279 lines
9.1 KiB
JavaScript
Raw Normal View History

const _ = require('lodash');
/**
* Throws an ApolloError if context body contains a bad request
* @param contextBody - body of the context object given to the resolver
* @throws ApolloError if the body is a bad request
*/
function checkBadRequest(contextBody) {
if (_.get(contextBody, 'statusCode', 200) !== 200) {
const message = _.get(contextBody, 'error', 'Bad Request');
const exception = new Error(message);
exception.code = _.get(contextBody, 'statusCode', 400);
exception.data = contextBody;
throw exception;
}
}
module.exports = {
type: {
UsersPermissionsPermission: false, // Make this type NOT queriable.
},
definition: /* GraphQL */ `
type UsersPermissionsMe {
id: ID!
username: String!
email: String!
confirmed: Boolean
blocked: Boolean
2018-10-15 11:03:00 -05:00
role: UsersPermissionsMeRole
}
type UsersPermissionsMeRole {
id: ID!
name: String!
description: String
type: String
}
input UsersPermissionsRegisterInput {
username: String!
email: String!
password: String!
}
input UsersPermissionsLoginInput {
identifier: String!
password: String!
provider: String = "local"
}
type UsersPermissionsLoginPayload {
jwt: String!
user: UsersPermissionsMe!
}
type UserPersmissionsPasswordPayload {
ok: Boolean!
}
`,
2018-10-09 20:06:52 -05:00
query: `
me: UsersPermissionsMe
2018-10-09 20:06:52 -05:00
`,
mutation: `
login(input: UsersPermissionsLoginInput!): UsersPermissionsLoginPayload!
register(input: UsersPermissionsRegisterInput!): UsersPermissionsRegisterInput!
forgotPassword(email: String!): UserPersmissionsPasswordPayload
resetPassword(password: String!, passwordConfirmation: String!, code: String!): UsersPermissionsLoginPayload
emailConfirmation(confirmation: String!): UsersPermissionsLoginPayload
`,
resolver: {
Query: {
2018-10-09 20:06:52 -05:00
me: {
resolver: 'plugins::users-permissions.user.me',
2018-10-09 20:06:52 -05:00
},
role: {
resolverOf: 'plugins::users-permissions.userspermissions.getRole',
resolver: async (obj, options, { context }) => {
context.params = { ...context.params, ...options.input };
await strapi.plugins['users-permissions'].controllers.userspermissions.getRole(context);
2019-03-13 19:27:18 +01:00
return context.body.role;
},
},
roles: {
description: `Retrieve all the existing roles. You can't apply filters on this query.`,
resolverOf: 'plugins::users-permissions.userspermissions.getRoles', // Apply the `getRoles` permissions on the resolver.
resolver: async (obj, options, { context }) => {
context.params = { ...context.params, ...options.input };
await strapi.plugins['users-permissions'].controllers.userspermissions.getRoles(context);
2019-03-13 19:27:18 +01:00
return context.body.roles;
},
},
},
Mutation: {
createRole: {
description: 'Create a new role',
resolverOf: 'plugins::users-permissions.userspermissions.createRole',
resolver: async (obj, options, { context }) => {
await strapi.plugins['users-permissions'].controllers.userspermissions.createRole(
context
);
return { ok: true };
},
},
updateRole: {
description: 'Update an existing role',
resolverOf: 'plugins::users-permissions.userspermissions.updateRole',
resolver: async (obj, options, { context }) => {
context.params = { ...context.params, ...options.input };
context.params.role = context.params.id;
await strapi.plugins['users-permissions'].controllers.userspermissions.updateRole(
context
);
return { ok: true };
},
},
deleteRole: {
description: 'Delete an existing role',
resolverOf: 'plugins::users-permissions.userspermissions.deleteRole',
resolver: async (obj, options, { context }) => {
context.params = { ...context.params, ...options.input };
context.params.role = context.params.id;
await strapi.plugins['users-permissions'].controllers.userspermissions.deleteRole(
context
);
return { ok: true };
},
},
createUser: {
description: 'Create a new user',
resolverOf: 'plugins::users-permissions.user.create',
resolver: async (obj, options, { context }) => {
context.params = _.toPlainObject(options.input.where);
context.request.body = _.toPlainObject(options.input.data);
await strapi.plugins['users-permissions'].controllers.user.create(context);
return {
user: context.body.toJSON ? context.body.toJSON() : context.body,
};
},
},
updateUser: {
description: 'Update an existing user',
resolverOf: 'plugins::users-permissions.user.update',
resolver: async (obj, options, { context }) => {
context.params = _.toPlainObject(options.input.where);
context.request.body = _.toPlainObject(options.input.data);
await strapi.plugins['users-permissions'].controllers.user.update(context);
return {
user: context.body.toJSON ? context.body.toJSON() : context.body,
};
},
},
deleteUser: {
description: 'Delete an existing user',
resolverOf: 'plugins::users-permissions.user.destroy',
resolver: async (obj, options, { context }) => {
// Set parameters to context.
context.params = _.toPlainObject(options.input.where);
context.request.body = _.toPlainObject(options.input.data);
// Retrieve user to be able to return it because
// Bookshelf doesn't return the row once deleted.
await strapi.plugins['users-permissions'].controllers.user.findOne(context);
// Assign result to user.
const user = context.body.toJSON ? context.body.toJSON() : context.body;
// Run destroy query.
await strapi.plugins['users-permissions'].controllers.user.destroy(context);
return {
user,
};
},
},
register: {
description: 'Register a user',
resolverOf: 'plugins::users-permissions.auth.register',
resolver: async (obj, options, { context }) => {
context.request.body = _.toPlainObject(options.input);
await strapi.plugins['users-permissions'].controllers.auth.register(context);
let output = context.body.toJSON ? context.body.toJSON() : context.body;
checkBadRequest(output);
return {
user: output.user || output,
jwt: output.jwt,
};
},
},
login: {
resolverOf: 'plugins::users-permissions.auth.callback',
resolver: async (obj, options, { context }) => {
context.params = {
...context.params,
provider: options.input.provider,
};
context.request.body = _.toPlainObject(options.input);
await strapi.plugins['users-permissions'].controllers.auth.callback(context);
let output = context.body.toJSON ? context.body.toJSON() : context.body;
checkBadRequest(output);
return {
user: output.user || output,
jwt: output.jwt,
};
},
},
forgotPassword: {
description: 'Request a reset password token',
resolverOf: 'plugins::users-permissions.auth.forgotPassword',
resolver: async (obj, options, { context }) => {
context.request.body = _.toPlainObject(options);
await strapi.plugins['users-permissions'].controllers.auth.forgotPassword(context);
let output = context.body.toJSON ? context.body.toJSON() : context.body;
checkBadRequest(output);
return {
ok: output.ok || output,
};
},
},
resetPassword: {
description: 'Reset user password. Confirm with a code (resetToken from forgotPassword)',
resolverOf: 'plugins::users-permissions.auth.resetPassword',
resolver: async (obj, options, { context }) => {
context.request.body = _.toPlainObject(options);
await strapi.plugins['users-permissions'].controllers.auth.resetPassword(context);
let output = context.body.toJSON ? context.body.toJSON() : context.body;
checkBadRequest(output);
return {
user: output.user || output,
jwt: output.jwt,
};
},
},
emailConfirmation: {
description: 'Confirm an email users email address',
resolverOf: 'plugins::users-permissions.auth.emailConfirmation',
resolver: async (obj, options, { context }) => {
context.query = _.toPlainObject(options);
await strapi.plugins['users-permissions'].controllers.auth.emailConfirmation(
context,
null,
true
);
let output = context.body.toJSON ? context.body.toJSON() : context.body;
checkBadRequest(output);
return {
user: output.user || output,
jwt: output.jwt,
};
},
},
},
},
};