2022-05-10 07:56:38 +00:00
|
|
|
import type { NextApiRequest, NextApiResponse } from "next";
|
|
|
|
|
|
|
|
import { withMiddleware } from "@lib/helpers/withMiddleware";
|
|
|
|
import type { WebhookResponse } from "@lib/types";
|
2022-05-11 13:57:00 +00:00
|
|
|
import { schemaQueryIdAsString } from "@lib/validations/shared/queryIdString";
|
|
|
|
import { schemaWebhookEditBodyParams, schemaWebhookReadPublic } from "@lib/validations/webhook";
|
2022-05-10 07:56:38 +00:00
|
|
|
|
|
|
|
export async function WebhookById(
|
2022-06-06 16:17:10 +00:00
|
|
|
{ method, query, body, userId, prisma }: NextApiRequest,
|
2022-05-10 07:56:38 +00:00
|
|
|
res: NextApiResponse<WebhookResponse>
|
|
|
|
) {
|
2022-05-11 13:57:00 +00:00
|
|
|
const safeQuery = schemaQueryIdAsString.safeParse(query);
|
2022-05-18 12:27:30 +00:00
|
|
|
if (!safeQuery.success) {
|
|
|
|
res.status(400).json({ message: "Your query was invalid" });
|
|
|
|
return;
|
|
|
|
}
|
2022-05-10 07:56:38 +00:00
|
|
|
const data = await prisma.webhook.findMany({ where: { userId } });
|
|
|
|
const userWebhooks = data.map((webhook) => webhook.id);
|
|
|
|
if (!userWebhooks.includes(safeQuery.data.id)) res.status(401).json({ message: "Unauthorized" });
|
|
|
|
else {
|
|
|
|
switch (method) {
|
|
|
|
/**
|
|
|
|
* @swagger
|
|
|
|
* /hooks/{id}:
|
|
|
|
* get:
|
|
|
|
* summary: Find a webhook
|
2022-05-18 15:46:22 +00:00
|
|
|
* operationId: getWebhookById
|
2022-05-10 07:56:38 +00:00
|
|
|
* parameters:
|
|
|
|
* - in: path
|
|
|
|
* name: id
|
|
|
|
* schema:
|
|
|
|
* type: integer
|
|
|
|
* required: true
|
|
|
|
* description: Numeric ID of the webhook to get
|
|
|
|
* security:
|
|
|
|
* - ApiKeyAuth: []
|
|
|
|
* tags:
|
|
|
|
* - hooks
|
|
|
|
* externalDocs:
|
|
|
|
* url: https://docs.cal.com/hooks
|
|
|
|
* responses:
|
|
|
|
* 200:
|
|
|
|
* description: OK
|
|
|
|
* 401:
|
|
|
|
* description: Authorization information is missing or invalid.
|
|
|
|
* 404:
|
|
|
|
* description: Webhook was not found
|
|
|
|
*/
|
|
|
|
case "GET":
|
|
|
|
await prisma.webhook
|
|
|
|
.findUnique({ where: { id: safeQuery.data.id } })
|
2022-06-01 15:05:33 +00:00
|
|
|
.then((data) => schemaWebhookReadPublic.parse(data))
|
2022-05-11 13:57:00 +00:00
|
|
|
.then((webhook) => res.status(200).json({ webhook }))
|
2022-05-10 07:56:38 +00:00
|
|
|
.catch((error: Error) =>
|
|
|
|
res.status(404).json({
|
|
|
|
message: `Webhook with id: ${safeQuery.data.id} not found`,
|
|
|
|
error,
|
|
|
|
})
|
|
|
|
);
|
|
|
|
break;
|
|
|
|
/**
|
|
|
|
* @swagger
|
|
|
|
* /hooks/{id}:
|
|
|
|
* patch:
|
|
|
|
* summary: Edit an existing webhook
|
2022-05-18 15:46:22 +00:00
|
|
|
* operationId: editWebhookById
|
2022-05-10 07:56:38 +00:00
|
|
|
* parameters:
|
|
|
|
* - in: path
|
|
|
|
* name: id
|
|
|
|
* schema:
|
|
|
|
* type: integer
|
|
|
|
* required: true
|
|
|
|
* description: Numeric ID of the webhook to edit
|
|
|
|
* security:
|
|
|
|
* - ApiKeyAuth: []
|
|
|
|
* tags:
|
|
|
|
* - hooks
|
|
|
|
* externalDocs:
|
|
|
|
* url: https://docs.cal.com/hooks
|
|
|
|
* responses:
|
|
|
|
* 201:
|
|
|
|
* description: OK, webhook edited successfuly
|
|
|
|
* 400:
|
|
|
|
* description: Bad request. Webhook body is invalid.
|
|
|
|
* 401:
|
|
|
|
* description: Authorization information is missing or invalid.
|
|
|
|
*/
|
|
|
|
case "PATCH":
|
2022-05-11 13:57:00 +00:00
|
|
|
const safeBody = schemaWebhookEditBodyParams.safeParse(body);
|
2022-05-10 07:56:38 +00:00
|
|
|
if (!safeBody.success) {
|
2022-05-17 17:33:18 +00:00
|
|
|
{
|
|
|
|
res.status(400).json({ message: "Invalid request body" });
|
|
|
|
return;
|
|
|
|
}
|
2022-05-10 07:56:38 +00:00
|
|
|
}
|
2022-06-08 07:36:28 +00:00
|
|
|
if (safeBody.data.eventTypeId) {
|
2022-06-08 07:50:44 +00:00
|
|
|
const team = await prisma.team.findFirst({
|
2022-06-08 07:36:28 +00:00
|
|
|
where: {
|
|
|
|
eventTypes: {
|
|
|
|
some: {
|
|
|
|
id: safeBody.data.eventTypeId,
|
|
|
|
},
|
|
|
|
},
|
|
|
|
},
|
|
|
|
include: {
|
|
|
|
members: true,
|
|
|
|
},
|
|
|
|
});
|
|
|
|
|
|
|
|
// Team should be available and the user should be a member of the team
|
|
|
|
if (!team?.members.some((membership) => membership.userId === userId)) {
|
2022-06-08 07:58:22 +00:00
|
|
|
res.status(401).json({ message: "Unauthorized" });
|
|
|
|
return;
|
2022-06-08 07:36:28 +00:00
|
|
|
}
|
|
|
|
}
|
2022-05-10 07:56:38 +00:00
|
|
|
await prisma.webhook
|
|
|
|
.update({ where: { id: safeQuery.data.id }, data: safeBody.data })
|
2022-06-01 15:05:33 +00:00
|
|
|
.then((data) => schemaWebhookReadPublic.parse(data))
|
2022-05-11 13:57:00 +00:00
|
|
|
.then((webhook) => res.status(200).json({ webhook }))
|
2022-05-10 07:56:38 +00:00
|
|
|
.catch((error: Error) =>
|
|
|
|
res.status(404).json({
|
|
|
|
message: `Webhook with id: ${safeQuery.data.id} not found`,
|
|
|
|
error,
|
|
|
|
})
|
|
|
|
);
|
|
|
|
break;
|
|
|
|
/**
|
|
|
|
* @swagger
|
|
|
|
* /hooks/{id}:
|
|
|
|
* delete:
|
|
|
|
* summary: Remove an existing hook
|
2022-05-18 15:46:22 +00:00
|
|
|
* operationId: removeWebhookById
|
2022-05-10 07:56:38 +00:00
|
|
|
* parameters:
|
|
|
|
* - in: path
|
|
|
|
* name: id
|
|
|
|
* schema:
|
|
|
|
* type: integer
|
|
|
|
* required: true
|
|
|
|
* description: Numeric ID of the hooks to delete
|
|
|
|
* security:
|
|
|
|
* - ApiKeyAuth: []
|
|
|
|
* tags:
|
|
|
|
* - hooks
|
|
|
|
* externalDocs:
|
|
|
|
* url: https://docs.cal.com/hooks
|
|
|
|
* responses:
|
|
|
|
* 201:
|
|
|
|
* description: OK, hook removed successfuly
|
|
|
|
* 400:
|
|
|
|
* description: Bad request. hook id is invalid.
|
|
|
|
* 401:
|
|
|
|
* description: Authorization information is missing or invalid.
|
|
|
|
*/
|
|
|
|
case "DELETE":
|
|
|
|
await prisma.webhook
|
|
|
|
.delete({ where: { id: safeQuery.data.id } })
|
|
|
|
.then(() =>
|
|
|
|
res.status(200).json({
|
|
|
|
message: `Webhook with id: ${safeQuery.data.id} deleted`,
|
|
|
|
})
|
|
|
|
)
|
|
|
|
.catch((error: Error) =>
|
|
|
|
res.status(404).json({
|
|
|
|
message: `Webhook with id: ${safeQuery.data.id} not found`,
|
|
|
|
error,
|
|
|
|
})
|
|
|
|
);
|
|
|
|
break;
|
|
|
|
|
|
|
|
default:
|
|
|
|
res.status(405).json({ message: "Method not allowed" });
|
|
|
|
break;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2022-05-11 13:57:00 +00:00
|
|
|
export default withMiddleware("HTTP_GET_DELETE_PATCH")(WebhookById);
|