account.py 9.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267
  1. # -*- coding:utf-8 -*-
  2. from datetime import datetime
  3. import pytz
  4. from flask import current_app, request
  5. from flask_login import login_required, current_user
  6. from flask_restful import Resource, reqparse, fields, marshal_with
  7. from services.errors.account import CurrentPasswordIncorrectError as ServiceCurrentPasswordIncorrectError
  8. from controllers.console import api
  9. from controllers.console.setup import setup_required
  10. from controllers.console.workspace.error import AccountAlreadyInitedError, InvalidInvitationCodeError, \
  11. RepeatPasswordNotMatchError, CurrentPasswordIncorrectError
  12. from controllers.console.wraps import account_initialization_required
  13. from libs.helper import TimestampField, supported_language, timezone
  14. from extensions.ext_database import db
  15. from models.account import InvitationCode, AccountIntegrate
  16. from services.account_service import AccountService
  17. account_fields = {
  18. 'id': fields.String,
  19. 'name': fields.String,
  20. 'avatar': fields.String,
  21. 'email': fields.String,
  22. 'is_password_set': fields.Boolean,
  23. 'interface_language': fields.String,
  24. 'interface_theme': fields.String,
  25. 'timezone': fields.String,
  26. 'last_login_at': TimestampField,
  27. 'last_login_ip': fields.String,
  28. 'created_at': TimestampField
  29. }
  30. class AccountInitApi(Resource):
  31. @setup_required
  32. @login_required
  33. def post(self):
  34. account = current_user
  35. if account.status == 'active':
  36. raise AccountAlreadyInitedError()
  37. parser = reqparse.RequestParser()
  38. if current_app.config['EDITION'] == 'CLOUD':
  39. parser.add_argument('invitation_code', type=str, location='json')
  40. parser.add_argument(
  41. 'interface_language', type=supported_language, required=True, location='json')
  42. parser.add_argument('timezone', type=timezone,
  43. required=True, location='json')
  44. args = parser.parse_args()
  45. if current_app.config['EDITION'] == 'CLOUD':
  46. if not args['invitation_code']:
  47. raise ValueError('invitation_code is required')
  48. # check invitation code
  49. invitation_code = db.session.query(InvitationCode).filter(
  50. InvitationCode.code == args['invitation_code'],
  51. InvitationCode.status == 'unused',
  52. ).first()
  53. if not invitation_code:
  54. raise InvalidInvitationCodeError()
  55. invitation_code.status = 'used'
  56. invitation_code.used_at = datetime.utcnow()
  57. invitation_code.used_by_tenant_id = account.current_tenant_id
  58. invitation_code.used_by_account_id = account.id
  59. account.interface_language = args['interface_language']
  60. account.timezone = args['timezone']
  61. account.interface_theme = 'light'
  62. account.status = 'active'
  63. account.initialized_at = datetime.utcnow()
  64. db.session.commit()
  65. return {'result': 'success'}
  66. class AccountProfileApi(Resource):
  67. @setup_required
  68. @login_required
  69. @account_initialization_required
  70. @marshal_with(account_fields)
  71. def get(self):
  72. return current_user
  73. class AccountNameApi(Resource):
  74. @setup_required
  75. @login_required
  76. @account_initialization_required
  77. @marshal_with(account_fields)
  78. def post(self):
  79. parser = reqparse.RequestParser()
  80. parser.add_argument('name', type=str, required=True, location='json')
  81. args = parser.parse_args()
  82. # Validate account name length
  83. if len(args['name']) < 3 or len(args['name']) > 30:
  84. raise ValueError(
  85. "Account name must be between 3 and 30 characters.")
  86. updated_account = AccountService.update_account(current_user, name=args['name'])
  87. return updated_account
  88. class AccountAvatarApi(Resource):
  89. @setup_required
  90. @login_required
  91. @account_initialization_required
  92. @marshal_with(account_fields)
  93. def post(self):
  94. parser = reqparse.RequestParser()
  95. parser.add_argument('avatar', type=str, required=True, location='json')
  96. args = parser.parse_args()
  97. updated_account = AccountService.update_account(current_user, avatar=args['avatar'])
  98. return updated_account
  99. class AccountInterfaceLanguageApi(Resource):
  100. @setup_required
  101. @login_required
  102. @account_initialization_required
  103. @marshal_with(account_fields)
  104. def post(self):
  105. parser = reqparse.RequestParser()
  106. parser.add_argument(
  107. 'interface_language', type=supported_language, required=True, location='json')
  108. args = parser.parse_args()
  109. updated_account = AccountService.update_account(current_user, interface_language=args['interface_language'])
  110. return updated_account
  111. class AccountInterfaceThemeApi(Resource):
  112. @setup_required
  113. @login_required
  114. @account_initialization_required
  115. @marshal_with(account_fields)
  116. def post(self):
  117. parser = reqparse.RequestParser()
  118. parser.add_argument('interface_theme', type=str, choices=[
  119. 'light', 'dark'], required=True, location='json')
  120. args = parser.parse_args()
  121. updated_account = AccountService.update_account(current_user, interface_theme=args['interface_theme'])
  122. return updated_account
  123. class AccountTimezoneApi(Resource):
  124. @setup_required
  125. @login_required
  126. @account_initialization_required
  127. @marshal_with(account_fields)
  128. def post(self):
  129. parser = reqparse.RequestParser()
  130. parser.add_argument('timezone', type=str,
  131. required=True, location='json')
  132. args = parser.parse_args()
  133. # Validate timezone string, e.g. America/New_York, Asia/Shanghai
  134. if args['timezone'] not in pytz.all_timezones:
  135. raise ValueError("Invalid timezone string.")
  136. updated_account = AccountService.update_account(current_user, timezone=args['timezone'])
  137. return updated_account
  138. class AccountPasswordApi(Resource):
  139. @setup_required
  140. @login_required
  141. @account_initialization_required
  142. @marshal_with(account_fields)
  143. def post(self):
  144. parser = reqparse.RequestParser()
  145. parser.add_argument('password', type=str,
  146. required=False, location='json')
  147. parser.add_argument('new_password', type=str,
  148. required=True, location='json')
  149. parser.add_argument('repeat_new_password', type=str,
  150. required=True, location='json')
  151. args = parser.parse_args()
  152. if args['new_password'] != args['repeat_new_password']:
  153. raise RepeatPasswordNotMatchError()
  154. try:
  155. AccountService.update_account_password(
  156. current_user, args['password'], args['new_password'])
  157. except ServiceCurrentPasswordIncorrectError:
  158. raise CurrentPasswordIncorrectError()
  159. return {"result": "success"}
  160. class AccountIntegrateApi(Resource):
  161. integrate_fields = {
  162. 'provider': fields.String,
  163. 'created_at': TimestampField,
  164. 'is_bound': fields.Boolean,
  165. 'link': fields.String
  166. }
  167. integrate_list_fields = {
  168. 'data': fields.List(fields.Nested(integrate_fields)),
  169. }
  170. @setup_required
  171. @login_required
  172. @account_initialization_required
  173. @marshal_with(integrate_list_fields)
  174. def get(self):
  175. account = current_user
  176. account_integrates = db.session.query(AccountIntegrate).filter(
  177. AccountIntegrate.account_id == account.id).all()
  178. base_url = request.url_root.rstrip('/')
  179. oauth_base_path = "/console/api/oauth/login"
  180. providers = ["github", "google"]
  181. integrate_data = []
  182. for provider in providers:
  183. existing_integrate = next((ai for ai in account_integrates if ai.provider == provider), None)
  184. if existing_integrate:
  185. integrate_data.append({
  186. 'id': existing_integrate.id,
  187. 'provider': provider,
  188. 'created_at': existing_integrate.created_at,
  189. 'is_bound': True,
  190. 'link': None
  191. })
  192. else:
  193. integrate_data.append({
  194. 'id': None,
  195. 'provider': provider,
  196. 'created_at': None,
  197. 'is_bound': False,
  198. 'link': f'{base_url}{oauth_base_path}/{provider}'
  199. })
  200. return {'data': integrate_data}
  201. # Register API resources
  202. api.add_resource(AccountInitApi, '/account/init')
  203. api.add_resource(AccountProfileApi, '/account/profile')
  204. api.add_resource(AccountNameApi, '/account/name')
  205. api.add_resource(AccountAvatarApi, '/account/avatar')
  206. api.add_resource(AccountInterfaceLanguageApi, '/account/interface-language')
  207. api.add_resource(AccountInterfaceThemeApi, '/account/interface-theme')
  208. api.add_resource(AccountTimezoneApi, '/account/timezone')
  209. api.add_resource(AccountPasswordApi, '/account/password')
  210. api.add_resource(AccountIntegrateApi, '/account/integrates')
  211. # api.add_resource(AccountEmailApi, '/account/email')
  212. # api.add_resource(AccountEmailVerifyApi, '/account/email-verify')