Files
SnapOtter/apps/api/src/routes/settings.ts
T
Siddharth Kumar Sah ce03aad10f feat: production Docker, Playwright tests, settings API, and bug fixes
- Add user management endpoints (register, list, delete, change password)
- Add API key management (create, list, delete)
- Add settings persistence endpoints (get, put)
- Wire settings dialog to real backend (People, API Keys, System, Security)
- Fix login auth flow (window.location.href for full reload)
- Fix download URLs returning 401 (make public since UUIDs are unguessable)
- Fix border tool shadowColor validation (accept 6-8 hex digits)
- Fix remove-bg alpha matting fallback (retry without on failure)
- Fix AI tool silent fallbacks (report errors instead of no-ops)
- Add checkerboard background to before/after slider for transparency
- Add progress bars to all AI tool components
- Add Playwright E2E test suite (131 tests across 9 test files)
- Rewrite Dockerfile for production (tsx runtime, pre-baked AI models)
- Add .dockerignore for faster builds
- Add proper accessible labels to login form
2026-03-22 19:28:57 +08:00

116 lines
3.2 KiB
TypeScript

/**
* Application settings routes (key-value store).
*
* GET /api/v1/settings — Get all settings as a key-value object
* PUT /api/v1/settings — Save settings (admin only)
* GET /api/v1/settings/:key — Get a specific setting
*/
import type { FastifyInstance, FastifyRequest, FastifyReply } from "fastify";
import { eq } from "drizzle-orm";
import { db, schema } from "../db/index.js";
import { requireAuth, requireAdmin } from "../plugins/auth.js";
export async function settingsRoutes(app: FastifyInstance): Promise<void> {
// GET /api/v1/settings — Get all settings as a key-value object
app.get(
"/api/v1/settings",
async (request: FastifyRequest, reply: FastifyReply) => {
const user = requireAuth(request, reply);
if (!user) return;
const rows = db.select().from(schema.settings).all();
const settings: Record<string, string> = {};
for (const row of rows) {
settings[row.key] = row.value;
}
return reply.send({ settings });
},
);
// PUT /api/v1/settings — Save settings (admin only)
app.put(
"/api/v1/settings",
async (request: FastifyRequest, reply: FastifyReply) => {
const admin = requireAdmin(request, reply);
if (!admin) return;
const body = request.body as Record<string, unknown> | null;
if (!body || typeof body !== "object" || Array.isArray(body)) {
return reply.status(400).send({
error: "Request body must be a JSON object with key-value pairs",
code: "VALIDATION_ERROR",
});
}
const now = new Date();
let updatedCount = 0;
for (const [key, value] of Object.entries(body)) {
if (typeof key !== "string" || key.length === 0) continue;
const strValue = typeof value === "string" ? value : JSON.stringify(value);
// Upsert: insert or update on conflict
const existing = db
.select()
.from(schema.settings)
.where(eq(schema.settings.key, key))
.get();
if (existing) {
db.update(schema.settings)
.set({ value: strValue, updatedAt: now })
.where(eq(schema.settings.key, key))
.run();
} else {
db.insert(schema.settings)
.values({ key, value: strValue })
.run();
}
updatedCount++;
}
return reply.send({ ok: true, updatedCount });
},
);
// GET /api/v1/settings/:key — Get a specific setting
app.get(
"/api/v1/settings/:key",
async (
request: FastifyRequest<{ Params: { key: string } }>,
reply: FastifyReply,
) => {
const user = requireAuth(request, reply);
if (!user) return;
const { key } = request.params;
const row = db
.select()
.from(schema.settings)
.where(eq(schema.settings.key, key))
.get();
if (!row) {
return reply.status(404).send({
error: `Setting "${key}" not found`,
code: "NOT_FOUND",
});
}
return reply.send({
key: row.key,
value: row.value,
updatedAt: row.updatedAt.toISOString(),
});
},
);
app.log.info("Settings routes registered");
}