auths.py 3.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111
  1. from fastapi import Response
  2. from fastapi import Depends, FastAPI, HTTPException, status
  3. from datetime import datetime, timedelta
  4. from typing import List, Union
  5. from fastapi import APIRouter
  6. from pydantic import BaseModel
  7. import time
  8. import uuid
  9. from apps.web.models.auths import (
  10. SigninForm,
  11. SignupForm,
  12. UserResponse,
  13. SigninResponse,
  14. Auths,
  15. )
  16. from apps.web.models.users import Users
  17. from utils.utils import (
  18. get_password_hash,
  19. bearer_scheme,
  20. create_token,
  21. )
  22. from utils.misc import get_gravatar_url
  23. from constants import ERROR_MESSAGES
  24. router = APIRouter()
  25. ############################
  26. # GetSessionUser
  27. ############################
  28. @router.get("/", response_model=UserResponse)
  29. async def get_session_user(cred=Depends(bearer_scheme)):
  30. token = cred.credentials
  31. user = Users.get_user_by_token(token)
  32. if user:
  33. return {
  34. "id": user.id,
  35. "email": user.email,
  36. "name": user.name,
  37. "role": user.role,
  38. "profile_image_url": user.profile_image_url,
  39. }
  40. else:
  41. raise HTTPException(
  42. status_code=status.HTTP_401_UNAUTHORIZED,
  43. detail=ERROR_MESSAGES.INVALID_TOKEN,
  44. )
  45. ############################
  46. # SignIn
  47. ############################
  48. @router.post("/signin", response_model=SigninResponse)
  49. async def signin(form_data: SigninForm):
  50. user = Auths.authenticate_user(form_data.email.lower(), form_data.password)
  51. if user:
  52. token = create_token(data={"email": user.email})
  53. return {
  54. "token": token,
  55. "token_type": "Bearer",
  56. "id": user.id,
  57. "email": user.email,
  58. "name": user.name,
  59. "role": user.role,
  60. "profile_image_url": user.profile_image_url,
  61. }
  62. else:
  63. raise HTTPException(400, detail=ERROR_MESSAGES.INVALID_CRED)
  64. ############################
  65. # SignUp
  66. ############################
  67. @router.post("/signup", response_model=SigninResponse)
  68. async def signup(form_data: SignupForm):
  69. if not Users.get_user_by_email(form_data.email.lower()):
  70. try:
  71. role = "admin" if Users.get_num_users() == 0 else "pending"
  72. hashed = get_password_hash(form_data.password)
  73. user = Auths.insert_new_auth(form_data.email, hashed, form_data.name, role)
  74. if user:
  75. token = create_token(data={"email": user.email})
  76. # response.set_cookie(key='token', value=token, httponly=True)
  77. return {
  78. "token": token,
  79. "token_type": "Bearer",
  80. "id": user.id,
  81. "email": user.email,
  82. "name": user.name,
  83. "role": user.role,
  84. "profile_image_url": user.profile_image_url,
  85. }
  86. else:
  87. raise HTTPException(500, detail=ERROR_MESSAGES.DEFAULT(err))
  88. except Exception as err:
  89. raise HTTPException(500, detail=ERROR_MESSAGES.DEFAULT(err))
  90. else:
  91. raise HTTPException(400, detail=ERROR_MESSAGES.DEFAULT())