All files / resources/api/v2 departments.ts

0% Statements 0/117
0% Branches 0/1
0% Functions 0/1
0% Lines 0/117

Press n or j to go to the next uncovered block, b, p or k for the previous block.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155                                                                                                                                                                                                                                                                                                                     
import {
  LambdaApiFunction,
  handleResourceApi
} from './_base';
import { parseJsonBody } from './_utils';
 
import {
  api401Body, api403Body,
  generateApi400Body
} from '@/types/api/_shared';
import {
  CreateDepartmentApi,
  Department,
  ListDepartmentApi,
  createDepartmentApiBodyValidator
} from '@/types/api/departments';
import {
  TypedScanInput
} from '@/types/backend/dynamo';
import { TABLE_DEPARTMENT } from '@/types/backend/environment';
import {
  typedGet, typedPutItem, typedScan
} from '@/utils/backend/dynamoTyped';
import { getLogger } from '@/utils/common/logger';
 
const logger = getLogger('api/v2/departments');
 
const GET: LambdaApiFunction<ListDepartmentApi> = async function (event, user, userPerms) {
  logger.debug('GET', ...arguments);
 
  // Authorize the user
  if (user === null) {
    return [
      401,
      api401Body,
    ];
  }
  if (!userPerms.isAdmin) {
    return [
      403,
      api403Body,
    ];
  }
  if (!userPerms.isDistrictAdmin && userPerms.adminDepartments.length === 0) {
    return [
      403,
      api403Body,
    ];
  }
 
  // Generate the scan input
  const scanInput: TypedScanInput<Department> = {
    TableName: TABLE_DEPARTMENT(),
  };
  if (!user.isDistrictAdmin) {
    const filterExpressionKeys: string[] = [];
    userPerms.adminDepartments.forEach((dep, idx) => {
      const idKey = `:id${idx}`;
      filterExpressionKeys.push(idKey);
      scanInput.ExpressionAttributeValues = {
        ...scanInput.ExpressionAttributeValues,
        [idKey]: dep,
      };
    });
    scanInput.ExpressionAttributeNames = {
      '#id': 'id',
    };
    scanInput.FilterExpression = `#id in (${filterExpressionKeys.join(',')})`;
  }
 
  // Fetch, sort, and return the results
  const scanResult = await typedScan<Department>(scanInput);
  if (scanResult.Items) {
    scanResult.Items = scanResult.Items.sort((a, b) => (a.name || '').localeCompare(b.name || ''));
  }
 
  return [
    200,
    scanResult.Items || [],
  ];
};
 
const POST: LambdaApiFunction<CreateDepartmentApi> = async function (event, user, userPerms) {
  logger.debug('POST', ...arguments);
 
  // Authorize the user
  if (user === null) {
    return [
      401,
      api401Body,
    ];
  }
  if (!userPerms.isDistrictAdmin) {
    return [
      403,
      api403Body,
    ];
  }
 
  // Parse the body
  const [
    body,
    errorKeys,
  ] = parseJsonBody<CreateDepartmentApi['body']>(
    event.body,
    createDepartmentApiBodyValidator
  );
  if (
    body === null ||
    errorKeys.length > 0
  ) {
    return [
      400,
      generateApi400Body(errorKeys),
    ];
  }
 
  // Confirm the department doesn't already exist
  const getResult = await typedGet<Department>({
    TableName: TABLE_DEPARTMENT(),
    Key: {
      id: body.id,
    },
  });
  if (getResult.Item) {
    return [
      400,
      generateApi400Body([ 'id', ]),
    ];
  }
 
  // Insert the item
  await typedPutItem<Department>({
    TableName: TABLE_DEPARTMENT(),
    Item: {
      id: body.id,
      name: body.name,
      pagingTalkgroups: body.pagingTalkgroups,
      type: body.type,
      invoiceFrequency: body.invoiceFrequency,
      invoiceEmail: body.invoiceEmail,
    },
  });
 
  return [
    200,
    body,
  ];
};
 
export const main = handleResourceApi.bind(null, {
  GET,
  POST,
});