add customer restriction when browsing invoices
This commit is contained in:
committed by
Daniel Hutzel
parent
a319199e10
commit
bcfce87276
99
media-store/srv/browse-invoices-service.js
Normal file
99
media-store/srv/browse-invoices-service.js
Normal file
@@ -0,0 +1,99 @@
|
||||
const cds = require("@sap/cds");
|
||||
const moment = require("moment");
|
||||
|
||||
const DATE_TIME_PATTERN = "YYYY-MM-DD HH:MM:SS";
|
||||
const LEVERAGE_DURATION = 1; // in hours
|
||||
const CANCEL_STATUS = -1;
|
||||
|
||||
module.exports = async function () {
|
||||
const db = await cds.connect.to("db"); // connect to database service
|
||||
const { Invoices, InvoiceItems } = db.entities;
|
||||
|
||||
this.before("*", (req) => {
|
||||
console.log(
|
||||
"[USER]:",
|
||||
req.user.id,
|
||||
" [LEVEL]: ",
|
||||
req.user.attr.level,
|
||||
"[ROLE]",
|
||||
req.user.is("user") ? "user" : "other"
|
||||
);
|
||||
});
|
||||
|
||||
this.on("READ", "Invoices", async (req) => {
|
||||
return await db.run(req.query.where({ customer_ID: req.user.attr.ID }));
|
||||
});
|
||||
|
||||
this.on("invoice", async (req) => {
|
||||
const { tracks } = req.data;
|
||||
const customerId = req.user.attr.ID;
|
||||
const invoiceDate = moment(new Date(), DATE_TIME_PATTERN);
|
||||
const total = tracks.reduce(
|
||||
(acc, { unitPrice }) => acc + Number(unitPrice),
|
||||
0
|
||||
);
|
||||
|
||||
const { ID: lastInvoiceItemId } = await db.run(
|
||||
SELECT.one(InvoiceItems).columns("ID").orderBy({ ID: "desc" })
|
||||
);
|
||||
const { ID: lastInvoiceId } = await db.run(
|
||||
SELECT.one(Invoices).columns("ID").orderBy({ ID: "desc" })
|
||||
);
|
||||
|
||||
const transaction = await db.tx(req);
|
||||
await transaction.run(
|
||||
INSERT.into(Invoices)
|
||||
.columns("ID", "customer_ID", "total", "invoiceDate")
|
||||
.values(lastInvoiceId + 1, customerId, total, new Date(invoiceDate))
|
||||
);
|
||||
await transaction.run(
|
||||
INSERT.into(InvoiceItems)
|
||||
.columns("ID", "invoice_ID", "track_ID", "unitPrice")
|
||||
.rows(
|
||||
tracks.map(({ ID, unitPrice }, index) => [
|
||||
lastInvoiceItemId + (index + 1),
|
||||
lastInvoiceId + 1,
|
||||
ID,
|
||||
unitPrice,
|
||||
])
|
||||
)
|
||||
);
|
||||
await transaction.commit();
|
||||
});
|
||||
|
||||
this.on("cancelInvoice", async (req) => {
|
||||
const { ID } = req.data;
|
||||
const currentInvoice = await db.run(
|
||||
SELECT.one(Invoices)
|
||||
.where({
|
||||
ID,
|
||||
customer_ID: req.user.attr.ID,
|
||||
})
|
||||
.columns("ID", "invoiceDate", "customer_ID")
|
||||
);
|
||||
if (!currentInvoice) {
|
||||
req.reject(
|
||||
404,
|
||||
"Seems like you are not owning this invoice or it is not exists"
|
||||
);
|
||||
}
|
||||
console.log(currentInvoice);
|
||||
console.log(currentInvoice.invoiceDate);
|
||||
|
||||
const x = moment().utc().format(DATE_TIME_PATTERN);
|
||||
const y = moment(currentInvoice.invoiceDate).format(DATE_TIME_PATTERN);
|
||||
const yy = moment(x).diff(y);
|
||||
const durationInHours = moment.duration(yy);
|
||||
console.log(x);
|
||||
console.log(y);
|
||||
console.log(yy);
|
||||
console.log(durationInHours.asHours());
|
||||
if (durationInHours.asHours() > LEVERAGE_DURATION) {
|
||||
req.reject(400, "Leverage time was expired");
|
||||
}
|
||||
|
||||
return await db.run(
|
||||
UPDATE(Invoices).set({ status: CANCEL_STATUS }).where({ ID })
|
||||
);
|
||||
});
|
||||
};
|
||||
Reference in New Issue
Block a user