site.py 3.4 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697
  1. from flask_login import current_user
  2. from flask_restful import Resource, marshal_with, reqparse
  3. from werkzeug.exceptions import Forbidden, NotFound
  4. from constants.languages import supported_language
  5. from controllers.console import api
  6. from controllers.console.app.wraps import get_app_model
  7. from controllers.console.setup import setup_required
  8. from controllers.console.wraps import account_initialization_required
  9. from extensions.ext_database import db
  10. from fields.app_fields import app_site_fields
  11. from libs.login import login_required
  12. from models.model import Site
  13. def parse_app_site_args():
  14. parser = reqparse.RequestParser()
  15. parser.add_argument('title', type=str, required=False, location='json')
  16. parser.add_argument('icon', type=str, required=False, location='json')
  17. parser.add_argument('icon_background', type=str, required=False, location='json')
  18. parser.add_argument('description', type=str, required=False, location='json')
  19. parser.add_argument('default_language', type=supported_language, required=False, location='json')
  20. parser.add_argument('customize_domain', type=str, required=False, location='json')
  21. parser.add_argument('copyright', type=str, required=False, location='json')
  22. parser.add_argument('privacy_policy', type=str, required=False, location='json')
  23. parser.add_argument('custom_disclaimer', type=str, required=False, location='json')
  24. parser.add_argument('customize_token_strategy', type=str, choices=['must', 'allow', 'not_allow'],
  25. required=False,
  26. location='json')
  27. parser.add_argument('prompt_public', type=bool, required=False, location='json')
  28. return parser.parse_args()
  29. class AppSite(Resource):
  30. @setup_required
  31. @login_required
  32. @account_initialization_required
  33. @get_app_model
  34. @marshal_with(app_site_fields)
  35. def post(self, app_model):
  36. args = parse_app_site_args()
  37. # The role of the current user in the ta table must be editor, admin, or owner
  38. if not current_user.is_editor:
  39. raise Forbidden()
  40. site = db.session.query(Site). \
  41. filter(Site.app_id == app_model.id). \
  42. one_or_404()
  43. for attr_name in [
  44. 'title',
  45. 'icon',
  46. 'icon_background',
  47. 'description',
  48. 'default_language',
  49. 'customize_domain',
  50. 'copyright',
  51. 'privacy_policy',
  52. 'custom_disclaimer',
  53. 'customize_token_strategy',
  54. 'prompt_public'
  55. ]:
  56. value = args.get(attr_name)
  57. if value is not None:
  58. setattr(site, attr_name, value)
  59. db.session.commit()
  60. return site
  61. class AppSiteAccessTokenReset(Resource):
  62. @setup_required
  63. @login_required
  64. @account_initialization_required
  65. @get_app_model
  66. @marshal_with(app_site_fields)
  67. def post(self, app_model):
  68. # The role of the current user in the ta table must be admin or owner
  69. if not current_user.is_admin_or_owner:
  70. raise Forbidden()
  71. site = db.session.query(Site).filter(Site.app_id == app_model.id).first()
  72. if not site:
  73. raise NotFound
  74. site.code = Site.generate_code(16)
  75. db.session.commit()
  76. return site
  77. api.add_resource(AppSite, '/apps/<uuid:app_id>/site')
  78. api.add_resource(AppSiteAccessTokenReset, '/apps/<uuid:app_id>/site/access-token-reset')