2017-01-05 19:07:42 -07:00
|
|
|
import isNativeToken from './common/is-native-token';
|
2019-04-07 06:50:36 -06:00
|
|
|
import { User } from '../../models/entities/user';
|
|
|
|
import { Users, AccessTokens, Apps } from '../../models';
|
2020-03-27 20:24:37 -06:00
|
|
|
import { ensure } from '../../prelude/ensure';
|
|
|
|
|
|
|
|
type App = {
|
|
|
|
permission: string[];
|
|
|
|
};
|
2016-12-28 15:49:51 -07:00
|
|
|
|
2019-04-12 10:43:22 -06:00
|
|
|
export default async (token: string): Promise<[User | null | undefined, App | null | undefined]> => {
|
2017-01-05 09:28:16 -07:00
|
|
|
if (token == null) {
|
2019-01-23 03:25:36 -07:00
|
|
|
return [null, null];
|
2017-01-05 09:28:16 -07:00
|
|
|
}
|
|
|
|
|
2017-01-05 19:07:42 -07:00
|
|
|
if (isNativeToken(token)) {
|
2018-04-11 02:40:01 -06:00
|
|
|
// Fetch user
|
2019-04-07 06:50:36 -06:00
|
|
|
const user = await Users
|
2018-04-11 02:40:01 -06:00
|
|
|
.findOne({ token });
|
2016-12-28 15:49:51 -07:00
|
|
|
|
2019-04-07 06:50:36 -06:00
|
|
|
if (user == null) {
|
2019-04-13 13:17:24 -06:00
|
|
|
throw new Error('user not found');
|
2016-12-28 15:49:51 -07:00
|
|
|
}
|
|
|
|
|
2019-01-23 03:25:36 -07:00
|
|
|
return [user, null];
|
2017-01-05 09:28:16 -07:00
|
|
|
} else {
|
2019-04-07 06:50:36 -06:00
|
|
|
const accessToken = await AccessTokens.findOne({
|
2017-02-08 06:49:01 -07:00
|
|
|
hash: token.toLowerCase()
|
2016-12-28 15:49:51 -07:00
|
|
|
});
|
|
|
|
|
2019-04-07 06:50:36 -06:00
|
|
|
if (accessToken == null) {
|
2019-04-13 13:17:24 -06:00
|
|
|
throw new Error('invalid signature');
|
2016-12-28 15:49:51 -07:00
|
|
|
}
|
|
|
|
|
2020-03-27 20:24:37 -06:00
|
|
|
AccessTokens.update(accessToken.id, {
|
|
|
|
lastUsedAt: new Date(),
|
|
|
|
});
|
2016-12-28 15:49:51 -07:00
|
|
|
|
2019-04-07 06:50:36 -06:00
|
|
|
const user = await Users
|
2019-04-15 10:20:28 -06:00
|
|
|
.findOne({
|
|
|
|
id: accessToken.userId // findOne(accessToken.userId) のように書かないのは後方互換性のため
|
|
|
|
});
|
2016-12-28 15:49:51 -07:00
|
|
|
|
2020-03-27 20:24:37 -06:00
|
|
|
if (accessToken.appId) {
|
|
|
|
const app = await Apps
|
|
|
|
.findOne(accessToken.appId).then(ensure);
|
|
|
|
|
|
|
|
return [user, {
|
|
|
|
permission: app.permission
|
|
|
|
}];
|
|
|
|
} else {
|
|
|
|
return [user, {
|
|
|
|
permission: accessToken.permission
|
|
|
|
}];
|
|
|
|
}
|
2016-12-28 15:49:51 -07:00
|
|
|
}
|
2019-01-23 03:25:36 -07:00
|
|
|
};
|