mirror of
https://github.com/bknd-io/bknd/
synced 2026-08-02 08:06:00 +00:00
a298b65abf
* initial refactor * fixes * test secrets extraction * updated lock * fix secret schema * updated schemas, fixed tests, skipping flow tests for now * added validator for rjsf, hook form via standard schema * removed @sinclair/typebox * remove unneeded vite dep * fix jsonv literal on Field.tsx * fix schema import path * fix schema modals * fix schema modals * fix json field form, replaced auth form * initial waku * finalize waku example * fix jsonv-ts version * fix schema updates with falsy values * fix media api to respect options' init, improve types * checking media controller test * checking media controller test * checking media controller test * clean up mediacontroller test * added cookie option `partitioned`, as well as cors `origin` to be array, option to enable `credentials` (#214) * added cookie option `partitioned`, as well as cors `origin` to be array, option to enable `credentials` * fix server test * fix data api (updated jsonv-ts) * enhance cloudflare image optimization plugin with new options and explain endpoint (#215) * feat: add ability to serve static by using dynamic imports (#197) * feat: add ability to serve static by using dynamic imports * serveStaticViaImport: make manifest optional * serveStaticViaImport: add error log * refactor/imports (#217) * refactored core and core/utils imports * refactored core and core/utils imports * refactored media imports * refactored auth imports * refactored data imports * updated package json exports, fixed mm config * fix tests * feat/deno (#219) * update bun version * fix module manager's em reference * add basic deno example * finalize * docs: fumadocs migration (#185) * feat(docs): initialize documentation structure with Fumadocs * feat(docs): remove home route and move /docs route to /route * feat(docs): add redirect to /start page * feat(docs): migrate Getting Started chapters * feat(docs): migrate Usage and Extending chapters * feat(callout): add CalloutCaution, CalloutDanger, CalloutInfo, and CalloutPositive * feat(layout): add Discord and GitHub links to documentation layout * feat(docs): add integration chapters draft * feat(docs): add modules chapters draft * refactor(mdx-components): remove unused Icon import * refactor(StackBlitz): enhance type safety by using unknown instead of any * refactor(layout): update navigation mode to 'top' in layout configuration * feat(docs): add @iconify/react package * docs(mdx-components): add Icon component to MDX components list * feat(docs): update Next.js integration guide * feat(docs): update React Router integration guide * feat(docs): update Astro integration guide * feat(docs): update Vite integration guide * fix(docs): update package manager initialization commands * feat(docs): migrate Modules chapters * chore(docs): update package.json with new devDependencies * feat(docs): migrate Integration Runtimes chapters * feat(docs): update Database usage chapter * feat(docs): restructure documentation paths * chore(docs): clean up unused imports and files in documentation * style(layout): revert navigation mode to previous state * fix(docs): routing for documentation structure * feat(openapi): add API documentation generation from OpenAPI schema * feat(docs): add icons to documentation pages * chore(dependencies): remove unused content-collections packages * fix(types): fix type error for attachFile in source.ts * feat(redirects): update root redirect destination to '/start' * feat(search): add static search functionality * chore(dependencies): update fumadocs-core and fumadocs-ui to latest versions * feat(search): add Powered by Orama link * feat(generate-openapi): add error handling for missing OpenAPI schema * feat(scripts): add OpenAPI generation to build process * feat(config): enable dynamic redirects and rewrites in development mode * feat(layout): add GitHub token support for improved API rate limits * feat(redirects): add 301 redirects for cloudflare pages * feat(docs): add Vercel redirects configuration * feat(config): enable standalone output for development environment * chore(layout): adjust layout settings * refactor(package): clean up ajv dependency versions * feat(docs): add twoslash support * refactor(layout): update DocsLayout import and navigation configuration * chore(layout): clean up layout.tsx by commenting out GithubInfo * fix(Search): add locale to search initialization * chore(package): update fumadocs and orama to latest versions * docs: add menu items descriptions * feat(layout): add GitHub URL to the layout component * feat(docs): add AutoTypeTable component to MDX components * feat(app): implement AutoTypeTable rendering for AppEvents type * docs(layout): switch callouts back to default components * fix(config): use __filename and __dirname for module paths * docs: add note about node.js 22 requirement * feat(styles): add custom color variables for light and dark themes * docs: add S3 setup instructions for media module * docs: fix typos and indentation in media module docs * docs: add local media adapter example for Node.js * docs(media): add S3/R2 URL format examples and fix typo * docs: add cross-links to initial config and seeding sections * indent numbered lists content, clarified media serve locations * fix mediacontroller tests * feat(layout): add AnimatedGridPattern component for dynamic background * style(layout): configure fancy ToC style ('clerk') * fix(AnimatedGridPattern): correct strokeDasharray type * docs: actualize docs * feat: add favicon * style(cloudflare): format code examples * feat(layout): add Github and Discord footer icons * feat(footer): add SVG social media icons for GitHub and Discord * docs: adjusted auto type table, added llm functions * added static deployment to cloudflare workers * docs: change cf redirects to proxy *.mdx instead of redirecting --------- Co-authored-by: dswbx <dennis.senn@gmx.ch> Co-authored-by: cameronapak <cameronandrewpak@gmail.com> * build: improve build script * add missing exports, fix EntityTypescript imports * media: Dropzone: add programmatic upload, additional events, loading state * schema object: disable extended defaults to allow empty config values * Feat/new docs deploy (#224) * test * try fixing pm * try fixing pm * fix docs on imports, export events correctly --------- Co-authored-by: Tim Seriakov <59409712+timseriakov@users.noreply.github.com> Co-authored-by: cameronapak <cameronandrewpak@gmail.com>
192 lines
5.7 KiB
TypeScript
192 lines
5.7 KiB
TypeScript
import type { SafeUser } from "bknd";
|
|
import type { AuthStrategy } from "auth/authenticate/strategies/Strategy";
|
|
import type { AppAuth } from "auth/AppAuth";
|
|
import * as AuthPermissions from "auth/auth-permissions";
|
|
import * as DataPermissions from "data/permissions";
|
|
import type { Hono } from "hono";
|
|
import { Controller, type ServerEnv } from "modules/Controller";
|
|
import { describeRoute, jsc, s, parse, InvalidSchemaError, transformObject } from "bknd/utils";
|
|
|
|
export type AuthActionResponse = {
|
|
success: boolean;
|
|
action: string;
|
|
data?: SafeUser;
|
|
errors?: any;
|
|
};
|
|
|
|
export class AuthController extends Controller {
|
|
constructor(private auth: AppAuth) {
|
|
super();
|
|
}
|
|
|
|
get guard() {
|
|
return this.auth.ctx.guard;
|
|
}
|
|
|
|
get em() {
|
|
return this.auth.ctx.em;
|
|
}
|
|
|
|
get userRepo() {
|
|
const entity_name = this.auth.config.entity_name;
|
|
return this.em.repo(entity_name as "users");
|
|
}
|
|
|
|
private registerStrategyActions(strategy: AuthStrategy, mainHono: Hono<ServerEnv>) {
|
|
if (!this.auth.isStrategyEnabled(strategy)) {
|
|
return;
|
|
}
|
|
const actions = strategy.getActions?.();
|
|
if (!actions) {
|
|
return;
|
|
}
|
|
|
|
const { auth, permission } = this.middlewares;
|
|
const hono = this.create().use(auth());
|
|
|
|
const name = strategy.getName();
|
|
const { create, change } = actions;
|
|
const em = this.auth.em;
|
|
|
|
if (create) {
|
|
hono.post(
|
|
"/create",
|
|
permission([AuthPermissions.createUser, DataPermissions.entityCreate]),
|
|
describeRoute({
|
|
summary: "Create a new user",
|
|
tags: ["auth"],
|
|
}),
|
|
async (c) => {
|
|
try {
|
|
const body = await this.auth.authenticator.getBody(c);
|
|
const valid = parse(create.schema, body, {
|
|
//skipMark: true,
|
|
});
|
|
const processed = (await create.preprocess?.(valid)) ?? valid;
|
|
|
|
// @todo: check processed for "role" and check permissions
|
|
const mutator = em.mutator(this.auth.config.entity_name as "users");
|
|
mutator.__unstable_toggleSystemEntityCreation(false);
|
|
const { data: created } = await mutator.insertOne({
|
|
...processed,
|
|
strategy: name,
|
|
});
|
|
mutator.__unstable_toggleSystemEntityCreation(true);
|
|
|
|
return c.json({
|
|
success: true,
|
|
action: "create",
|
|
strategy: name,
|
|
data: created as unknown as SafeUser,
|
|
} as AuthActionResponse);
|
|
} catch (e) {
|
|
if (e instanceof InvalidSchemaError) {
|
|
return c.json(
|
|
{
|
|
success: false,
|
|
errors: e.errors,
|
|
},
|
|
400,
|
|
);
|
|
}
|
|
throw e;
|
|
}
|
|
},
|
|
);
|
|
hono.get(
|
|
"create/schema.json",
|
|
describeRoute({
|
|
summary: "Get the schema for creating a user",
|
|
tags: ["auth"],
|
|
}),
|
|
async (c) => {
|
|
return c.json(create.schema);
|
|
},
|
|
);
|
|
}
|
|
|
|
mainHono.route(`/${name}/actions`, hono);
|
|
}
|
|
|
|
override getController() {
|
|
const { auth } = this.middlewares;
|
|
const hono = this.create();
|
|
|
|
hono.get(
|
|
"/me",
|
|
describeRoute({
|
|
summary: "Get the current user",
|
|
tags: ["auth"],
|
|
}),
|
|
auth(),
|
|
async (c) => {
|
|
const claims = c.get("auth")?.user;
|
|
if (claims) {
|
|
const { data: user } = await this.userRepo.findId(claims.id);
|
|
await this.auth.authenticator?.requestCookieRefresh(c);
|
|
return c.json({ user });
|
|
}
|
|
|
|
return c.json({ user: null }, 403);
|
|
},
|
|
);
|
|
|
|
hono.get(
|
|
"/logout",
|
|
describeRoute({
|
|
summary: "Logout the current user",
|
|
tags: ["auth"],
|
|
}),
|
|
auth(),
|
|
async (c) => {
|
|
await this.auth.authenticator.logout(c);
|
|
if (this.auth.authenticator.isJsonRequest(c)) {
|
|
return c.json({ ok: true });
|
|
}
|
|
|
|
const referer = c.req.header("referer");
|
|
if (referer) {
|
|
return c.redirect(referer);
|
|
}
|
|
|
|
return c.redirect("/");
|
|
},
|
|
);
|
|
|
|
hono.get(
|
|
"/strategies",
|
|
describeRoute({
|
|
summary: "Get the available authentication strategies",
|
|
tags: ["auth"],
|
|
}),
|
|
jsc("query", s.object({ include_disabled: s.boolean().optional() })),
|
|
async (c) => {
|
|
const { include_disabled } = c.req.valid("query");
|
|
const { strategies, basepath } = this.auth.toJSON(false);
|
|
|
|
if (!include_disabled) {
|
|
return c.json({
|
|
strategies: transformObject(strategies ?? {}, (strategy, name) => {
|
|
return this.auth.isStrategyEnabled(name) ? strategy : undefined;
|
|
}),
|
|
basepath,
|
|
});
|
|
}
|
|
|
|
return c.json({ strategies, basepath });
|
|
},
|
|
);
|
|
|
|
const strategies = this.auth.authenticator.getStrategies();
|
|
|
|
for (const [name, strategy] of Object.entries(strategies)) {
|
|
if (!this.auth.isStrategyEnabled(strategy)) continue;
|
|
|
|
hono.route(`/${name}`, strategy.getController(this.auth.authenticator));
|
|
this.registerStrategyActions(strategy, hono);
|
|
}
|
|
|
|
return hono;
|
|
}
|
|
}
|