0-or-later
|
|
|
|
package database
|
|
|
|
import (
|
|
"context"
|
|
"database/sql"
|
|
|
|
"github.com/autobrr/autobrr/internal/domain"
|
|
"github.com/autobrr/autobrr/internal/logger"
|
|
"github.com/autobrr/autobrr/pkg/errors"
|
|
|
|
sq "github.com/Masterminds/squirrel"
|
|
"github.com/rs/zerolog"
|
|
)
|
|
|
|
type UserRepo struct {
|
|
log zerolog.Logger
|
|
db *DB
|
|
}
|
|
|
|
func NewUserRepo(log logger.Logger, db *DB) domain.UserRepo {
|
|
return &UserRepo{
|
|
log: log.With().Str("repo", "user").Logger(),
|
|
db: db,
|
|
}
|
|
}
|
|
|
|
func (r *UserRepo) GetUserCount(ctx context.Context) (int, error) {
|
|
queryBuilder := r.db.squirrel.Select("count(*)").From("users")
|
|
|
|
query, args, err := queryBuilder.ToSql()
|
|
if err != nil {
|
|
return 0, errors.Wrap(err, "error building query")
|
|
}
|
|
|
|
row := r.db.handler.QueryRowContext(ctx, query, args...)
|
|
if err := row.Err(); err != nil {
|
|
return 0, errors.Wrap(err, "error executing query")
|
|
}
|
|
|
|
result := 0
|
|
if err := row.Scan(&result); err != nil {
|
|
return 0, errors.Wrap(err, "error scanning row")
|
|
}
|
|
|
|
return result, nil
|
|
}
|
|
|
|
func (r *UserRepo) FindByUsername(ctx context.Context, username string) (*domain.User, error) {
|
|
queryBuilder := r.db.squirrel.
|
|
Select("id", "username", "password").
|
|
From("users").
|
|
Where(sq.Eq{"username": username})
|
|
|
|
query, args, err := queryBuilder.ToSql()
|
|
if err != nil {
|
|
return nil, errors.Wrap(err, "error building query")
|
|
}
|
|
|
|
row := r.db.handler.QueryRowContext(ctx, query, args...)
|
|
if err := row.Err(); err != nil {
|
|
return nil, errors.Wrap(err, "error executing query")
|
|
}
|
|
|
|
var user domain.User
|
|
|
|
if err := row.Scan(&user.ID, &user.Username, &user.Password); err != nil {
|
|
if errors.Is(err, sql.ErrNoRows) {
|
|
return nil, domain.ErrRecordNotFound
|
|
}
|
|
|
|
return nil, errors.Wrap(err, "error scanning row")
|
|
}
|
|
|
|
return &user, nil
|
|
}
|
|
|
|
func (r *UserRepo) Store(ctx context.Context, req domain.CreateUserRequest) error {
|
|
queryBuilder := r.db.squirrel.
|
|
Insert("users").
|
|
Columns("username", "password").
|
|
Values(req.Username, req.Password)
|
|
|
|
query, args, err := queryBuilder.ToSql()
|
|
if err != nil {
|
|
return errors.Wrap(err, "error building query")
|
|
}
|
|
|
|
_, err = r.db.handler.ExecContext(ctx, query, args...)
|
|
if err != nil {
|
|
return errors.Wrap(err, "error executing query")
|
|
}
|
|
|
|
return err
|
|
}
|
|
|
|
func (r *UserRepo) Update(ctx context.Context, user domain.UpdateUserRequest) error {
|
|
queryBuilder := r.db.squirrel.Update("users")
|
|
|
|
if user.UsernameNew != "" {
|
|
queryBuilder = queryBuilder.Set("username", user.UsernameNew)
|
|
}
|
|
|
|
if user.PasswordNewHash != "" {
|
|
queryBuilder = queryBuilder.Set("password", user.PasswordNewHash)
|
|
}
|
|
|
|
queryBuilder = queryBuilder.Where(sq.Eq{"username": user.UsernameCurrent})
|
|
|
|
query, args, err := queryBuilder.ToSql()
|
|
if err != nil {
|
|
return errors.Wrap(err, "error building query")
|
|
}
|
|
|
|
_, err = r.db.handler.ExecContext(ctx, query, args...)
|
|
if err != nil {
|
|
return errors.Wrap(err, "error executing query")
|
|
}
|
|
|
|
return nil
|
|
}
|
|
|
|
func (r *UserRepo) Delete(ctx context.Context, username string) error {
|
|
queryBuilder := r.db.squirrel.
|
|
Delete("users").
|
|
Where(sq.Eq{"username": username})
|
|
|
|
query, args, err := queryBuilder.ToSql()
|
|
if err != nil {
|
|
return errors.Wrap(err, "error building query")
|
|
}
|
|
|
|
// Execute the query.
|
|
_, err = r.db.handler.ExecContext(ctx, query, args...)
|
|
if err != nil {
|
|
return errors.Wrap(err, "error executing query")
|
|
}
|
|
|
|
// Log the deletion.
|
|
r.log.Debug().Msgf("user.delete: successfully deleted user: %s", username)
|
|
|
|
return nil
|
|
}
|