mirror of
https://github.com/ae-utbm/sith.git
synced 2025-11-22 12:46:58 +00:00
Compare commits
13 Commits
dependabot
...
room-reser
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
e5a2d1b2db | ||
|
|
f66c25cce2 | ||
|
|
96436570e0 | ||
|
|
1c4abb0fa6 | ||
|
|
ed5fa13f00 | ||
|
|
2dc3007524 | ||
|
|
16e03f20d9 | ||
|
|
1118693816 | ||
|
|
88681cbe81 | ||
|
|
e5f406b0f1 | ||
|
|
4a958481ce | ||
|
|
ca3022b8ec | ||
| 0f99729a98 |
@@ -1,7 +1,7 @@
|
|||||||
repos:
|
repos:
|
||||||
- repo: https://github.com/astral-sh/ruff-pre-commit
|
- repo: https://github.com/astral-sh/ruff-pre-commit
|
||||||
# Ruff version.
|
# Ruff version.
|
||||||
rev: v0.14.4
|
rev: v0.11.13
|
||||||
hooks:
|
hooks:
|
||||||
- id: ruff-check # just check the code, and print the errors
|
- id: ruff-check # just check the code, and print the errors
|
||||||
- id: ruff-check # actually fix the fixable errors, but print nothing
|
- id: ruff-check # actually fix the fixable errors, but print nothing
|
||||||
@@ -14,7 +14,7 @@ repos:
|
|||||||
- id: biome-check
|
- id: biome-check
|
||||||
additional_dependencies: ["@biomejs/biome@1.9.4"]
|
additional_dependencies: ["@biomejs/biome@1.9.4"]
|
||||||
- repo: https://github.com/rtts/djhtml
|
- repo: https://github.com/rtts/djhtml
|
||||||
rev: 3.0.10
|
rev: 3.0.7
|
||||||
hooks:
|
hooks:
|
||||||
- id: djhtml
|
- id: djhtml
|
||||||
name: format templates
|
name: format templates
|
||||||
|
|||||||
@@ -6,8 +6,6 @@ from api.models import ApiClient, ApiKey
|
|||||||
|
|
||||||
|
|
||||||
class ApiKeyAuth(APIKeyHeader):
|
class ApiKeyAuth(APIKeyHeader):
|
||||||
"""Authentication through client api keys."""
|
|
||||||
|
|
||||||
param_name = "X-APIKey"
|
param_name = "X-APIKey"
|
||||||
|
|
||||||
def authenticate(self, request: HttpRequest, key: str | None) -> ApiClient | None:
|
def authenticate(self, request: HttpRequest, key: str | None) -> ApiClient | None:
|
||||||
|
|||||||
@@ -1,48 +0,0 @@
|
|||||||
import pytest
|
|
||||||
from django.test import Client
|
|
||||||
from django.urls import path
|
|
||||||
from model_bakery import baker
|
|
||||||
from ninja import NinjaAPI
|
|
||||||
from ninja.security import SessionAuth
|
|
||||||
|
|
||||||
from api.auth import ApiKeyAuth
|
|
||||||
from api.hashers import generate_key
|
|
||||||
from api.models import ApiClient, ApiKey
|
|
||||||
|
|
||||||
api = NinjaAPI()
|
|
||||||
|
|
||||||
|
|
||||||
@api.post("", auth=[ApiKeyAuth(), SessionAuth()])
|
|
||||||
def post_method(*args, **kwargs) -> None:
|
|
||||||
"""Dummy POST route authenticated by either api key or session cookie."""
|
|
||||||
pass
|
|
||||||
|
|
||||||
|
|
||||||
urlpatterns = [path("", api.urls)]
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
@pytest.mark.urls(__name__)
|
|
||||||
@pytest.mark.parametrize("user_logged_in", [False, True])
|
|
||||||
def test_csrf_token(user_logged_in):
|
|
||||||
"""Test that CSRF check happens only when no api key is used."""
|
|
||||||
client = Client(enforce_csrf_checks=True)
|
|
||||||
key, hashed = generate_key()
|
|
||||||
api_client = baker.make(ApiClient)
|
|
||||||
baker.make(ApiKey, client=api_client, hashed_key=hashed)
|
|
||||||
if user_logged_in:
|
|
||||||
client.force_login(api_client.owner)
|
|
||||||
|
|
||||||
response = client.post("")
|
|
||||||
assert response.status_code == 403
|
|
||||||
assert response.json()["detail"] == "CSRF check Failed"
|
|
||||||
|
|
||||||
# if using a valid API key, CSRF check should not occur
|
|
||||||
response = client.post("", headers={"X-APIKey": key})
|
|
||||||
assert response.status_code == 200
|
|
||||||
|
|
||||||
# if using a wrong API key, ApiKeyAuth should fail,
|
|
||||||
# leading to a fallback into SessionAuth and a CSRF check
|
|
||||||
response = client.post("", headers={"X-APIKey": generate_key()[0]})
|
|
||||||
assert response.status_code == 403
|
|
||||||
assert response.json()["detail"] == "CSRF check Failed"
|
|
||||||
@@ -1,4 +1,3 @@
|
|||||||
from ninja.security import SessionAuth
|
|
||||||
from ninja_extra import NinjaExtraAPI
|
from ninja_extra import NinjaExtraAPI
|
||||||
|
|
||||||
api = NinjaExtraAPI(
|
api = NinjaExtraAPI(
|
||||||
@@ -6,6 +5,6 @@ api = NinjaExtraAPI(
|
|||||||
description="Portail Interactif de Communication avec les Outils Numériques",
|
description="Portail Interactif de Communication avec les Outils Numériques",
|
||||||
version="0.2.0",
|
version="0.2.0",
|
||||||
urls_namespace="api",
|
urls_namespace="api",
|
||||||
auth=[SessionAuth()],
|
csrf=True,
|
||||||
)
|
)
|
||||||
api.auto_discover_controllers()
|
api.auto_discover_controllers()
|
||||||
|
|||||||
14
club/api.py
14
club/api.py
@@ -1,5 +1,7 @@
|
|||||||
|
from typing import Annotated
|
||||||
|
|
||||||
|
from annotated_types import MinLen
|
||||||
from django.db.models import Prefetch
|
from django.db.models import Prefetch
|
||||||
from ninja import Query
|
|
||||||
from ninja.security import SessionAuth
|
from ninja.security import SessionAuth
|
||||||
from ninja_extra import ControllerBase, api_controller, paginate, route
|
from ninja_extra import ControllerBase, api_controller, paginate, route
|
||||||
from ninja_extra.pagination import PageNumberPaginationExtra
|
from ninja_extra.pagination import PageNumberPaginationExtra
|
||||||
@@ -8,7 +10,7 @@ from ninja_extra.schemas import PaginatedResponseSchema
|
|||||||
from api.auth import ApiKeyAuth
|
from api.auth import ApiKeyAuth
|
||||||
from api.permissions import CanAccessLookup, HasPerm
|
from api.permissions import CanAccessLookup, HasPerm
|
||||||
from club.models import Club, Membership
|
from club.models import Club, Membership
|
||||||
from club.schemas import ClubSchema, ClubSearchFilterSchema, SimpleClubSchema
|
from club.schemas import ClubSchema, SimpleClubSchema
|
||||||
|
|
||||||
|
|
||||||
@api_controller("/club")
|
@api_controller("/club")
|
||||||
@@ -16,18 +18,18 @@ class ClubController(ControllerBase):
|
|||||||
@route.get(
|
@route.get(
|
||||||
"/search",
|
"/search",
|
||||||
response=PaginatedResponseSchema[SimpleClubSchema],
|
response=PaginatedResponseSchema[SimpleClubSchema],
|
||||||
auth=[ApiKeyAuth(), SessionAuth()],
|
auth=[SessionAuth(), ApiKeyAuth()],
|
||||||
permissions=[CanAccessLookup],
|
permissions=[CanAccessLookup],
|
||||||
url_name="search_club",
|
url_name="search_club",
|
||||||
)
|
)
|
||||||
@paginate(PageNumberPaginationExtra, page_size=50)
|
@paginate(PageNumberPaginationExtra, page_size=50)
|
||||||
def search_club(self, filters: Query[ClubSearchFilterSchema]):
|
def search_club(self, search: Annotated[str, MinLen(1)]):
|
||||||
return filters.filter(Club.objects.all())
|
return Club.objects.filter(name__icontains=search).values()
|
||||||
|
|
||||||
@route.get(
|
@route.get(
|
||||||
"/{int:club_id}",
|
"/{int:club_id}",
|
||||||
response=ClubSchema,
|
response=ClubSchema,
|
||||||
auth=[ApiKeyAuth(), SessionAuth()],
|
auth=[SessionAuth(), ApiKeyAuth()],
|
||||||
permissions=[HasPerm("club.view_club")],
|
permissions=[HasPerm("club.view_club")],
|
||||||
url_name="fetch_club",
|
url_name="fetch_club",
|
||||||
)
|
)
|
||||||
|
|||||||
@@ -37,7 +37,6 @@ from core.views.widgets.ajax_select import (
|
|||||||
AutoCompleteSelectUser,
|
AutoCompleteSelectUser,
|
||||||
)
|
)
|
||||||
from counter.models import Counter, Selling
|
from counter.models import Counter, Selling
|
||||||
from counter.schemas import SaleFilterSchema
|
|
||||||
|
|
||||||
|
|
||||||
class ClubEditForm(forms.ModelForm):
|
class ClubEditForm(forms.ModelForm):
|
||||||
@@ -192,18 +191,6 @@ class SellingsForm(forms.Form):
|
|||||||
required=False,
|
required=False,
|
||||||
)
|
)
|
||||||
|
|
||||||
def to_filter_schema(self) -> SaleFilterSchema:
|
|
||||||
products = (
|
|
||||||
*self.cleaned_data["products"],
|
|
||||||
*self.cleaned_data["archived_products"],
|
|
||||||
)
|
|
||||||
return SaleFilterSchema(
|
|
||||||
after=self.cleaned_data["begin_date"],
|
|
||||||
before=self.cleaned_data["end_date"],
|
|
||||||
counters={c.id for c in self.cleaned_data["counters"]} or None,
|
|
||||||
products={p.id for p in products} or None,
|
|
||||||
)
|
|
||||||
|
|
||||||
|
|
||||||
class ClubOldMemberForm(forms.Form):
|
class ClubOldMemberForm(forms.Form):
|
||||||
members_old = forms.ModelMultipleChoiceField(
|
members_old = forms.ModelMultipleChoiceField(
|
||||||
@@ -265,7 +252,7 @@ class ClubAddMemberForm(ClubMemberForm):
|
|||||||
Board members can attribute roles lower than their own.
|
Board members can attribute roles lower than their own.
|
||||||
Other users cannot attribute roles with this form
|
Other users cannot attribute roles with this form
|
||||||
"""
|
"""
|
||||||
if self.request_user.has_perm("club.add_membership"):
|
if self.request_user.has_perm("club.add_subscription"):
|
||||||
return settings.SITH_CLUB_ROLES_ID["President"]
|
return settings.SITH_CLUB_ROLES_ID["President"]
|
||||||
membership = self.request_user_membership
|
membership = self.request_user_membership
|
||||||
if membership is None or membership.role <= settings.SITH_MAXIMUM_FREE_ROLE:
|
if membership is None or membership.role <= settings.SITH_MAXIMUM_FREE_ROLE:
|
||||||
|
|||||||
@@ -1,26 +1,9 @@
|
|||||||
from typing import Annotated
|
from ninja import ModelSchema
|
||||||
|
|
||||||
from annotated_types import MinLen
|
|
||||||
from django.db.models import Q
|
|
||||||
from ninja import Field, FilterSchema, ModelSchema
|
|
||||||
|
|
||||||
from club.models import Club, Membership
|
from club.models import Club, Membership
|
||||||
from core.schemas import SimpleUserSchema
|
from core.schemas import SimpleUserSchema
|
||||||
|
|
||||||
|
|
||||||
class ClubSearchFilterSchema(FilterSchema):
|
|
||||||
search: Annotated[str, MinLen(1)] | None = Field(None, q="name__icontains")
|
|
||||||
is_active: bool | None = None
|
|
||||||
parent_id: int | None = None
|
|
||||||
parent_name: str | None = Field(None, q="parent__name__icontains")
|
|
||||||
exclude_ids: set[int] | None = None
|
|
||||||
|
|
||||||
def filter_exclude_ids(self, value: set[int] | None):
|
|
||||||
if value is None:
|
|
||||||
return Q()
|
|
||||||
return ~Q(id__in=value)
|
|
||||||
|
|
||||||
|
|
||||||
class SimpleClubSchema(ModelSchema):
|
class SimpleClubSchema(ModelSchema):
|
||||||
class Meta:
|
class Meta:
|
||||||
model = Club
|
model = Club
|
||||||
|
|||||||
@@ -9,18 +9,6 @@
|
|||||||
{{ club.short_description }}
|
{{ club.short_description }}
|
||||||
{%- endblock %}
|
{%- endblock %}
|
||||||
|
|
||||||
{% block metatags %}
|
|
||||||
<meta property="og:url" content="{{ request.build_absolute_uri(club.get_absolute_url()) }}" />
|
|
||||||
<meta property="og:type" content="website" />
|
|
||||||
<meta property="og:title" content="{{ club.name }}" />
|
|
||||||
<meta property="og:description" content="{{ club.short_description }}" />
|
|
||||||
{% if club.logo %}
|
|
||||||
<meta property="og:image" content="{{ request.build_absolute_uri(club.logo.url) }}" />
|
|
||||||
{% else %}
|
|
||||||
<meta property="og:image" content="{{ request.build_absolute_uri(static("core/img/logo_no_text.png")) }}" />
|
|
||||||
{% endif %}
|
|
||||||
{% endblock %}
|
|
||||||
|
|
||||||
{% block content %}
|
{% block content %}
|
||||||
<div id="club_detail">
|
<div id="club_detail">
|
||||||
{% if club.logo %}
|
{% if club.logo %}
|
||||||
@@ -29,7 +17,7 @@
|
|||||||
{% if page_revision %}
|
{% if page_revision %}
|
||||||
{{ page_revision|markdown }}
|
{{ page_revision|markdown }}
|
||||||
{% else %}
|
{% else %}
|
||||||
<h3>{{ club.name }}</h3>
|
<h3>{% trans %}Club{% endtrans %}</h3>
|
||||||
{% endif %}
|
{% endif %}
|
||||||
</div>
|
</div>
|
||||||
{% endblock %}
|
{% endblock %}
|
||||||
|
|||||||
@@ -6,11 +6,11 @@ because it works with a somewhat dynamic form,
|
|||||||
but was written before Alpine was introduced in the project.
|
but was written before Alpine was introduced in the project.
|
||||||
TODO : rewrite the pagination used in this template an Alpine one
|
TODO : rewrite the pagination used in this template an Alpine one
|
||||||
#}
|
#}
|
||||||
{% macro paginate(page_obj, paginator) %}
|
{% macro paginate(page_obj, paginator, js_action) %}
|
||||||
{% set js = "formPagination(this)" %}
|
{% set js = js_action|default('') %}
|
||||||
{% if page_obj.has_previous() or page_obj.has_next() %}
|
{% if page_obj.has_previous() or page_obj.has_next() %}
|
||||||
{% if page_obj.has_previous() %}
|
{% if page_obj.has_previous() %}
|
||||||
<a type="submit" onclick="{{ js }}" href="?page={{ page_obj.previous_page_number() }}">{% trans %}Previous{% endtrans %}</a>
|
<a {% if js %} type="submit" onclick="{{ js }}" {% endif %} href="?page={{ page_obj.previous_page_number() }}">{% trans %}Previous{% endtrans %}</a>
|
||||||
{% else %}
|
{% else %}
|
||||||
<span class="disabled">{% trans %}Previous{% endtrans %}</span>
|
<span class="disabled">{% trans %}Previous{% endtrans %}</span>
|
||||||
{% endif %}
|
{% endif %}
|
||||||
@@ -18,11 +18,11 @@ TODO : rewrite the pagination used in this template an Alpine one
|
|||||||
{% if page_obj.number == i %}
|
{% if page_obj.number == i %}
|
||||||
<span class="active">{{ i }} <span class="sr-only">({% trans %}current{% endtrans %})</span></span>
|
<span class="active">{{ i }} <span class="sr-only">({% trans %}current{% endtrans %})</span></span>
|
||||||
{% else %}
|
{% else %}
|
||||||
<a type="submit" onclick="{{ js }}" href="?page={{ i }}">{{ i }}</a>
|
<a {% if js %} type="submit" onclick="{{ js }}" {% endif %} href="?page={{ i }}">{{ i }}</a>
|
||||||
{% endif %}
|
{% endif %}
|
||||||
{% endfor %}
|
{% endfor %}
|
||||||
{% if page_obj.has_next() %}
|
{% if page_obj.has_next() %}
|
||||||
<a type="submit" onclick="{{ js }}" href="?page={{ page_obj.next_page_number() }}">{% trans %}Next{% endtrans %}</a>
|
<a {% if js %} type="submit" onclick="{{ js }}" {% endif %} href="?page={{ page_obj.next_page_number() }}">{% trans %}Next{% endtrans %}</a>
|
||||||
{% else %}
|
{% else %}
|
||||||
<span class="disabled">{% trans %}Next{% endtrans %}</span>
|
<span class="disabled">{% trans %}Next{% endtrans %}</span>
|
||||||
{% endif %}
|
{% endif %}
|
||||||
@@ -81,10 +81,6 @@ TODO : rewrite the pagination used in this template an Alpine one
|
|||||||
{% endfor %}
|
{% endfor %}
|
||||||
</tbody>
|
</tbody>
|
||||||
</table>
|
</table>
|
||||||
{{ paginate(paginated_result, paginator) }}
|
|
||||||
{% endblock %}
|
|
||||||
|
|
||||||
{% block script %}
|
|
||||||
<script type="text/javascript">
|
<script type="text/javascript">
|
||||||
function formPagination(link){
|
function formPagination(link){
|
||||||
const form = document.getElementById("form")
|
const form = document.getElementById("form")
|
||||||
@@ -93,6 +89,7 @@ TODO : rewrite the pagination used in this template an Alpine one
|
|||||||
form.submit();
|
form.submit();
|
||||||
}
|
}
|
||||||
</script>
|
</script>
|
||||||
|
{{ paginate(paginated_result, paginator, "formPagination(this)") }}
|
||||||
{% endblock %}
|
{% endblock %}
|
||||||
|
|
||||||
|
|
||||||
|
|||||||
@@ -1,25 +1,63 @@
|
|||||||
{% extends "core/base.jinja" %}
|
{% extends "core/base.jinja" %}
|
||||||
|
{% from "reservation/macros.jinja" import room_detail %}
|
||||||
|
|
||||||
|
{% block additional_css %}
|
||||||
|
<link rel="stylesheet" href="{{ static("core/components/card.scss") }}">
|
||||||
|
{% endblock %}
|
||||||
|
|
||||||
{% block content %}
|
{% block content %}
|
||||||
<h3>{% trans %}Club tools{% endtrans %}</h3>
|
<h3>{% trans %}Club tools{% endtrans %} ({{ club.name }})</h3>
|
||||||
<div>
|
<div>
|
||||||
<h4>{% trans %}Communication:{% endtrans %}</h4>
|
<h4>{% trans %}Communication:{% endtrans %}</h4>
|
||||||
<ul>
|
<ul>
|
||||||
<li> <a href="{{ url('com:news_new') }}?club={{ object.id }}">{% trans %}Create a news{% endtrans %}</a></li>
|
<li>
|
||||||
<li> <a href="{{ url('com:weekmail_article') }}?club={{ object.id }}">{% trans %}Post in the Weekmail{% endtrans %}</a></li>
|
<a href="{{ url('com:news_new') }}?club={{ object.id }}">
|
||||||
|
{% trans %}Create a news{% endtrans %}
|
||||||
|
</a>
|
||||||
|
</li>
|
||||||
|
<li>
|
||||||
|
<a href="{{ url('com:weekmail_article') }}?club={{ object.id }}">
|
||||||
|
{% trans %}Post in the Weekmail{% endtrans %}
|
||||||
|
</a>
|
||||||
|
</li>
|
||||||
{% if object.trombi %}
|
{% if object.trombi %}
|
||||||
<li> <a href="{{ url('trombi:detail', trombi_id=object.trombi.id) }}">{% trans %}Edit Trombi{% endtrans %}</a></li>
|
<li>
|
||||||
|
<a href="{{ url('trombi:detail', trombi_id=object.trombi.id) }}">
|
||||||
|
{% trans %}Edit Trombi{% endtrans %}</a>
|
||||||
|
</li>
|
||||||
{% else %}
|
{% else %}
|
||||||
<li> <a href="{{ url('trombi:create', club_id=object.id) }}">{% trans %}New Trombi{% endtrans %}</a></li>
|
<li><a href="{{ url('trombi:create', club_id=object.id) }}">{% trans %}New Trombi{% endtrans %}</a></li>
|
||||||
<li> <a href="{{ url('club:poster_list', club_id=object.id) }}">{% trans %}Posters{% endtrans %}</a></li>
|
<li><a href="{{ url('club:poster_list', club_id=object.id) }}">{% trans %}Posters{% endtrans %}</a></li>
|
||||||
{% endif %}
|
{% endif %}
|
||||||
</ul>
|
</ul>
|
||||||
|
<h4>{% trans %}Reservable rooms{% endtrans %}</h4>
|
||||||
|
<a
|
||||||
|
href="{{ url("reservation:room_create") }}?club={{ object.id }}"
|
||||||
|
class="btn btn-blue"
|
||||||
|
>
|
||||||
|
{% trans %}Add a room{% endtrans %}
|
||||||
|
</a>
|
||||||
|
{%- if reservable_rooms|length > 0 -%}
|
||||||
|
<ul class="card-group">
|
||||||
|
{%- for room in reservable_rooms -%}
|
||||||
|
{{ room_detail(
|
||||||
|
room,
|
||||||
|
can_edit=user.can_edit(room),
|
||||||
|
can_delete=request.user.has_perm("reservation.delete_room")
|
||||||
|
) }}
|
||||||
|
{%- endfor -%}
|
||||||
|
</ul>
|
||||||
|
{%- else -%}
|
||||||
|
<p>
|
||||||
|
{% trans %}This club manages no reservable room{% endtrans %}
|
||||||
|
</p>
|
||||||
|
{%- endif -%}
|
||||||
<h4>{% trans %}Counters:{% endtrans %}</h4>
|
<h4>{% trans %}Counters:{% endtrans %}</h4>
|
||||||
<ul>
|
<ul>
|
||||||
{% for c in object.counters.filter(type="OFFICE") %}
|
{% for counter in counters %}
|
||||||
<li>{{ c }}:
|
<li>{{ counter }}:
|
||||||
<a href="{{ url('counter:details', counter_id=c.id) }}">View</a>
|
<a href="{{ url('counter:details', counter_id=counter.id) }}">View</a>
|
||||||
<a href="{{ url('counter:admin', counter_id=c.id) }}">Edit</a>
|
<a href="{{ url('counter:admin', counter_id=counter.id) }}">Edit</a>
|
||||||
</li>
|
</li>
|
||||||
{% endfor %}
|
{% endfor %}
|
||||||
</ul>
|
</ul>
|
||||||
|
|||||||
@@ -1,8 +1,12 @@
|
|||||||
{% extends "core/base.jinja" %}
|
{% extends "core/base.jinja" %}
|
||||||
{% from 'core/page/macros.jinja' import page_history %}
|
{% from 'core/macros_pages.jinja' import page_history %}
|
||||||
|
|
||||||
{% block content %}
|
{% block content %}
|
||||||
{{ page_history(club.page) }}
|
{% if club.page %}
|
||||||
|
{{ page_history(club.page) }}
|
||||||
|
{% else %}
|
||||||
|
{% trans %}No page existing for this club{% endtrans %}
|
||||||
|
{% endif %}
|
||||||
{% endblock %}
|
{% endblock %}
|
||||||
|
|
||||||
|
|
||||||
|
|||||||
@@ -1,12 +1,8 @@
|
|||||||
{% extends "core/base.jinja" %}
|
{% extends "core/base.jinja" %}
|
||||||
|
{% from 'core/macros_pages.jinja' import page_edit_form %}
|
||||||
|
|
||||||
{% block content %}
|
{% block content %}
|
||||||
<h2>{% trans %}Edit page{% endtrans %}</h2>
|
{{ page_edit_form(page, form, url('club:club_edit_page', club_id=page.club.id), csrf_token) }}
|
||||||
<form action="{{ url('club:club_edit_page', club_id=page.club.id) }}" method="post">
|
|
||||||
{% csrf_token %}
|
|
||||||
{{ form.as_p() }}
|
|
||||||
<p><input type="submit" value="{% trans %}Save{% endtrans %}" /></p>
|
|
||||||
</form>
|
|
||||||
{% endblock %}
|
{% endblock %}
|
||||||
|
|
||||||
|
|
||||||
|
|||||||
@@ -1,8 +1,7 @@
|
|||||||
from datetime import date, timedelta
|
from datetime import date, timedelta
|
||||||
|
|
||||||
import pytest
|
import pytest
|
||||||
from django.contrib.auth.models import Permission
|
from django.test import Client
|
||||||
from django.test import Client, TestCase
|
|
||||||
from django.urls import reverse
|
from django.urls import reverse
|
||||||
from model_bakery import baker
|
from model_bakery import baker
|
||||||
from model_bakery.recipe import Recipe
|
from model_bakery.recipe import Recipe
|
||||||
@@ -10,54 +9,6 @@ from pytest_django.asserts import assertNumQueries
|
|||||||
|
|
||||||
from club.models import Club, Membership
|
from club.models import Club, Membership
|
||||||
from core.baker_recipes import subscriber_user
|
from core.baker_recipes import subscriber_user
|
||||||
from core.models import Group, Page, User
|
|
||||||
|
|
||||||
|
|
||||||
class TestClubSearch(TestCase):
|
|
||||||
@classmethod
|
|
||||||
def setUpTestData(cls):
|
|
||||||
cls.url = reverse("api:search_club")
|
|
||||||
cls.user = baker.make(
|
|
||||||
User, user_permissions=[Permission.objects.get(codename="access_lookup")]
|
|
||||||
)
|
|
||||||
# delete existing clubs to avoid side effect
|
|
||||||
groups = list(
|
|
||||||
Group.objects.exclude(club=None, club_board=None).values_list(
|
|
||||||
"id", flat=True
|
|
||||||
)
|
|
||||||
)
|
|
||||||
Page.objects.exclude(club=None).delete()
|
|
||||||
Club.objects.all().delete()
|
|
||||||
Group.objects.filter(id__in=groups).delete()
|
|
||||||
|
|
||||||
cls.clubs = baker.make(
|
|
||||||
Club,
|
|
||||||
_quantity=5,
|
|
||||||
name=iter(["AE", "ae 1", "Troll", "Dev AE", "pdf"]),
|
|
||||||
is_active=True,
|
|
||||||
)
|
|
||||||
|
|
||||||
def test_inactive_club(self):
|
|
||||||
self.client.force_login(self.user)
|
|
||||||
inactive_ids = {self.clubs[0].id, self.clubs[2].id}
|
|
||||||
Club.objects.filter(id__in=inactive_ids).update(is_active=False)
|
|
||||||
response = self.client.get(self.url, {"is_active": False})
|
|
||||||
assert response.status_code == 200
|
|
||||||
assert {d["id"] for d in response.json()["results"]} == inactive_ids
|
|
||||||
|
|
||||||
def test_excluded_id(self):
|
|
||||||
self.client.force_login(self.user)
|
|
||||||
response = self.client.get(self.url, {"exclude_ids": [self.clubs[1].id]})
|
|
||||||
assert response.status_code == 200
|
|
||||||
ids = {d["id"] for d in response.json()["results"]}
|
|
||||||
assert ids == {c.id for c in [self.clubs[0], *self.clubs[2:]]}
|
|
||||||
|
|
||||||
def test_club_search(self):
|
|
||||||
self.client.force_login(self.user)
|
|
||||||
response = self.client.get(self.url, {"search": "AE"})
|
|
||||||
assert response.status_code == 200
|
|
||||||
ids = {d["id"] for d in response.json()["results"]}
|
|
||||||
assert ids == {c.id for c in [self.clubs[0], self.clubs[1], self.clubs[3]]}
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
@pytest.mark.django_db
|
||||||
|
|||||||
@@ -3,10 +3,9 @@ from bs4 import BeautifulSoup
|
|||||||
from django.test import Client
|
from django.test import Client
|
||||||
from django.urls import reverse
|
from django.urls import reverse
|
||||||
from model_bakery import baker
|
from model_bakery import baker
|
||||||
from pytest_django.asserts import assertHTMLEqual, assertRedirects
|
from pytest_django.asserts import assertHTMLEqual
|
||||||
|
|
||||||
from club.models import Club, Membership
|
from club.models import Club
|
||||||
from core.baker_recipes import subscriber_user
|
|
||||||
from core.markdown import markdown
|
from core.markdown import markdown
|
||||||
from core.models import PageRev, User
|
from core.models import PageRev, User
|
||||||
|
|
||||||
@@ -17,6 +16,7 @@ def test_page_display_on_club_main_page(client: Client):
|
|||||||
club = baker.make(Club)
|
club = baker.make(Club)
|
||||||
content = "# foo\nLorem ipsum dolor sit amet"
|
content = "# foo\nLorem ipsum dolor sit amet"
|
||||||
baker.make(PageRev, page=club.page, revision=1, content=content)
|
baker.make(PageRev, page=club.page, revision=1, content=content)
|
||||||
|
client.force_login(baker.make(User))
|
||||||
res = client.get(reverse("club:club_view", kwargs={"club_id": club.id}))
|
res = client.get(reverse("club:club_view", kwargs={"club_id": club.id}))
|
||||||
|
|
||||||
assert res.status_code == 200
|
assert res.status_code == 200
|
||||||
@@ -30,42 +30,10 @@ def test_club_main_page_without_content(client: Client):
|
|||||||
"""Test the club view works, even if the club page is empty"""
|
"""Test the club view works, even if the club page is empty"""
|
||||||
club = baker.make(Club)
|
club = baker.make(Club)
|
||||||
club.page.revisions.all().delete()
|
club.page.revisions.all().delete()
|
||||||
|
client.force_login(baker.make(User))
|
||||||
res = client.get(reverse("club:club_view", kwargs={"club_id": club.id}))
|
res = client.get(reverse("club:club_view", kwargs={"club_id": club.id}))
|
||||||
|
|
||||||
assert res.status_code == 200
|
assert res.status_code == 200
|
||||||
soup = BeautifulSoup(res.text, "lxml")
|
soup = BeautifulSoup(res.text, "lxml")
|
||||||
detail_html = soup.find(id="club_detail")
|
detail_html = soup.find(id="club_detail")
|
||||||
assert detail_html.find_all("markdown") == []
|
assert detail_html.find_all("markdown") == []
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
def test_page_revision(client: Client):
|
|
||||||
club = baker.make(Club)
|
|
||||||
revisions = baker.make(
|
|
||||||
PageRev, page=club.page, _quantity=3, content=iter(["foo", "bar", "baz"])
|
|
||||||
)
|
|
||||||
client.force_login(baker.make(User))
|
|
||||||
url = reverse(
|
|
||||||
"club:club_view_rev", kwargs={"club_id": club.id, "rev_id": revisions[1].id}
|
|
||||||
)
|
|
||||||
res = client.get(url)
|
|
||||||
assert res.status_code == 200
|
|
||||||
soup = BeautifulSoup(res.text, "lxml")
|
|
||||||
detail_html = soup.find(class_="markdown")
|
|
||||||
assertHTMLEqual(detail_html.decode_contents(), markdown(revisions[1].content))
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
def test_edit_page(client: Client):
|
|
||||||
club = baker.make(Club)
|
|
||||||
user = subscriber_user.make()
|
|
||||||
baker.make(Membership, user=user, club=club, role=3)
|
|
||||||
client.force_login(user)
|
|
||||||
url = reverse("club:club_edit_page", kwargs={"club_id": club.id})
|
|
||||||
content = "# foo\nLorem ipsum dolor sit amet"
|
|
||||||
|
|
||||||
res = client.get(url)
|
|
||||||
assert res.status_code == 200
|
|
||||||
res = client.post(url, data={"content": content})
|
|
||||||
assertRedirects(res, reverse("club:club_view", kwargs={"club_id": club.id}))
|
|
||||||
assert club.page.revisions.last().content == content
|
|
||||||
|
|||||||
@@ -1,6 +1,3 @@
|
|||||||
import csv
|
|
||||||
import itertools
|
|
||||||
|
|
||||||
import pytest
|
import pytest
|
||||||
from django.test import Client
|
from django.test import Client
|
||||||
from django.urls import reverse
|
from django.urls import reverse
|
||||||
@@ -10,20 +7,16 @@ from club.forms import SellingsForm
|
|||||||
from club.models import Club
|
from club.models import Club
|
||||||
from core.models import User
|
from core.models import User
|
||||||
from counter.baker_recipes import product_recipe, sale_recipe
|
from counter.baker_recipes import product_recipe, sale_recipe
|
||||||
from counter.models import Counter, Customer, Product, Selling
|
from counter.models import Counter, Customer
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
@pytest.mark.django_db
|
||||||
def test_sales_page_doesnt_crash(client: Client):
|
def test_sales_page_doesnt_crash(client: Client):
|
||||||
"""Basic crashtest on club sales view."""
|
|
||||||
club = baker.make(Club)
|
club = baker.make(Club)
|
||||||
product = baker.make(Product, club=club)
|
|
||||||
admin = baker.make(User, is_superuser=True)
|
admin = baker.make(User, is_superuser=True)
|
||||||
client.force_login(admin)
|
client.force_login(admin)
|
||||||
url = reverse("club:club_sellings", kwargs={"club_id": club.id})
|
response = client.get(reverse("club:club_sellings", kwargs={"club_id": club.id}))
|
||||||
assert client.get(url).status_code == 200
|
assert response.status_code == 200
|
||||||
assert client.post(url).status_code == 200
|
|
||||||
assert client.post(url, data={"products": [product.id]}).status_code == 200
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
@pytest.mark.django_db
|
||||||
@@ -43,62 +36,3 @@ def test_sales_form_counter_filter():
|
|||||||
form = SellingsForm(club)
|
form = SellingsForm(club)
|
||||||
form_counters = list(form.fields["counters"].queryset)
|
form_counters = list(form.fields["counters"].queryset)
|
||||||
assert form_counters == [counters[1], counters[2], counters[0]]
|
assert form_counters == [counters[1], counters[2], counters[0]]
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
def test_club_sales_csv(client: Client):
|
|
||||||
client.force_login(baker.make(User, is_superuser=True))
|
|
||||||
club = baker.make(Club)
|
|
||||||
counter = baker.make(Counter, club=club)
|
|
||||||
product = product_recipe.make(club=club, counters=[counter], purchase_price=0.5)
|
|
||||||
customers = baker.make(Customer, amount=100, _quantity=2, _bulk_create=True)
|
|
||||||
sales: list[Selling] = sale_recipe.make(
|
|
||||||
club=club,
|
|
||||||
counter=counter,
|
|
||||||
quantity=2,
|
|
||||||
unit_price=1.5,
|
|
||||||
product=iter([product, product, None]),
|
|
||||||
customer=itertools.cycle(customers),
|
|
||||||
_quantity=3,
|
|
||||||
)
|
|
||||||
url = reverse("club:sellings_csv", kwargs={"club_id": club.id})
|
|
||||||
response = client.post(url, data={"counters": [counter.id]})
|
|
||||||
assert response.status_code == 200
|
|
||||||
reader = csv.reader(s.decode() for s in response.streaming_content)
|
|
||||||
data = list(reader)
|
|
||||||
sale_rows = [
|
|
||||||
[
|
|
||||||
str(s.date),
|
|
||||||
str(counter),
|
|
||||||
str(s.seller),
|
|
||||||
s.customer.user.get_display_name(),
|
|
||||||
s.label,
|
|
||||||
"2",
|
|
||||||
"1.50",
|
|
||||||
"3.00",
|
|
||||||
"Compte utilisateur",
|
|
||||||
]
|
|
||||||
for s in sales[::-1]
|
|
||||||
]
|
|
||||||
sale_rows[2].extend(["0.50", "1.00"])
|
|
||||||
sale_rows[1].extend(["0.50", "1.00"])
|
|
||||||
sale_rows[0].extend(["", ""])
|
|
||||||
assert data == [
|
|
||||||
["Quantité", "6"],
|
|
||||||
["Total", "9"],
|
|
||||||
["Bénéfice", "1"],
|
|
||||||
[
|
|
||||||
"Date",
|
|
||||||
"Comptoir",
|
|
||||||
"Barman",
|
|
||||||
"Client",
|
|
||||||
"Étiquette",
|
|
||||||
"Quantité",
|
|
||||||
"Prix unitaire",
|
|
||||||
"Total",
|
|
||||||
"Méthode de paiement",
|
|
||||||
"Prix d'achat",
|
|
||||||
"Bénéfice",
|
|
||||||
],
|
|
||||||
*sale_rows,
|
|
||||||
]
|
|
||||||
|
|||||||
191
club/views.py
191
club/views.py
@@ -22,25 +22,26 @@
|
|||||||
#
|
#
|
||||||
#
|
#
|
||||||
|
|
||||||
from __future__ import annotations
|
|
||||||
|
|
||||||
import csv
|
import csv
|
||||||
import itertools
|
from typing import Any
|
||||||
from typing import TYPE_CHECKING, Any
|
|
||||||
|
|
||||||
from django.conf import settings
|
from django.conf import settings
|
||||||
from django.contrib.auth.mixins import LoginRequiredMixin, PermissionRequiredMixin
|
from django.contrib.auth.mixins import PermissionRequiredMixin
|
||||||
from django.contrib.messages.views import SuccessMessageMixin
|
from django.contrib.messages.views import SuccessMessageMixin
|
||||||
from django.core.exceptions import NON_FIELD_ERRORS, PermissionDenied, ValidationError
|
from django.core.exceptions import NON_FIELD_ERRORS, PermissionDenied, ValidationError
|
||||||
from django.core.paginator import InvalidPage, Paginator
|
from django.core.paginator import InvalidPage, Paginator
|
||||||
from django.db.models import F, Q, Sum
|
from django.db.models import Q, Sum
|
||||||
from django.http import Http404, HttpResponseRedirect, StreamingHttpResponse
|
from django.http import (
|
||||||
|
Http404,
|
||||||
|
HttpResponseRedirect,
|
||||||
|
StreamingHttpResponse,
|
||||||
|
)
|
||||||
from django.shortcuts import get_object_or_404, redirect
|
from django.shortcuts import get_object_or_404, redirect
|
||||||
from django.urls import reverse, reverse_lazy
|
from django.urls import reverse, reverse_lazy
|
||||||
from django.utils import timezone
|
from django.utils import timezone
|
||||||
from django.utils.functional import cached_property
|
from django.utils.safestring import SafeString
|
||||||
from django.utils.timezone import now
|
from django.utils.timezone import now
|
||||||
from django.utils.translation import gettext
|
from django.utils.translation import gettext as _t
|
||||||
from django.utils.translation import gettext_lazy as _
|
from django.utils.translation import gettext_lazy as _
|
||||||
from django.views.generic import DetailView, ListView, View
|
from django.views.generic import DetailView, ListView, View
|
||||||
from django.views.generic.edit import CreateView, DeleteView, UpdateView
|
from django.views.generic.edit import CreateView, DeleteView, UpdateView
|
||||||
@@ -54,7 +55,12 @@ from club.forms import (
|
|||||||
MailingForm,
|
MailingForm,
|
||||||
SellingsForm,
|
SellingsForm,
|
||||||
)
|
)
|
||||||
from club.models import Club, Mailing, MailingSubscription, Membership
|
from club.models import (
|
||||||
|
Club,
|
||||||
|
Mailing,
|
||||||
|
MailingSubscription,
|
||||||
|
Membership,
|
||||||
|
)
|
||||||
from com.models import Poster
|
from com.models import Poster
|
||||||
from com.views import (
|
from com.views import (
|
||||||
PosterCreateBaseView,
|
PosterCreateBaseView,
|
||||||
@@ -62,15 +68,14 @@ from com.views import (
|
|||||||
PosterEditBaseView,
|
PosterEditBaseView,
|
||||||
PosterListBaseView,
|
PosterListBaseView,
|
||||||
)
|
)
|
||||||
from core.auth.mixins import CanEditMixin, PermissionOrClubBoardRequiredMixin
|
from core.auth.mixins import (
|
||||||
from core.models import Page, PageRev
|
CanEditMixin,
|
||||||
from core.views import BasePageEditView, DetailFormView, UseFragmentsMixin
|
)
|
||||||
|
from core.models import PageRev
|
||||||
|
from core.views import DetailFormView, PageEditViewBase, UseFragmentsMixin
|
||||||
from core.views.mixins import FragmentMixin, FragmentRenderer, TabedViewMixin
|
from core.views.mixins import FragmentMixin, FragmentRenderer, TabedViewMixin
|
||||||
from counter.models import Selling
|
from counter.models import Selling
|
||||||
|
|
||||||
if TYPE_CHECKING:
|
|
||||||
from django.utils.safestring import SafeString
|
|
||||||
|
|
||||||
|
|
||||||
class ClubTabsMixin(TabedViewMixin):
|
class ClubTabsMixin(TabedViewMixin):
|
||||||
def get_tabs_title(self):
|
def get_tabs_title(self):
|
||||||
@@ -80,8 +85,6 @@ class ClubTabsMixin(TabedViewMixin):
|
|||||||
self.object = self.object.page.club
|
self.object = self.object.page.club
|
||||||
elif isinstance(self.object, Poster):
|
elif isinstance(self.object, Poster):
|
||||||
self.object = self.object.club
|
self.object = self.object.club
|
||||||
elif hasattr(self, "club"):
|
|
||||||
self.object = self.club
|
|
||||||
return self.object.get_display_name()
|
return self.object.get_display_name()
|
||||||
|
|
||||||
def get_list_of_tabs(self):
|
def get_list_of_tabs(self):
|
||||||
@@ -209,7 +212,7 @@ class ClubView(ClubTabsMixin, DetailView):
|
|||||||
return kwargs
|
return kwargs
|
||||||
|
|
||||||
|
|
||||||
class ClubRevView(LoginRequiredMixin, ClubView):
|
class ClubRevView(ClubView):
|
||||||
"""Display a specific page revision."""
|
"""Display a specific page revision."""
|
||||||
|
|
||||||
def dispatch(self, request, *args, **kwargs):
|
def dispatch(self, request, *args, **kwargs):
|
||||||
@@ -223,26 +226,26 @@ class ClubRevView(LoginRequiredMixin, ClubView):
|
|||||||
return kwargs
|
return kwargs
|
||||||
|
|
||||||
|
|
||||||
class ClubPageEditView(ClubTabsMixin, BasePageEditView):
|
class ClubPageEditView(ClubTabsMixin, PageEditViewBase):
|
||||||
template_name = "club/pagerev_edit.jinja"
|
template_name = "club/pagerev_edit.jinja"
|
||||||
current_tab = "page_edit"
|
current_tab = "page_edit"
|
||||||
|
|
||||||
@cached_property
|
def dispatch(self, request, *args, **kwargs):
|
||||||
def club(self):
|
self.club = get_object_or_404(Club, pk=kwargs["club_id"])
|
||||||
return get_object_or_404(Club, pk=self.kwargs["club_id"])
|
if not self.club.page:
|
||||||
|
raise Http404
|
||||||
|
return super().dispatch(request, *args, **kwargs)
|
||||||
|
|
||||||
@cached_property
|
def get_object(self):
|
||||||
def page(self) -> Page:
|
self.page = self.club.page
|
||||||
page = self.club.page
|
return self._get_revision()
|
||||||
page.set_lock(self.request.user)
|
|
||||||
return page
|
|
||||||
|
|
||||||
def get_success_url(self, **kwargs):
|
def get_success_url(self, **kwargs):
|
||||||
return reverse_lazy("club:club_view", kwargs={"club_id": self.club.id})
|
return reverse_lazy("club:club_view", kwargs={"club_id": self.club.id})
|
||||||
|
|
||||||
|
|
||||||
class ClubPageHistView(ClubTabsMixin, PermissionRequiredMixin, DetailView):
|
class ClubPageHistView(ClubTabsMixin, PermissionRequiredMixin, DetailView):
|
||||||
"""Modification history of the page."""
|
"""Modification hostory of the page."""
|
||||||
|
|
||||||
model = Club
|
model = Club
|
||||||
pk_url_kwarg = "club_id"
|
pk_url_kwarg = "club_id"
|
||||||
@@ -259,6 +262,12 @@ class ClubToolsView(ClubTabsMixin, CanEditMixin, DetailView):
|
|||||||
template_name = "club/club_tools.jinja"
|
template_name = "club/club_tools.jinja"
|
||||||
current_tab = "tools"
|
current_tab = "tools"
|
||||||
|
|
||||||
|
def get_context_data(self, **kwargs):
|
||||||
|
return super().get_context_data(**kwargs) | {
|
||||||
|
"reservable_rooms": list(self.object.reservable_rooms.all()),
|
||||||
|
"counters": list(self.object.counters.filter(type="OFFICE")),
|
||||||
|
}
|
||||||
|
|
||||||
|
|
||||||
class ClubAddMembersFragment(
|
class ClubAddMembersFragment(
|
||||||
FragmentMixin, PermissionRequiredMixin, SuccessMessageMixin, CreateView
|
FragmentMixin, PermissionRequiredMixin, SuccessMessageMixin, CreateView
|
||||||
@@ -378,7 +387,7 @@ class ClubOldMembersView(ClubTabsMixin, PermissionRequiredMixin, DetailView):
|
|||||||
|
|
||||||
|
|
||||||
class ClubSellingView(ClubTabsMixin, CanEditMixin, DetailFormView):
|
class ClubSellingView(ClubTabsMixin, CanEditMixin, DetailFormView):
|
||||||
"""Sales of a club."""
|
"""Sellings of a club."""
|
||||||
|
|
||||||
model = Club
|
model = Club
|
||||||
pk_url_kwarg = "club_id"
|
pk_url_kwarg = "club_id"
|
||||||
@@ -404,28 +413,47 @@ class ClubSellingView(ClubTabsMixin, CanEditMixin, DetailFormView):
|
|||||||
|
|
||||||
def get_context_data(self, **kwargs):
|
def get_context_data(self, **kwargs):
|
||||||
kwargs = super().get_context_data(**kwargs)
|
kwargs = super().get_context_data(**kwargs)
|
||||||
|
qs = Selling.objects.filter(club=self.object)
|
||||||
|
|
||||||
kwargs["result"] = Selling.objects.none()
|
kwargs["result"] = qs[:0]
|
||||||
|
kwargs["paginated_result"] = kwargs["result"]
|
||||||
kwargs["total"] = 0
|
kwargs["total"] = 0
|
||||||
kwargs["total_quantity"] = 0
|
kwargs["total_quantity"] = 0
|
||||||
kwargs["benefit"] = 0
|
kwargs["benefit"] = 0
|
||||||
|
|
||||||
form: SellingsForm = self.get_form()
|
form = self.get_form()
|
||||||
if form.is_valid() and any(v for v in form.cleaned_data.values()):
|
if form.is_valid():
|
||||||
filters = form.to_filter_schema()
|
if not len([v for v in form.cleaned_data.values() if v is not None]):
|
||||||
qs = filters.filter(Selling.objects.filter(club=self.object))
|
qs = Selling.objects.none()
|
||||||
kwargs["total"] = qs.annotate(
|
if form.cleaned_data["begin_date"]:
|
||||||
price=F("quantity") * F("unit_price")
|
qs = qs.filter(date__gte=form.cleaned_data["begin_date"])
|
||||||
).aggregate(total=Sum("price", default=0))["total"]
|
if form.cleaned_data["end_date"]:
|
||||||
|
qs = qs.filter(date__lte=form.cleaned_data["end_date"])
|
||||||
|
|
||||||
|
if form.cleaned_data["counters"]:
|
||||||
|
qs = qs.filter(counter__in=form.cleaned_data["counters"])
|
||||||
|
|
||||||
|
selected_products = []
|
||||||
|
if form.cleaned_data["products"]:
|
||||||
|
selected_products.extend(form.cleaned_data["products"])
|
||||||
|
if form.cleaned_data["archived_products"]:
|
||||||
|
selected_products.extend(form.cleaned_data["archived_products"])
|
||||||
|
|
||||||
|
if len(selected_products) > 0:
|
||||||
|
qs = qs.filter(product__in=selected_products)
|
||||||
|
|
||||||
kwargs["result"] = qs.select_related(
|
kwargs["result"] = qs.select_related(
|
||||||
"counter", "counter__club", "customer", "customer__user", "seller"
|
"counter", "counter__club", "customer", "customer__user", "seller"
|
||||||
).order_by("-id")
|
).order_by("-id")
|
||||||
kwargs["total_quantity"] = qs.aggregate(total=Sum("quantity", default=0))[
|
kwargs["total"] = sum([s.quantity * s.unit_price for s in kwargs["result"]])
|
||||||
"total"
|
total_quantity = qs.all().aggregate(Sum("quantity"))
|
||||||
]
|
if total_quantity["quantity__sum"]:
|
||||||
kwargs["benefit"] = qs.exclude(product=None).aggregate(
|
kwargs["total_quantity"] = total_quantity["quantity__sum"]
|
||||||
res=Sum("product__purchase_price", default=0)
|
benefit = (
|
||||||
)["res"]
|
qs.exclude(product=None).all().aggregate(Sum("product__purchase_price"))
|
||||||
|
)
|
||||||
|
if benefit["product__purchase_price__sum"]:
|
||||||
|
kwargs["benefit"] = benefit["product__purchase_price__sum"]
|
||||||
|
|
||||||
kwargs["paginator"] = Paginator(kwargs["result"], self.paginate_by)
|
kwargs["paginator"] = Paginator(kwargs["result"], self.paginate_by)
|
||||||
try:
|
try:
|
||||||
@@ -460,15 +488,15 @@ class ClubSellingCSVView(ClubSellingView):
|
|||||||
*row,
|
*row,
|
||||||
selling.label,
|
selling.label,
|
||||||
selling.quantity,
|
selling.quantity,
|
||||||
selling.unit_price,
|
|
||||||
selling.quantity * selling.unit_price,
|
selling.quantity * selling.unit_price,
|
||||||
selling.get_payment_method_display(),
|
selling.get_payment_method_display(),
|
||||||
]
|
]
|
||||||
if selling.product:
|
if selling.product:
|
||||||
|
row.append(selling.product.selling_price)
|
||||||
row.append(selling.product.purchase_price)
|
row.append(selling.product.purchase_price)
|
||||||
row.append(selling.unit_price - selling.product.purchase_price)
|
row.append(selling.product.selling_price - selling.product.purchase_price)
|
||||||
else:
|
else:
|
||||||
row = [*row, "", ""]
|
row = [*row, "", "", ""]
|
||||||
return row
|
return row
|
||||||
|
|
||||||
def get(self, request, *args, **kwargs):
|
def get(self, request, *args, **kwargs):
|
||||||
@@ -476,40 +504,40 @@ class ClubSellingCSVView(ClubSellingView):
|
|||||||
kwargs = self.get_context_data(**kwargs)
|
kwargs = self.get_context_data(**kwargs)
|
||||||
|
|
||||||
# Use the StreamWriter class instead of request for streaming
|
# Use the StreamWriter class instead of request for streaming
|
||||||
writer = csv.writer(self.StreamWriter())
|
pseudo_buffer = self.StreamWriter()
|
||||||
|
writer = csv.writer(
|
||||||
|
pseudo_buffer, delimiter=";", lineterminator="\n", quoting=csv.QUOTE_ALL
|
||||||
|
)
|
||||||
|
|
||||||
first_rows = [
|
writer.writerow([_t("Quantity"), kwargs["total_quantity"]])
|
||||||
[gettext("Quantity"), kwargs["total_quantity"]],
|
writer.writerow([_t("Total"), kwargs["total"]])
|
||||||
[gettext("Total"), kwargs["total"]],
|
writer.writerow([_t("Benefit"), kwargs["benefit"]])
|
||||||
[gettext("Benefit"), kwargs["benefit"]],
|
writer.writerow(
|
||||||
[
|
[
|
||||||
gettext("Date"),
|
_t("Date"),
|
||||||
gettext("Counter"),
|
_t("Counter"),
|
||||||
gettext("Barman"),
|
_t("Barman"),
|
||||||
gettext("Customer"),
|
_t("Customer"),
|
||||||
gettext("Label"),
|
_t("Label"),
|
||||||
gettext("Quantity"),
|
_t("Quantity"),
|
||||||
gettext("Unit price"),
|
_t("Total"),
|
||||||
gettext("Total"),
|
_t("Payment method"),
|
||||||
gettext("Payment method"),
|
_t("Selling price"),
|
||||||
gettext("Purchase price"),
|
_t("Purchase price"),
|
||||||
gettext("Benefit"),
|
_t("Benefit"),
|
||||||
],
|
]
|
||||||
]
|
)
|
||||||
|
|
||||||
# Stream response
|
# Stream response
|
||||||
response = StreamingHttpResponse(
|
response = StreamingHttpResponse(
|
||||||
itertools.chain(
|
(
|
||||||
(writer.writerow(r) for r in first_rows),
|
writer.writerow(self.write_selling(selling))
|
||||||
(
|
for selling in kwargs["result"]
|
||||||
writer.writerow(self.write_selling(selling))
|
|
||||||
for selling in kwargs["result"]
|
|
||||||
),
|
|
||||||
),
|
),
|
||||||
content_type="text/csv",
|
content_type="text/csv",
|
||||||
)
|
)
|
||||||
name = f"{gettext('Sellings')}_{self.object.name}.csv"
|
name = _("Sellings") + "_" + self.object.name + ".csv"
|
||||||
response["Content-Disposition"] = f"attachment; filename={name}"
|
response["Content-Disposition"] = "filename=" + name
|
||||||
|
|
||||||
return response
|
return response
|
||||||
|
|
||||||
@@ -747,13 +775,11 @@ class MailingAutoGenerationView(View):
|
|||||||
return redirect("club:mailing", club_id=club.id)
|
return redirect("club:mailing", club_id=club.id)
|
||||||
|
|
||||||
|
|
||||||
class PosterListView(
|
class PosterListView(ClubTabsMixin, PosterListBaseView):
|
||||||
PermissionOrClubBoardRequiredMixin, ClubTabsMixin, PosterListBaseView
|
|
||||||
):
|
|
||||||
"""List communication posters."""
|
"""List communication posters."""
|
||||||
|
|
||||||
current_tab = "posters"
|
current_tab = "posters"
|
||||||
permission_required = "com.view_poster"
|
extra_context = {"app": "club"}
|
||||||
|
|
||||||
def get_queryset(self):
|
def get_queryset(self):
|
||||||
return super().get_queryset().filter(club=self.club.id)
|
return super().get_queryset().filter(club=self.club.id)
|
||||||
@@ -761,17 +787,6 @@ class PosterListView(
|
|||||||
def get_object(self):
|
def get_object(self):
|
||||||
return self.club
|
return self.club
|
||||||
|
|
||||||
def get_context_data(self, **kwargs):
|
|
||||||
return super().get_context_data(**kwargs) | {
|
|
||||||
"create_url": reverse_lazy(
|
|
||||||
"club:poster_create", kwargs={"club_id": self.club.id}
|
|
||||||
),
|
|
||||||
"get_edit_url": lambda poster: reverse(
|
|
||||||
"club:poster_edit",
|
|
||||||
kwargs={"club_id": self.club.id, "poster_id": poster.id},
|
|
||||||
),
|
|
||||||
}
|
|
||||||
|
|
||||||
|
|
||||||
class PosterCreateView(ClubTabsMixin, PosterCreateBaseView):
|
class PosterCreateView(ClubTabsMixin, PosterCreateBaseView):
|
||||||
"""Create communication poster."""
|
"""Create communication poster."""
|
||||||
|
|||||||
10
com/api.py
10
com/api.py
@@ -5,6 +5,7 @@ from django.utils.cache import add_never_cache_headers
|
|||||||
from ninja import Query
|
from ninja import Query
|
||||||
from ninja_extra import ControllerBase, api_controller, paginate, route
|
from ninja_extra import ControllerBase, api_controller, paginate, route
|
||||||
from ninja_extra.pagination import PageNumberPaginationExtra
|
from ninja_extra.pagination import PageNumberPaginationExtra
|
||||||
|
from ninja_extra.permissions import IsAuthenticated
|
||||||
from ninja_extra.schemas import PaginatedResponseSchema
|
from ninja_extra.schemas import PaginatedResponseSchema
|
||||||
|
|
||||||
from api.permissions import HasPerm
|
from api.permissions import HasPerm
|
||||||
@@ -16,13 +17,17 @@ from core.views.files import send_raw_file
|
|||||||
|
|
||||||
@api_controller("/calendar")
|
@api_controller("/calendar")
|
||||||
class CalendarController(ControllerBase):
|
class CalendarController(ControllerBase):
|
||||||
@route.get("/internal.ics", auth=None, url_name="calendar_internal")
|
@route.get("/internal.ics", url_name="calendar_internal")
|
||||||
def calendar_internal(self):
|
def calendar_internal(self):
|
||||||
response = send_raw_file(IcsCalendar.get_internal())
|
response = send_raw_file(IcsCalendar.get_internal())
|
||||||
add_never_cache_headers(response)
|
add_never_cache_headers(response)
|
||||||
return response
|
return response
|
||||||
|
|
||||||
@route.get("/unpublished.ics", url_name="calendar_unpublished")
|
@route.get(
|
||||||
|
"/unpublished.ics",
|
||||||
|
permissions=[IsAuthenticated],
|
||||||
|
url_name="calendar_unpublished",
|
||||||
|
)
|
||||||
def calendar_unpublished(self):
|
def calendar_unpublished(self):
|
||||||
response = HttpResponse(
|
response = HttpResponse(
|
||||||
IcsCalendar.get_unpublished(self.context.request.user),
|
IcsCalendar.get_unpublished(self.context.request.user),
|
||||||
@@ -69,7 +74,6 @@ class NewsController(ControllerBase):
|
|||||||
|
|
||||||
@route.get(
|
@route.get(
|
||||||
"/date",
|
"/date",
|
||||||
auth=None,
|
|
||||||
url_name="fetch_news_dates",
|
url_name="fetch_news_dates",
|
||||||
response=PaginatedResponseSchema[NewsDateSchema],
|
response=PaginatedResponseSchema[NewsDateSchema],
|
||||||
)
|
)
|
||||||
|
|||||||
@@ -144,7 +144,7 @@ class News(models.Model):
|
|||||||
),
|
),
|
||||||
groups__id=settings.SITH_GROUP_COM_ADMIN_ID,
|
groups__id=settings.SITH_GROUP_COM_ADMIN_ID,
|
||||||
)
|
)
|
||||||
notif_url = reverse("com:news_admin_list", fragment="moderation")
|
notif_url = reverse("com:news_admin_list")
|
||||||
new_notifs = [
|
new_notifs = [
|
||||||
Notification(user=user, url=notif_url, type="NEWS_MODERATION")
|
Notification(user=user, url=notif_url, type="NEWS_MODERATION")
|
||||||
for user in admins_without_notif
|
for user in admins_without_notif
|
||||||
@@ -402,7 +402,9 @@ class Poster(models.Model):
|
|||||||
groups__id__in=[settings.SITH_GROUP_COM_ADMIN_ID]
|
groups__id__in=[settings.SITH_GROUP_COM_ADMIN_ID]
|
||||||
):
|
):
|
||||||
Notification.objects.create(
|
Notification.objects.create(
|
||||||
user=user, url=reverse("com:poster_list"), type="POSTER_MODERATION"
|
user=user,
|
||||||
|
url=reverse("com:poster_moderate_list"),
|
||||||
|
type="POSTER_MODERATION",
|
||||||
)
|
)
|
||||||
return super().save(*args, **kwargs)
|
return super().save(*args, **kwargs)
|
||||||
|
|
||||||
|
|||||||
@@ -81,7 +81,6 @@
|
|||||||
}
|
}
|
||||||
|
|
||||||
#links_content {
|
#links_content {
|
||||||
overflow: auto;
|
|
||||||
box-shadow: $shadow-color 1px 1px 1px;
|
box-shadow: $shadow-color 1px 1px 1px;
|
||||||
min-height: 20em;
|
min-height: 20em;
|
||||||
padding-bottom: 1em;
|
padding-bottom: 1em;
|
||||||
|
|||||||
@@ -20,7 +20,33 @@
|
|||||||
position: absolute;
|
position: absolute;
|
||||||
display: flex;
|
display: flex;
|
||||||
bottom: 5px;
|
bottom: 5px;
|
||||||
left: 0;
|
|
||||||
|
&.left {
|
||||||
|
left: 0;
|
||||||
|
}
|
||||||
|
|
||||||
|
&.right {
|
||||||
|
right: 0;
|
||||||
|
}
|
||||||
|
|
||||||
|
.link {
|
||||||
|
padding: 5px;
|
||||||
|
padding-left: 20px;
|
||||||
|
padding-right: 20px;
|
||||||
|
margin-left: 5px;
|
||||||
|
border-radius: 20px;
|
||||||
|
background-color: hsl(40, 100%, 50%);
|
||||||
|
color: black;
|
||||||
|
|
||||||
|
&:hover {
|
||||||
|
color: black;
|
||||||
|
background-color: hsl(40, 58%, 50%);
|
||||||
|
}
|
||||||
|
|
||||||
|
&.delete {
|
||||||
|
background-color: hsl(0, 100%, 40%);
|
||||||
|
}
|
||||||
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -117,15 +143,43 @@
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
.actions {
|
.edit,
|
||||||
display: flex;
|
.moderate,
|
||||||
flex-direction: column;
|
.slideshow {
|
||||||
align-items: stretch;
|
padding: 5px;
|
||||||
form {
|
border-radius: 20px;
|
||||||
margin: unset;
|
background-color: hsl(40, 100%, 50%);
|
||||||
padding: unset;
|
color: black;
|
||||||
button {
|
|
||||||
width: 100%;
|
&:hover {
|
||||||
|
color: black;
|
||||||
|
background-color: hsl(40, 58%, 50%);
|
||||||
|
}
|
||||||
|
|
||||||
|
&:nth-child(2n) {
|
||||||
|
margin-top: 5px;
|
||||||
|
margin-bottom: 5px;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
.tooltip {
|
||||||
|
visibility: hidden;
|
||||||
|
width: 120px;
|
||||||
|
background-color: hsl(210, 20%, 98%);
|
||||||
|
color: hsl(0, 0%, 0%);
|
||||||
|
text-align: center;
|
||||||
|
padding: 5px 0;
|
||||||
|
border-radius: 6px;
|
||||||
|
position: absolute;
|
||||||
|
z-index: 10;
|
||||||
|
|
||||||
|
ul {
|
||||||
|
margin-left: 0;
|
||||||
|
display: inline-block;
|
||||||
|
|
||||||
|
li {
|
||||||
|
display: list-item;
|
||||||
|
list-style-type: none;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -131,7 +131,7 @@
|
|||||||
{% endfor %}
|
{% endfor %}
|
||||||
</tbody>
|
</tbody>
|
||||||
</table>
|
</table>
|
||||||
<h5 id="moderation">{% trans %}Events to moderate{% endtrans %}</h5>
|
<h5>{% trans %}Events to moderate{% endtrans %}</h5>
|
||||||
<table>
|
<table>
|
||||||
<thead>
|
<thead>
|
||||||
<tr>
|
<tr>
|
||||||
@@ -165,3 +165,6 @@
|
|||||||
</tbody>
|
</tbody>
|
||||||
</table>
|
</table>
|
||||||
{% endblock %}
|
{% endblock %}
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|||||||
@@ -1,20 +1,15 @@
|
|||||||
{% extends "core/base.jinja" %}
|
{% extends "core/base.jinja" %}
|
||||||
{% from 'core/macros.jinja' import user_profile_link, link_news_logo %}
|
{% from 'core/macros.jinja' import user_profile_link, facebook_share, tweet, link_news_logo, gen_news_metatags %}
|
||||||
{% from "com/macros.jinja" import news_moderation_alert %}
|
{% from "com/macros.jinja" import news_moderation_alert %}
|
||||||
|
|
||||||
{% block title %}
|
{% block title %}
|
||||||
{% trans %}News{% endtrans %} - {{ object.title }}
|
{% trans %}News{% endtrans %} -
|
||||||
|
{{ object.title }}
|
||||||
{% endblock %}
|
{% endblock %}
|
||||||
|
|
||||||
{% block description %}{{ news.summary }}{% endblock %}
|
{% block head %}
|
||||||
|
{{ super() }}
|
||||||
{% block metatags %}
|
{{ gen_news_metatags(news) }}
|
||||||
<meta property="og:url" content="{{ news.get_full_url() }}" />
|
|
||||||
<meta property="og:type" content="article" />
|
|
||||||
<meta property="article:section" content="{% trans %}News{% endtrans %}" />
|
|
||||||
<meta property="og:title" content="{{ news.title }}" />
|
|
||||||
<meta property="og:description" content="{{ news.summary }}" />
|
|
||||||
<meta property="og:image" content="{{ request.build_absolute_uri(link_news_logo(news)) }}" />
|
|
||||||
{% endblock %}
|
{% endblock %}
|
||||||
|
|
||||||
|
|
||||||
@@ -49,14 +44,8 @@
|
|||||||
<div><em>{{ news.summary|markdown }}</em></div>
|
<div><em>{{ news.summary|markdown }}</em></div>
|
||||||
<br/>
|
<br/>
|
||||||
<div>{{ news.content|markdown }}</div>
|
<div>{{ news.content|markdown }}</div>
|
||||||
<a
|
{{ facebook_share(news) }}
|
||||||
rel="nofollow"
|
{{ tweet(news) }}
|
||||||
target="#"
|
|
||||||
class="share_button facebook"
|
|
||||||
href="https://www.facebook.com/sharer/sharer.php?u={{ news.get_full_url() }}"
|
|
||||||
>
|
|
||||||
{% trans %}Share on Facebook{% endtrans %}
|
|
||||||
</a>
|
|
||||||
<div class="news_meta">
|
<div class="news_meta">
|
||||||
<p>{% trans %}Author: {% endtrans %}{{ user_profile_link(news.author) }}</p>
|
<p>{% trans %}Author: {% endtrans %}{{ user_profile_link(news.author) }}</p>
|
||||||
{% if news.moderator %}
|
{% if news.moderator %}
|
||||||
|
|||||||
@@ -1,9 +1,11 @@
|
|||||||
{% extends "core/base.jinja" %}
|
{% extends "core/base.jinja" %}
|
||||||
{% from "com/macros.jinja" import news_moderation_alert %}
|
{% from "com/macros.jinja" import news_moderation_alert %}
|
||||||
|
|
||||||
|
{% block title %}AE UTBM{% endblock %}
|
||||||
|
|
||||||
{% block additional_css %}
|
{% block additional_css %}
|
||||||
<link rel="stylesheet" href="{{ static('com/css/news-list.scss') }}">
|
<link rel="stylesheet" href="{{ static('com/css/news-list.scss') }}">
|
||||||
<link rel="stylesheet" href="{{ static('com/components/ics-calendar.scss') }}">
|
<link rel="stylesheet" href="{{ static('core/components/calendar.scss') }}">
|
||||||
|
|
||||||
{# Atom feed discovery, not really css but also goes there #}
|
{# Atom feed discovery, not really css but also goes there #}
|
||||||
<link rel="alternate" type="application/rss+xml" title="{% trans %}News feed{% endtrans %}" href="{{ url("com:news_feed") }}">
|
<link rel="alternate" type="application/rss+xml" title="{% trans %}News feed{% endtrans %}" href="{{ url("com:news_feed") }}">
|
||||||
@@ -213,6 +215,12 @@
|
|||||||
<i class="fa-solid fa-magnifying-glass fa-xl"></i>
|
<i class="fa-solid fa-magnifying-glass fa-xl"></i>
|
||||||
<a href="{{ url("matmat:search_clear") }}">{% trans %}Matmatronch{% endtrans %}</a>
|
<a href="{{ url("matmat:search_clear") }}">{% trans %}Matmatronch{% endtrans %}</a>
|
||||||
</li>
|
</li>
|
||||||
|
{% if user.has_perm("reservation.view_reservationslot") %}
|
||||||
|
<li>
|
||||||
|
<i class="fa-solid fa-thumbtack fa-xl"></i>
|
||||||
|
<a href="{{ url("reservation:main") }}">{% trans %}Room reservation{% endtrans %}</a>
|
||||||
|
</li>
|
||||||
|
{% endif %}
|
||||||
<li>
|
<li>
|
||||||
<i class="fa-solid fa-check-to-slot fa-xl"></i>
|
<i class="fa-solid fa-check-to-slot fa-xl"></i>
|
||||||
<a href="{{ url("election:list") }}">{% trans %}Elections{% endtrans %}</a>
|
<a href="{{ url("election:list") }}">{% trans %}Elections{% endtrans %}</a>
|
||||||
|
|||||||
@@ -13,53 +13,53 @@
|
|||||||
|
|
||||||
<div id="title">
|
<div id="title">
|
||||||
<h3>{% trans %}Posters{% endtrans %}</h3>
|
<h3>{% trans %}Posters{% endtrans %}</h3>
|
||||||
<div id="links">
|
<div id="links" class="right">
|
||||||
<a id="create" class="btn btn-blue" href="{{ create_url }}">
|
{% if app == "com" %}
|
||||||
<i class="fa fa-plus"></i>
|
<a id="create" class="link" href="{{ url(app + ":poster_create") }}">{% trans %}Create{% endtrans %}</a>
|
||||||
{% trans %}Create{% endtrans %}
|
<a id="moderation" class="link" href="{{ url("com:poster_moderate_list") }}">{% trans %}Moderation{% endtrans %}</a>
|
||||||
</a>
|
{% elif app == "club" %}
|
||||||
|
<a id="create" class="link" href="{{ url(app + ":poster_create", club.id) }}">{% trans %}Create{% endtrans %}</a>
|
||||||
|
{% endif %}
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
|
|
||||||
<div id="posters">
|
<div id="posters">
|
||||||
{% for poster in poster_list %}
|
|
||||||
<div class="poster{% if not poster.is_moderated %} not_moderated{% endif %}">
|
{% if poster_list.count() == 0 %}
|
||||||
<div class="name">{{ poster.name }}</div>
|
|
||||||
<div
|
|
||||||
class="image"
|
|
||||||
hover="{% trans %}Click to expand{% endtrans %}"
|
|
||||||
@click="active = $el.firstElementChild"
|
|
||||||
tooltip="{%- for screen in poster.screens.all() -%}
|
|
||||||
{{ screen }}
|
|
||||||
{% endfor %}"
|
|
||||||
>
|
|
||||||
<img src="{{ poster.file.url }}" alt="{{ poster.name }}">
|
|
||||||
</div>
|
|
||||||
<div class="dates">
|
|
||||||
<div class="begin">{{ poster.date_begin | localtime | date("d/M/Y H:m") }}</div>
|
|
||||||
<div class="end">{{ poster.date_end | localtime | date("d/M/Y H:m") }}</div>
|
|
||||||
</div>
|
|
||||||
<div class="actions">
|
|
||||||
{% if poster.is_editable %}
|
|
||||||
<a class="btn btn-blue" href="{{ get_edit_url(poster) }}">
|
|
||||||
<i class="fa fa-pen-to-square"></i>
|
|
||||||
{% trans %}Edit{% endtrans %}
|
|
||||||
</a>
|
|
||||||
{% endif %}
|
|
||||||
{% if not poster.is_moderated and user.has_perm("com.moderate_poster") %}
|
|
||||||
<form action="{{ url("com:poster_moderate", object_id=poster.id) }}" method="post">
|
|
||||||
{% csrf_token %}
|
|
||||||
<button type="submit" class="btn btn-green">
|
|
||||||
<i class="fa fa-check"></i>
|
|
||||||
{% trans %}Moderate{% endtrans %}
|
|
||||||
</button>
|
|
||||||
</form>
|
|
||||||
{% endif %}
|
|
||||||
</div>
|
|
||||||
</div>
|
|
||||||
{% else %}
|
|
||||||
<div id="no-posters">{% trans %}No posters{% endtrans %}</div>
|
<div id="no-posters">{% trans %}No posters{% endtrans %}</div>
|
||||||
{% endfor %}
|
{% else %}
|
||||||
|
|
||||||
|
{% for poster in poster_list %}
|
||||||
|
<div class="poster{% if not poster.is_moderated %} not_moderated{% endif %}">
|
||||||
|
<div class="name">{{ poster.name }}</div>
|
||||||
|
<div
|
||||||
|
class="image"
|
||||||
|
hover="{% trans %}Click to expand{% endtrans %}"
|
||||||
|
@click="active = $el.firstElementChild"
|
||||||
|
>
|
||||||
|
<img src="{{ poster.file.url }}"></img>
|
||||||
|
</div>
|
||||||
|
<div class="dates">
|
||||||
|
<div class="begin">{{ poster.date_begin | localtime | date("d/M/Y H:m") }}</div>
|
||||||
|
<div class="end">{{ poster.date_end | localtime | date("d/M/Y H:m") }}</div>
|
||||||
|
</div>
|
||||||
|
{% if app == "com" %}
|
||||||
|
<a class="edit" href="{{ url(app + ":poster_edit", poster.id) }}">{% trans %}Edit{% endtrans %}</a>
|
||||||
|
{% elif app == "club" %}
|
||||||
|
<a class="edit" href="{{ url(app + ":poster_edit", club.id, poster.id) }}">{% trans %}Edit{% endtrans %}</a>
|
||||||
|
{% endif %}
|
||||||
|
<div class="tooltip">
|
||||||
|
<ul>
|
||||||
|
{% for screen in poster.screens.all() %}
|
||||||
|
<li>{{ screen }}</li>
|
||||||
|
{% endfor %}
|
||||||
|
</ul>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
{% endfor %}
|
||||||
|
|
||||||
|
{% endif %}
|
||||||
|
|
||||||
</div>
|
</div>
|
||||||
|
|
||||||
<div
|
<div
|
||||||
@@ -68,9 +68,7 @@
|
|||||||
@click="active = null"
|
@click="active = null"
|
||||||
:class="{active: active !== null}"
|
:class="{active: active !== null}"
|
||||||
>
|
>
|
||||||
<div id="placeholder">
|
<div id="placeholder"><img :src="active?.src"></div>
|
||||||
<img :src="active?.src" :alt="active?.name">
|
|
||||||
</div>
|
|
||||||
</div>
|
</div>
|
||||||
|
|
||||||
</div>
|
</div>
|
||||||
|
|||||||
43
com/templates/com/poster_moderate.jinja
Normal file
43
com/templates/com/poster_moderate.jinja
Normal file
@@ -0,0 +1,43 @@
|
|||||||
|
{% extends "core/base.jinja" %}
|
||||||
|
|
||||||
|
{% block script %}
|
||||||
|
{{ super() }}
|
||||||
|
<script src="{{ static('com/js/poster_list.js') }}"></script>
|
||||||
|
{% endblock %}
|
||||||
|
|
||||||
|
{% block additional_css %}
|
||||||
|
<link rel="stylesheet" href="{{ static('com/css/posters.scss') }}">
|
||||||
|
{% endblock %}
|
||||||
|
|
||||||
|
{% block content %}
|
||||||
|
<div id="poster_list">
|
||||||
|
|
||||||
|
<div id="title">
|
||||||
|
<div id="links" class="left">
|
||||||
|
<a id="list" class="link" href="{{ url("com:poster_list") }}">{% trans %}List{% endtrans %}</a>
|
||||||
|
</div>
|
||||||
|
<h3>{% trans %}Posters - moderation{% endtrans %}</h3>
|
||||||
|
</div>
|
||||||
|
|
||||||
|
<div id="posters">
|
||||||
|
|
||||||
|
{% if object_list.count == 0 %}
|
||||||
|
<div id="no-posters">{% trans %}No objects{% endtrans %}</div>
|
||||||
|
{% else %}
|
||||||
|
|
||||||
|
{% for poster in object_list %}
|
||||||
|
<div class="poster{% if not poster.is_moderated %} not_moderated{% endif %}">
|
||||||
|
<div class="name"> {{ poster.name }} </div>
|
||||||
|
<div class="image"> <img src="{{ poster.file.url }}"></img> </div>
|
||||||
|
<a class="moderate" href="{{ url("com:poster_moderate", object_id=poster.id) }}">Moderate</a>
|
||||||
|
</div>
|
||||||
|
{% endfor %}
|
||||||
|
|
||||||
|
{% endif %}
|
||||||
|
|
||||||
|
</div>
|
||||||
|
|
||||||
|
<div id="view"><div id="placeholder"></div></div>
|
||||||
|
|
||||||
|
</div>
|
||||||
|
{% endblock %}
|
||||||
@@ -17,9 +17,7 @@ from unittest.mock import patch
|
|||||||
|
|
||||||
import pytest
|
import pytest
|
||||||
from django.conf import settings
|
from django.conf import settings
|
||||||
from django.contrib.auth.models import Permission
|
|
||||||
from django.contrib.sites.models import Site
|
from django.contrib.sites.models import Site
|
||||||
from django.core.files.uploadedfile import SimpleUploadedFile
|
|
||||||
from django.test import Client, TestCase
|
from django.test import Client, TestCase
|
||||||
from django.urls import reverse
|
from django.urls import reverse
|
||||||
from django.utils import html
|
from django.utils import html
|
||||||
@@ -29,10 +27,9 @@ from model_bakery import baker
|
|||||||
from pytest_django.asserts import assertNumQueries, assertRedirects
|
from pytest_django.asserts import assertNumQueries, assertRedirects
|
||||||
|
|
||||||
from club.models import Club, Membership
|
from club.models import Club, Membership
|
||||||
from com.models import News, NewsDate, Poster, Sith, Weekmail, WeekmailArticle
|
from com.models import News, NewsDate, Sith, Weekmail, WeekmailArticle
|
||||||
from core.baker_recipes import subscriber_user
|
from core.baker_recipes import subscriber_user
|
||||||
from core.models import AnonymousUser, Group, User
|
from core.models import AnonymousUser, Group, User
|
||||||
from core.utils import RED_PIXEL_PNG
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.fixture()
|
@pytest.fixture()
|
||||||
@@ -317,6 +314,7 @@ def test_feed(client: Client):
|
|||||||
[
|
[
|
||||||
reverse("com:poster_list"),
|
reverse("com:poster_list"),
|
||||||
reverse("com:poster_create"),
|
reverse("com:poster_create"),
|
||||||
|
reverse("com:poster_moderate_list"),
|
||||||
],
|
],
|
||||||
)
|
)
|
||||||
def test_poster_management_views_crash_test(client: Client, url: str):
|
def test_poster_management_views_crash_test(client: Client, url: str):
|
||||||
@@ -327,37 +325,3 @@ def test_poster_management_views_crash_test(client: Client, url: str):
|
|||||||
client.force_login(user)
|
client.force_login(user)
|
||||||
res = client.get(url)
|
res = client.get(url)
|
||||||
assert res.status_code == 200
|
assert res.status_code == 200
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
@pytest.mark.parametrize(
|
|
||||||
"referer",
|
|
||||||
[
|
|
||||||
None,
|
|
||||||
reverse("com:poster_list"),
|
|
||||||
reverse("club:poster_list", kwargs={"club_id": settings.SITH_MAIN_CLUB_ID}),
|
|
||||||
],
|
|
||||||
)
|
|
||||||
def test_moderate_poster(client: Client, referer: str | None):
|
|
||||||
poster = baker.make(
|
|
||||||
Poster,
|
|
||||||
is_moderated=False,
|
|
||||||
file=SimpleUploadedFile("test.png", content=RED_PIXEL_PNG),
|
|
||||||
club_id=settings.SITH_MAIN_CLUB_ID,
|
|
||||||
)
|
|
||||||
user = baker.make(
|
|
||||||
User,
|
|
||||||
user_permissions=Permission.objects.filter(
|
|
||||||
codename__in=["view_poster", "moderate_poster"]
|
|
||||||
),
|
|
||||||
)
|
|
||||||
client.force_login(user)
|
|
||||||
headers = {"REFERER": f"https://{settings.SITH_URL}{referer}"} if referer else {}
|
|
||||||
response = client.post(
|
|
||||||
reverse("com:poster_moderate", kwargs={"object_id": poster.id}), headers=headers
|
|
||||||
)
|
|
||||||
result_url = referer or reverse("com:poster_list")
|
|
||||||
assertRedirects(response, result_url)
|
|
||||||
poster.refresh_from_db()
|
|
||||||
assert poster.is_moderated
|
|
||||||
assert poster.moderator == user
|
|
||||||
|
|||||||
@@ -33,6 +33,7 @@ from com.views import (
|
|||||||
PosterDeleteView,
|
PosterDeleteView,
|
||||||
PosterEditView,
|
PosterEditView,
|
||||||
PosterListView,
|
PosterListView,
|
||||||
|
PosterModerateListView,
|
||||||
PosterModerateView,
|
PosterModerateView,
|
||||||
ScreenCreateView,
|
ScreenCreateView,
|
||||||
ScreenDeleteView,
|
ScreenDeleteView,
|
||||||
@@ -101,6 +102,11 @@ urlpatterns = [
|
|||||||
PosterDeleteView.as_view(),
|
PosterDeleteView.as_view(),
|
||||||
name="poster_delete",
|
name="poster_delete",
|
||||||
),
|
),
|
||||||
|
path(
|
||||||
|
"poster/moderate/",
|
||||||
|
PosterModerateListView.as_view(),
|
||||||
|
name="poster_moderate_list",
|
||||||
|
),
|
||||||
path(
|
path(
|
||||||
"poster/<int:object_id>/moderate/",
|
"poster/<int:object_id>/moderate/",
|
||||||
PosterModerateView.as_view(),
|
PosterModerateView.as_view(),
|
||||||
|
|||||||
72
com/views.py
72
com/views.py
@@ -25,7 +25,6 @@ import itertools
|
|||||||
from datetime import date, timedelta
|
from datetime import date, timedelta
|
||||||
from smtplib import SMTPRecipientsRefused
|
from smtplib import SMTPRecipientsRefused
|
||||||
from typing import Any
|
from typing import Any
|
||||||
from urllib.parse import urlparse
|
|
||||||
|
|
||||||
from dateutil.relativedelta import relativedelta
|
from dateutil.relativedelta import relativedelta
|
||||||
from django.conf import settings
|
from django.conf import settings
|
||||||
@@ -35,7 +34,7 @@ from django.contrib.auth.mixins import (
|
|||||||
)
|
)
|
||||||
from django.contrib.syndication.views import Feed
|
from django.contrib.syndication.views import Feed
|
||||||
from django.core.exceptions import PermissionDenied, ValidationError
|
from django.core.exceptions import PermissionDenied, ValidationError
|
||||||
from django.db.models import Exists, Max, OuterRef, Value
|
from django.db.models import Max
|
||||||
from django.forms.models import modelform_factory
|
from django.forms.models import modelform_factory
|
||||||
from django.http import HttpResponseRedirect
|
from django.http import HttpResponseRedirect
|
||||||
from django.shortcuts import get_object_or_404, redirect
|
from django.shortcuts import get_object_or_404, redirect
|
||||||
@@ -46,7 +45,7 @@ from django.utils.translation import gettext_lazy as _
|
|||||||
from django.views.generic import DetailView, ListView, TemplateView, View
|
from django.views.generic import DetailView, ListView, TemplateView, View
|
||||||
from django.views.generic.edit import CreateView, DeleteView, UpdateView
|
from django.views.generic.edit import CreateView, DeleteView, UpdateView
|
||||||
|
|
||||||
from club.models import Club, Mailing, Membership
|
from club.models import Club, Mailing
|
||||||
from com.forms import NewsDateForm, NewsForm, PosterForm
|
from com.forms import NewsDateForm, NewsForm, PosterForm
|
||||||
from com.ics_calendar import IcsCalendar
|
from com.ics_calendar import IcsCalendar
|
||||||
from com.models import News, NewsDate, Poster, Screen, Sith, Weekmail, WeekmailArticle
|
from com.models import News, NewsDate, Poster, Screen, Sith, Weekmail, WeekmailArticle
|
||||||
@@ -240,11 +239,10 @@ class NewsListView(TemplateView):
|
|||||||
if not self.request.user.has_perm("core.view_user"):
|
if not self.request.user.has_perm("core.view_user"):
|
||||||
return []
|
return []
|
||||||
return itertools.groupby(
|
return itertools.groupby(
|
||||||
User.objects.viewable_by(self.request.user)
|
User.objects.filter(
|
||||||
.filter(
|
|
||||||
date_of_birth__month=localdate().month,
|
date_of_birth__month=localdate().month,
|
||||||
date_of_birth__day=localdate().day,
|
date_of_birth__day=localdate().day,
|
||||||
is_viewable=True,
|
is_subscriber_viewable=True,
|
||||||
)
|
)
|
||||||
.filter(role__in=["STUDENT", "FORMER STUDENT"])
|
.filter(role__in=["STUDENT", "FORMER STUDENT"])
|
||||||
.order_by("-date_of_birth"),
|
.order_by("-date_of_birth"),
|
||||||
@@ -563,26 +561,16 @@ class MailingModerateView(View):
|
|||||||
raise PermissionDenied
|
raise PermissionDenied
|
||||||
|
|
||||||
|
|
||||||
class PosterListBaseView(ListView):
|
class PosterListBaseView(PermissionOrClubBoardRequiredMixin, ListView):
|
||||||
"""List communication posters."""
|
"""List communication posters."""
|
||||||
|
|
||||||
model = Poster
|
model = Poster
|
||||||
template_name = "com/poster_list.jinja"
|
template_name = "com/poster_list.jinja"
|
||||||
permission_required = "com.view_poster"
|
permission_required = "com.view_poster"
|
||||||
|
ordering = ["-date_begin"]
|
||||||
|
|
||||||
def get_queryset(self):
|
def get_context_data(self, **kwargs):
|
||||||
qs = Poster.objects.prefetch_related("screens")
|
return super().get_context_data(**kwargs) | {"club": self.club}
|
||||||
if self.request.user.has_perm("com.edit_poster"):
|
|
||||||
qs = qs.annotate(is_editable=Value(value=True))
|
|
||||||
else:
|
|
||||||
qs = qs.annotate(
|
|
||||||
is_editable=Exists(
|
|
||||||
Membership.objects.ongoing()
|
|
||||||
.board()
|
|
||||||
.filter(user=self.request.user, club=OuterRef("club_id"))
|
|
||||||
)
|
|
||||||
)
|
|
||||||
return qs.order_by("-date_begin")
|
|
||||||
|
|
||||||
|
|
||||||
class PosterCreateBaseView(PermissionOrClubBoardRequiredMixin, CreateView):
|
class PosterCreateBaseView(PermissionOrClubBoardRequiredMixin, CreateView):
|
||||||
@@ -645,17 +633,21 @@ class PosterDeleteBaseView(
|
|||||||
permission_required = "com.delete_poster"
|
permission_required = "com.delete_poster"
|
||||||
|
|
||||||
|
|
||||||
class PosterListView(PermissionRequiredMixin, ComTabsMixin, PosterListBaseView):
|
class PosterListView(ComTabsMixin, PosterListBaseView):
|
||||||
"""List communication posters."""
|
"""List communication posters."""
|
||||||
|
|
||||||
current_tab = "posters"
|
current_tab = "posters"
|
||||||
extra_context = {
|
|
||||||
"create_url": reverse_lazy("com:poster_create"),
|
def get_queryset(self):
|
||||||
"get_edit_url": lambda poster: reverse(
|
qs = super().get_queryset()
|
||||||
"com:poster_edit", kwargs={"poster_id": poster.id}
|
if self.request.user.has_perm("com.view_poster"):
|
||||||
),
|
return qs
|
||||||
}
|
return qs.filter(club=self.club.id)
|
||||||
permission_required = "com.view_poster"
|
|
||||||
|
def get_context_data(self, **kwargs):
|
||||||
|
kwargs = super().get_context_data(**kwargs)
|
||||||
|
kwargs["app"] = "com"
|
||||||
|
return kwargs
|
||||||
|
|
||||||
|
|
||||||
class PosterCreateView(ComTabsMixin, PosterCreateBaseView):
|
class PosterCreateView(ComTabsMixin, PosterCreateBaseView):
|
||||||
@@ -680,6 +672,17 @@ class PosterDeleteView(PosterDeleteBaseView):
|
|||||||
success_url = reverse_lazy("com:poster_list")
|
success_url = reverse_lazy("com:poster_list")
|
||||||
|
|
||||||
|
|
||||||
|
class PosterModerateListView(PermissionRequiredMixin, ComTabsMixin, ListView):
|
||||||
|
"""Moderate list communication poster."""
|
||||||
|
|
||||||
|
current_tab = "posters"
|
||||||
|
model = Poster
|
||||||
|
template_name = "com/poster_moderate.jinja"
|
||||||
|
queryset = Poster.objects.filter(is_moderated=False).all()
|
||||||
|
permission_required = "com.moderate_poster"
|
||||||
|
extra_context = {"app": "com"}
|
||||||
|
|
||||||
|
|
||||||
class PosterModerateView(PermissionRequiredMixin, ComTabsMixin, View):
|
class PosterModerateView(PermissionRequiredMixin, ComTabsMixin, View):
|
||||||
"""Moderate communication poster."""
|
"""Moderate communication poster."""
|
||||||
|
|
||||||
@@ -687,21 +690,12 @@ class PosterModerateView(PermissionRequiredMixin, ComTabsMixin, View):
|
|||||||
permission_required = "com.moderate_poster"
|
permission_required = "com.moderate_poster"
|
||||||
extra_context = {"app": "com"}
|
extra_context = {"app": "com"}
|
||||||
|
|
||||||
def post(self, request, *args, **kwargs):
|
def get(self, request, *args, **kwargs):
|
||||||
obj = get_object_or_404(Poster, pk=kwargs["object_id"])
|
obj = get_object_or_404(Poster, pk=kwargs["object_id"])
|
||||||
obj.is_moderated = True
|
obj.is_moderated = True
|
||||||
obj.moderator = request.user
|
obj.moderator = request.user
|
||||||
obj.save()
|
obj.save()
|
||||||
# The moderation request may be originated from a club context (/club/poster)
|
return redirect("com:poster_moderate_list")
|
||||||
# or a global context (/com/poster),
|
|
||||||
# so the redirection URL will be the URL of the page that called this view,
|
|
||||||
# as long as the latter belongs to the sith.
|
|
||||||
referer = self.request.META.get("HTTP_REFERER")
|
|
||||||
if referer:
|
|
||||||
parsed = urlparse(referer)
|
|
||||||
if parsed.netloc == settings.SITH_URL:
|
|
||||||
return redirect(parsed.path)
|
|
||||||
return redirect("com:poster_list")
|
|
||||||
|
|
||||||
|
|
||||||
class ScreenListView(PermissionRequiredMixin, ComTabsMixin, ListView):
|
class ScreenListView(PermissionRequiredMixin, ComTabsMixin, ListView):
|
||||||
|
|||||||
@@ -74,19 +74,9 @@ class UserBanAdmin(admin.ModelAdmin):
|
|||||||
autocomplete_fields = ("user", "ban_group")
|
autocomplete_fields = ("user", "ban_group")
|
||||||
|
|
||||||
|
|
||||||
class GroupInline(admin.TabularInline):
|
|
||||||
model = Group.permissions.through
|
|
||||||
readonly_fields = ("group",)
|
|
||||||
extra = 0
|
|
||||||
|
|
||||||
def has_add_permission(self, request, obj):
|
|
||||||
return False
|
|
||||||
|
|
||||||
|
|
||||||
@admin.register(Permission)
|
@admin.register(Permission)
|
||||||
class PermissionAdmin(admin.ModelAdmin):
|
class PermissionAdmin(admin.ModelAdmin):
|
||||||
search_fields = ("codename",)
|
search_fields = ("codename",)
|
||||||
inlines = (GroupInline,)
|
|
||||||
|
|
||||||
|
|
||||||
@admin.register(Page)
|
@admin.register(Page)
|
||||||
|
|||||||
10
core/api.py
10
core/api.py
@@ -74,7 +74,7 @@ class MailingListController(ControllerBase):
|
|||||||
class UserController(ControllerBase):
|
class UserController(ControllerBase):
|
||||||
@route.get("", response=list[UserProfileSchema], permissions=[CanAccessLookup])
|
@route.get("", response=list[UserProfileSchema], permissions=[CanAccessLookup])
|
||||||
def fetch_profiles(self, pks: Query[set[int]]):
|
def fetch_profiles(self, pks: Query[set[int]]):
|
||||||
return User.objects.viewable_by(self.context.request.user).filter(pk__in=pks)
|
return User.objects.filter(pk__in=pks)
|
||||||
|
|
||||||
@route.get("/{int:user_id}", response=UserSchema, permissions=[CanView])
|
@route.get("/{int:user_id}", response=UserSchema, permissions=[CanView])
|
||||||
def fetch_user(self, user_id: int):
|
def fetch_user(self, user_id: int):
|
||||||
@@ -90,9 +90,7 @@ class UserController(ControllerBase):
|
|||||||
@paginate(PageNumberPaginationExtra, page_size=20)
|
@paginate(PageNumberPaginationExtra, page_size=20)
|
||||||
def search_users(self, filters: Query[UserFilterSchema]):
|
def search_users(self, filters: Query[UserFilterSchema]):
|
||||||
return filters.filter(
|
return filters.filter(
|
||||||
User.objects.viewable_by(self.context.request.user).order_by(
|
User.objects.order_by(F("last_login").desc(nulls_last=True))
|
||||||
F("last_login").desc(nulls_last=True)
|
|
||||||
)
|
|
||||||
)
|
)
|
||||||
|
|
||||||
|
|
||||||
@@ -101,7 +99,7 @@ class SithFileController(ControllerBase):
|
|||||||
@route.get(
|
@route.get(
|
||||||
"/search",
|
"/search",
|
||||||
response=PaginatedResponseSchema[SithFileSchema],
|
response=PaginatedResponseSchema[SithFileSchema],
|
||||||
auth=[ApiKeyAuth(), SessionAuth()],
|
auth=[SessionAuth(), ApiKeyAuth()],
|
||||||
permissions=[CanAccessLookup],
|
permissions=[CanAccessLookup],
|
||||||
)
|
)
|
||||||
@paginate(PageNumberPaginationExtra, page_size=50)
|
@paginate(PageNumberPaginationExtra, page_size=50)
|
||||||
@@ -114,7 +112,7 @@ class GroupController(ControllerBase):
|
|||||||
@route.get(
|
@route.get(
|
||||||
"/search",
|
"/search",
|
||||||
response=PaginatedResponseSchema[GroupSchema],
|
response=PaginatedResponseSchema[GroupSchema],
|
||||||
auth=[ApiKeyAuth(), SessionAuth()],
|
auth=[SessionAuth(), ApiKeyAuth()],
|
||||||
permissions=[CanAccessLookup],
|
permissions=[CanAccessLookup],
|
||||||
)
|
)
|
||||||
@paginate(PageNumberPaginationExtra, page_size=50)
|
@paginate(PageNumberPaginationExtra, page_size=50)
|
||||||
|
|||||||
@@ -24,6 +24,7 @@
|
|||||||
from __future__ import annotations
|
from __future__ import annotations
|
||||||
|
|
||||||
import types
|
import types
|
||||||
|
import warnings
|
||||||
from typing import TYPE_CHECKING, Any, LiteralString
|
from typing import TYPE_CHECKING, Any, LiteralString
|
||||||
|
|
||||||
from django.contrib.auth.mixins import AccessMixin, PermissionRequiredMixin
|
from django.contrib.auth.mixins import AccessMixin, PermissionRequiredMixin
|
||||||
@@ -146,6 +147,45 @@ class GenericContentPermissionMixinBuilder(View):
|
|||||||
return super().dispatch(request, *arg, **kwargs)
|
return super().dispatch(request, *arg, **kwargs)
|
||||||
|
|
||||||
|
|
||||||
|
class CanCreateMixin(View):
|
||||||
|
"""Protect any child view that would create an object.
|
||||||
|
|
||||||
|
Raises:
|
||||||
|
PermissionDenied:
|
||||||
|
If the user has not the necessary permission
|
||||||
|
to create the object of the view.
|
||||||
|
"""
|
||||||
|
|
||||||
|
def __init_subclass__(cls, **kwargs):
|
||||||
|
warnings.warn(
|
||||||
|
f"{cls.__name__} is deprecated and should be replaced "
|
||||||
|
"by other permission verification mecanism.",
|
||||||
|
DeprecationWarning,
|
||||||
|
stacklevel=2,
|
||||||
|
)
|
||||||
|
super().__init_subclass__(**kwargs)
|
||||||
|
|
||||||
|
def __init__(self, *args, **kwargs):
|
||||||
|
warnings.warn(
|
||||||
|
f"{self.__class__.__name__} is deprecated and should be replaced "
|
||||||
|
"by other permission verification mecanism.",
|
||||||
|
DeprecationWarning,
|
||||||
|
stacklevel=2,
|
||||||
|
)
|
||||||
|
super().__init__(*args, **kwargs)
|
||||||
|
|
||||||
|
def dispatch(self, request, *arg, **kwargs):
|
||||||
|
if not request.user.is_authenticated:
|
||||||
|
raise PermissionDenied
|
||||||
|
return super().dispatch(request, *arg, **kwargs)
|
||||||
|
|
||||||
|
def form_valid(self, form):
|
||||||
|
obj = form.instance
|
||||||
|
if can_edit_prop(obj, self.request.user):
|
||||||
|
return super().form_valid(form)
|
||||||
|
raise PermissionDenied
|
||||||
|
|
||||||
|
|
||||||
class CanEditPropMixin(GenericContentPermissionMixinBuilder):
|
class CanEditPropMixin(GenericContentPermissionMixinBuilder):
|
||||||
"""Ensure the user has owner permissions on the child view object.
|
"""Ensure the user has owner permissions on the child view object.
|
||||||
|
|
||||||
|
|||||||
40
core/management/commands/check_fs.py
Normal file
40
core/management/commands/check_fs.py
Normal file
@@ -0,0 +1,40 @@
|
|||||||
|
#
|
||||||
|
# Copyright 2018
|
||||||
|
# - Skia <skia@libskia.so>
|
||||||
|
#
|
||||||
|
# Ce fichier fait partie du site de l'Association des Étudiants de l'UTBM,
|
||||||
|
# http://ae.utbm.fr.
|
||||||
|
#
|
||||||
|
# This program is free software; you can redistribute it and/or modify it under
|
||||||
|
# the terms of the GNU General Public License a published by the Free Software
|
||||||
|
# Foundation; either version 3 of the License, or (at your option) any later
|
||||||
|
# version.
|
||||||
|
#
|
||||||
|
# This program is distributed in the hope that it will be useful, but WITHOUT
|
||||||
|
# ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS
|
||||||
|
# FOR A PARTICULAR PURPOSE. See the GNU General Public License for more
|
||||||
|
# details.
|
||||||
|
#
|
||||||
|
# You should have received a copy of the GNU General Public License along with
|
||||||
|
# this program; if not, write to the Free Sofware Foundation, Inc., 59 Temple
|
||||||
|
# Place - Suite 330, Boston, MA 02111-1307, USA.
|
||||||
|
#
|
||||||
|
#
|
||||||
|
|
||||||
|
from django.core.management.base import BaseCommand
|
||||||
|
|
||||||
|
from core.models import SithFile
|
||||||
|
|
||||||
|
|
||||||
|
class Command(BaseCommand):
|
||||||
|
help = "Recursively check the file system with respect to the DB"
|
||||||
|
|
||||||
|
def add_arguments(self, parser):
|
||||||
|
parser.add_argument(
|
||||||
|
"ids", metavar="ID", type=int, nargs="+", help="The file IDs to process"
|
||||||
|
)
|
||||||
|
|
||||||
|
def handle(self, *args, **options):
|
||||||
|
files = SithFile.objects.filter(id__in=options["ids"]).all()
|
||||||
|
for f in files:
|
||||||
|
f._check_fs()
|
||||||
@@ -150,8 +150,7 @@ class Command(BaseCommand):
|
|||||||
|
|
||||||
Weekmail().save()
|
Weekmail().save()
|
||||||
|
|
||||||
# Here we add a lot of test datas, that are not necessary for the Sith,
|
# Here we add a lot of test datas, that are not necessary for the Sith, but that provide a basic development environment
|
||||||
# but that provide a basic development environment
|
|
||||||
self.now = timezone.now().replace(hour=12, second=0)
|
self.now = timezone.now().replace(hour=12, second=0)
|
||||||
|
|
||||||
skia = User.objects.create_user(
|
skia = User.objects.create_user(
|
||||||
@@ -790,7 +789,11 @@ class Command(BaseCommand):
|
|||||||
|
|
||||||
subscribers = Group.objects.create(name="Cotisants")
|
subscribers = Group.objects.create(name="Cotisants")
|
||||||
subscribers.permissions.add(
|
subscribers.permissions.add(
|
||||||
*list(perms.filter(codename__in=["add_news", "add_uvcomment"]))
|
*list(
|
||||||
|
perms.filter(
|
||||||
|
codename__in=["add_news", "add_uvcomment", "view_reservationslot"]
|
||||||
|
)
|
||||||
|
)
|
||||||
)
|
)
|
||||||
old_subscribers = Group.objects.create(name="Anciens cotisants")
|
old_subscribers = Group.objects.create(name="Anciens cotisants")
|
||||||
old_subscribers.permissions.add(
|
old_subscribers.permissions.add(
|
||||||
|
|||||||
@@ -1,6 +1,7 @@
|
|||||||
import random
|
import random
|
||||||
from datetime import date, timedelta
|
from datetime import date, timedelta
|
||||||
from datetime import timezone as tz
|
from datetime import timezone as tz
|
||||||
|
from math import ceil
|
||||||
from typing import Iterator
|
from typing import Iterator
|
||||||
|
|
||||||
from dateutil.relativedelta import relativedelta
|
from dateutil.relativedelta import relativedelta
|
||||||
@@ -24,6 +25,7 @@ from counter.models import (
|
|||||||
)
|
)
|
||||||
from forum.models import Forum, ForumMessage, ForumTopic
|
from forum.models import Forum, ForumMessage, ForumTopic
|
||||||
from pedagogy.models import UV
|
from pedagogy.models import UV
|
||||||
|
from reservation.models import ReservationSlot, Room
|
||||||
from subscription.models import Subscription
|
from subscription.models import Subscription
|
||||||
|
|
||||||
|
|
||||||
@@ -40,45 +42,20 @@ class Command(BaseCommand):
|
|||||||
|
|
||||||
self.stdout.write("Creating users...")
|
self.stdout.write("Creating users...")
|
||||||
users = self.create_users()
|
users = self.create_users()
|
||||||
|
# len(subscribers) is approximately 480
|
||||||
subscribers = random.sample(users, k=int(0.8 * len(users)))
|
subscribers = random.sample(users, k=int(0.8 * len(users)))
|
||||||
self.stdout.write("Creating subscriptions...")
|
self.stdout.write("Creating subscriptions...")
|
||||||
self.create_subscriptions(subscribers)
|
self.create_subscriptions(subscribers)
|
||||||
self.stdout.write("Creating club memberships...")
|
self.stdout.write("Creating club memberships...")
|
||||||
users_qs = User.objects.filter(id__in=[s.id for s in subscribers])
|
self.create_club_memberships(subscribers)
|
||||||
subscribers_now = list(
|
self.stdout.write("Creating rooms and reservation...")
|
||||||
users_qs.annotate(
|
self.create_resources_and_reservations(random.sample(subscribers, k=40))
|
||||||
filter=Exists(
|
|
||||||
Subscription.objects.filter(
|
|
||||||
member_id=OuterRef("pk"), subscription_end__gte=now()
|
|
||||||
)
|
|
||||||
)
|
|
||||||
)
|
|
||||||
)
|
|
||||||
old_subscribers = list(
|
|
||||||
users_qs.annotate(
|
|
||||||
filter=Exists(
|
|
||||||
Subscription.objects.filter(
|
|
||||||
member_id=OuterRef("pk"), subscription_end__lt=now()
|
|
||||||
)
|
|
||||||
)
|
|
||||||
)
|
|
||||||
)
|
|
||||||
self.make_club(
|
|
||||||
Club.objects.get(id=settings.SITH_MAIN_CLUB_ID),
|
|
||||||
random.sample(subscribers_now, k=min(30, len(subscribers_now))),
|
|
||||||
random.sample(old_subscribers, k=min(60, len(old_subscribers))),
|
|
||||||
)
|
|
||||||
self.make_club(
|
|
||||||
Club.objects.get(name="Troll Penché"),
|
|
||||||
random.sample(subscribers_now, k=min(20, len(subscribers_now))),
|
|
||||||
random.sample(old_subscribers, k=min(80, len(old_subscribers))),
|
|
||||||
)
|
|
||||||
self.stdout.write("Creating uvs...")
|
self.stdout.write("Creating uvs...")
|
||||||
self.create_uvs()
|
self.create_uvs()
|
||||||
self.stdout.write("Creating products...")
|
self.stdout.write("Creating products...")
|
||||||
self.create_products()
|
self.create_products()
|
||||||
self.stdout.write("Creating sales and refills...")
|
self.stdout.write("Creating sales and refills...")
|
||||||
sellers = random.sample(list(User.objects.all()), 100)
|
sellers = list(User.objects.order_by("?")[:100])
|
||||||
self.create_sales(sellers)
|
self.create_sales(sellers)
|
||||||
self.stdout.write("Creating permanences...")
|
self.stdout.write("Creating permanences...")
|
||||||
self.create_permanences(sellers)
|
self.create_permanences(sellers)
|
||||||
@@ -192,6 +169,97 @@ class Command(BaseCommand):
|
|||||||
memberships = Membership.objects.bulk_create(memberships)
|
memberships = Membership.objects.bulk_create(memberships)
|
||||||
Membership._add_club_groups(memberships)
|
Membership._add_club_groups(memberships)
|
||||||
|
|
||||||
|
def create_club_memberships(self, users: list[User]):
|
||||||
|
users_qs = User.objects.filter(id__in=[s.id for s in users])
|
||||||
|
subscribers_now = list(
|
||||||
|
users_qs.annotate(
|
||||||
|
filter=Exists(
|
||||||
|
Subscription.objects.filter(
|
||||||
|
member_id=OuterRef("pk"), subscription_end__gte=now()
|
||||||
|
)
|
||||||
|
)
|
||||||
|
)
|
||||||
|
)
|
||||||
|
old_subscribers = list(
|
||||||
|
users_qs.annotate(
|
||||||
|
filter=Exists(
|
||||||
|
Subscription.objects.filter(
|
||||||
|
member_id=OuterRef("pk"), subscription_end__lt=now()
|
||||||
|
)
|
||||||
|
)
|
||||||
|
)
|
||||||
|
)
|
||||||
|
self.make_club(
|
||||||
|
Club.objects.get(id=settings.SITH_MAIN_CLUB_ID),
|
||||||
|
random.sample(subscribers_now, k=min(30, len(subscribers_now))),
|
||||||
|
random.sample(old_subscribers, k=min(60, len(old_subscribers))),
|
||||||
|
)
|
||||||
|
self.make_club(
|
||||||
|
Club.objects.get(name="Troll Penché"),
|
||||||
|
random.sample(subscribers_now, k=min(20, len(subscribers_now))),
|
||||||
|
random.sample(old_subscribers, k=min(80, len(old_subscribers))),
|
||||||
|
)
|
||||||
|
|
||||||
|
def create_resources_and_reservations(self, users: list[User]):
|
||||||
|
"""Generate reservable rooms and reservations slots for those rooms.
|
||||||
|
|
||||||
|
Contrary to the other data generator,
|
||||||
|
this one generates more data than what is expected on the real db.
|
||||||
|
"""
|
||||||
|
ae = Club.objects.get(id=settings.SITH_MAIN_CLUB_ID)
|
||||||
|
pdf = Club.objects.get(id=settings.SITH_PDF_CLUB_ID)
|
||||||
|
troll = Club.objects.get(name="Troll Penché")
|
||||||
|
rooms = [
|
||||||
|
Room(
|
||||||
|
name=name,
|
||||||
|
club=club,
|
||||||
|
location=location,
|
||||||
|
description=self.faker.text(100),
|
||||||
|
)
|
||||||
|
for name, club, location in [
|
||||||
|
("Champi", ae, "BELFORT"),
|
||||||
|
("Muzik", ae, "BELFORT"),
|
||||||
|
("Pôle Tech", ae, "BELFORT"),
|
||||||
|
("Jolly", troll, "BELFORT"),
|
||||||
|
("Cookut", pdf, "BELFORT"),
|
||||||
|
("Lucky", pdf, "BELFORT"),
|
||||||
|
("Potards", pdf, "SEVENANS"),
|
||||||
|
("Bureau AE", ae, "SEVENANS"),
|
||||||
|
]
|
||||||
|
]
|
||||||
|
rooms = Room.objects.bulk_create(rooms)
|
||||||
|
reservations = []
|
||||||
|
for room in rooms:
|
||||||
|
# how much people use this room.
|
||||||
|
# The higher the number, the more reservations exist,
|
||||||
|
# the smaller the interval between two slot is,
|
||||||
|
# and the more future reservations have already been made ahead of time
|
||||||
|
affluence = random.randint(2, 6)
|
||||||
|
slot_start = make_aware(self.faker.past_datetime("-5y").replace(minute=0))
|
||||||
|
generate_until = make_aware(
|
||||||
|
self.faker.future_datetime(timedelta(days=1) * affluence**2)
|
||||||
|
)
|
||||||
|
while slot_start < generate_until:
|
||||||
|
if slot_start.hour < 8:
|
||||||
|
# if a reservation would start in the middle of the night
|
||||||
|
# make it start the next morning instead
|
||||||
|
slot_start += timedelta(hours=10 - slot_start.hour)
|
||||||
|
duration = timedelta(minutes=15) * (1 + int(random.gammavariate(3, 2)))
|
||||||
|
reservations.append(
|
||||||
|
ReservationSlot(
|
||||||
|
room=room,
|
||||||
|
author=random.choice(users),
|
||||||
|
start_at=slot_start,
|
||||||
|
end_at=slot_start + duration,
|
||||||
|
created_at=slot_start - self.faker.time_delta("+7d"),
|
||||||
|
)
|
||||||
|
)
|
||||||
|
slot_start += duration + (
|
||||||
|
timedelta(minutes=15) * ceil(random.expovariate(affluence / 192))
|
||||||
|
)
|
||||||
|
reservations.sort(key=lambda slot: slot.created_at)
|
||||||
|
ReservationSlot.objects.bulk_create(reservations)
|
||||||
|
|
||||||
def create_uvs(self):
|
def create_uvs(self):
|
||||||
root = User.objects.get(username="root")
|
root = User.objects.get(username="root")
|
||||||
categories = ["CS", "TM", "OM", "QC", "EC"]
|
categories = ["CS", "TM", "OM", "QC", "EC"]
|
||||||
@@ -389,7 +457,7 @@ class Command(BaseCommand):
|
|||||||
Permanency.objects.bulk_create(perms)
|
Permanency.objects.bulk_create(perms)
|
||||||
|
|
||||||
def create_forums(self):
|
def create_forums(self):
|
||||||
forumers = random.sample(list(User.objects.all()), 100)
|
forumers = list(User.objects.order_by("?")[:100])
|
||||||
most_actives = random.sample(forumers, 10)
|
most_actives = random.sample(forumers, 10)
|
||||||
categories = list(Forum.objects.filter(is_category=True))
|
categories = list(Forum.objects.filter(is_category=True))
|
||||||
new_forums = [
|
new_forums = [
|
||||||
@@ -407,7 +475,7 @@ class Command(BaseCommand):
|
|||||||
for _ in range(100)
|
for _ in range(100)
|
||||||
]
|
]
|
||||||
ForumTopic.objects.bulk_create(new_topics)
|
ForumTopic.objects.bulk_create(new_topics)
|
||||||
topics = list(ForumTopic.objects.all())
|
topics = list(ForumTopic.objects.values_list("id", flat=True))
|
||||||
|
|
||||||
def get_author():
|
def get_author():
|
||||||
if random.random() > 0.5:
|
if random.random() > 0.5:
|
||||||
@@ -415,7 +483,7 @@ class Command(BaseCommand):
|
|||||||
return random.choice(forumers)
|
return random.choice(forumers)
|
||||||
|
|
||||||
messages = []
|
messages = []
|
||||||
for t in topics:
|
for topic_id in topics:
|
||||||
nb_messages = max(1, int(random.normalvariate(mu=90, sigma=50)))
|
nb_messages = max(1, int(random.normalvariate(mu=90, sigma=50)))
|
||||||
dates = sorted(
|
dates = sorted(
|
||||||
[
|
[
|
||||||
@@ -427,7 +495,7 @@ class Command(BaseCommand):
|
|||||||
messages.extend(
|
messages.extend(
|
||||||
[
|
[
|
||||||
ForumMessage(
|
ForumMessage(
|
||||||
topic=t,
|
topic_id=topic_id,
|
||||||
author=get_author(),
|
author=get_author(),
|
||||||
date=d,
|
date=d,
|
||||||
message="\n\n".join(
|
message="\n\n".join(
|
||||||
|
|||||||
41
core/management/commands/repair_fs.py
Normal file
41
core/management/commands/repair_fs.py
Normal file
@@ -0,0 +1,41 @@
|
|||||||
|
#
|
||||||
|
# Copyright 2018
|
||||||
|
# - Skia <skia@libskia.so>
|
||||||
|
#
|
||||||
|
# Ce fichier fait partie du site de l'Association des Étudiants de l'UTBM,
|
||||||
|
# http://ae.utbm.fr.
|
||||||
|
#
|
||||||
|
# This program is free software; you can redistribute it and/or modify it under
|
||||||
|
# the terms of the GNU General Public License a published by the Free Software
|
||||||
|
# Foundation; either version 3 of the License, or (at your option) any later
|
||||||
|
# version.
|
||||||
|
#
|
||||||
|
# This program is distributed in the hope that it will be useful, but WITHOUT
|
||||||
|
# ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS
|
||||||
|
# FOR A PARTICULAR PURPOSE. See the GNU General Public License for more
|
||||||
|
# details.
|
||||||
|
#
|
||||||
|
# You should have received a copy of the GNU General Public License along with
|
||||||
|
# this program; if not, write to the Free Sofware Foundation, Inc., 59 Temple
|
||||||
|
# Place - Suite 330, Boston, MA 02111-1307, USA.
|
||||||
|
#
|
||||||
|
#
|
||||||
|
|
||||||
|
|
||||||
|
from django.core.management.base import BaseCommand
|
||||||
|
|
||||||
|
from core.models import SithFile
|
||||||
|
|
||||||
|
|
||||||
|
class Command(BaseCommand):
|
||||||
|
help = "Recursively repair the file system with respect to the DB"
|
||||||
|
|
||||||
|
def add_arguments(self, parser):
|
||||||
|
parser.add_argument(
|
||||||
|
"ids", metavar="ID", type=int, nargs="+", help="The file IDs to process"
|
||||||
|
)
|
||||||
|
|
||||||
|
def handle(self, *args, **options):
|
||||||
|
files = SithFile.objects.filter(id__in=options["ids"]).all()
|
||||||
|
for f in files:
|
||||||
|
f._repair_fs()
|
||||||
@@ -1,33 +0,0 @@
|
|||||||
# Generated by Django 5.2.8 on 2025-11-09 15:20
|
|
||||||
|
|
||||||
from django.db import migrations, models
|
|
||||||
|
|
||||||
|
|
||||||
class Migration(migrations.Migration):
|
|
||||||
dependencies = [("core", "0047_alter_notification_date_alter_notification_type")]
|
|
||||||
|
|
||||||
operations = [
|
|
||||||
migrations.AlterModelOptions(
|
|
||||||
name="user",
|
|
||||||
options={
|
|
||||||
"permissions": [("view_hidden_user", "Can view hidden users")],
|
|
||||||
"verbose_name": "user",
|
|
||||||
"verbose_name_plural": "users",
|
|
||||||
},
|
|
||||||
),
|
|
||||||
migrations.RenameField(
|
|
||||||
model_name="user", old_name="is_subscriber_viewable", new_name="is_viewable"
|
|
||||||
),
|
|
||||||
migrations.AlterField(
|
|
||||||
model_name="user",
|
|
||||||
name="is_viewable",
|
|
||||||
field=models.BooleanField(
|
|
||||||
default=True,
|
|
||||||
verbose_name="Profile visible by subscribers",
|
|
||||||
help_text=(
|
|
||||||
"If you disable this option, only admin users "
|
|
||||||
"will be able to see your profile."
|
|
||||||
),
|
|
||||||
),
|
|
||||||
),
|
|
||||||
]
|
|
||||||
175
core/models.py
175
core/models.py
@@ -23,12 +23,14 @@
|
|||||||
#
|
#
|
||||||
from __future__ import annotations
|
from __future__ import annotations
|
||||||
|
|
||||||
|
import logging
|
||||||
|
import os
|
||||||
import string
|
import string
|
||||||
import unicodedata
|
import unicodedata
|
||||||
from datetime import timedelta
|
from datetime import timedelta
|
||||||
from io import BytesIO
|
from io import BytesIO
|
||||||
from pathlib import Path
|
from pathlib import Path
|
||||||
from typing import TYPE_CHECKING, Self
|
from typing import TYPE_CHECKING, Optional, Self
|
||||||
from uuid import uuid4
|
from uuid import uuid4
|
||||||
|
|
||||||
from django.conf import settings
|
from django.conf import settings
|
||||||
@@ -54,8 +56,6 @@ from django.utils.translation import gettext_lazy as _
|
|||||||
from phonenumber_field.modelfields import PhoneNumberField
|
from phonenumber_field.modelfields import PhoneNumberField
|
||||||
from PIL import Image, ImageOps
|
from PIL import Image, ImageOps
|
||||||
|
|
||||||
from core.utils import get_last_promo
|
|
||||||
|
|
||||||
if TYPE_CHECKING:
|
if TYPE_CHECKING:
|
||||||
from django.core.files.uploadedfile import UploadedFile
|
from django.core.files.uploadedfile import UploadedFile
|
||||||
from pydantic import NonNegativeInt
|
from pydantic import NonNegativeInt
|
||||||
@@ -88,14 +88,57 @@ class Group(AuthGroup):
|
|||||||
|
|
||||||
|
|
||||||
def validate_promo(value: int) -> None:
|
def validate_promo(value: int) -> None:
|
||||||
last_promo = get_last_promo()
|
start_year = settings.SITH_SCHOOL_START_YEAR
|
||||||
if not 0 < value <= last_promo:
|
delta = (localdate() + timedelta(days=180)).year - start_year
|
||||||
|
if value < 0 or delta < value:
|
||||||
raise ValidationError(
|
raise ValidationError(
|
||||||
_("%(value)s is not a valid promo (between 0 and %(end)s)"),
|
_("%(value)s is not a valid promo (between 0 and %(end)s)"),
|
||||||
params={"value": value, "end": last_promo},
|
params={"value": value, "end": delta},
|
||||||
)
|
)
|
||||||
|
|
||||||
|
|
||||||
|
def get_group(*, pk: int | None = None, name: str | None = None) -> Group | None:
|
||||||
|
"""Search for a group by its primary key or its name.
|
||||||
|
Either one of the two must be set.
|
||||||
|
|
||||||
|
The result is cached for the default duration (should be 5 minutes).
|
||||||
|
|
||||||
|
Args:
|
||||||
|
pk: The primary key of the group
|
||||||
|
name: The name of the group
|
||||||
|
|
||||||
|
Returns:
|
||||||
|
The group if it exists, else None
|
||||||
|
|
||||||
|
Raises:
|
||||||
|
ValueError: If no group matches the criteria
|
||||||
|
"""
|
||||||
|
if pk is None and name is None:
|
||||||
|
raise ValueError("Either pk or name must be set")
|
||||||
|
|
||||||
|
# replace space characters to hide warnings with memcached backend
|
||||||
|
pk_or_name: str | int = pk if pk is not None else name.replace(" ", "_")
|
||||||
|
group = cache.get(f"sith_group_{pk_or_name}")
|
||||||
|
|
||||||
|
if group == "not_found":
|
||||||
|
# Using None as a cache value is a little bit tricky,
|
||||||
|
# so we use a special string to represent None
|
||||||
|
return None
|
||||||
|
elif group is not None:
|
||||||
|
return group
|
||||||
|
# if this point is reached, the group is not in cache
|
||||||
|
if pk is not None:
|
||||||
|
group = Group.objects.filter(pk=pk).first()
|
||||||
|
else:
|
||||||
|
group = Group.objects.filter(name=name).first()
|
||||||
|
if group is not None:
|
||||||
|
name = group.name.replace(" ", "_")
|
||||||
|
cache.set_many({f"sith_group_{group.id}": group, f"sith_group_{name}": group})
|
||||||
|
else:
|
||||||
|
cache.set(f"sith_group_{pk_or_name}", "not_found")
|
||||||
|
return group
|
||||||
|
|
||||||
|
|
||||||
class BanGroup(AuthGroup):
|
class BanGroup(AuthGroup):
|
||||||
"""An anti-group, that removes permissions instead of giving them.
|
"""An anti-group, that removes permissions instead of giving them.
|
||||||
|
|
||||||
@@ -137,15 +180,6 @@ class UserQuerySet(models.QuerySet):
|
|||||||
Q(Exists(subscriptions)) | Q(Exists(refills)) | Q(Exists(purchases))
|
Q(Exists(subscriptions)) | Q(Exists(refills)) | Q(Exists(purchases))
|
||||||
)
|
)
|
||||||
|
|
||||||
def viewable_by(self, user: User) -> Self:
|
|
||||||
if user.has_perm("core.view_hidden_user"):
|
|
||||||
return self
|
|
||||||
if user.has_perm("core.view_user"):
|
|
||||||
return self.filter(is_viewable=True)
|
|
||||||
if user.is_anonymous:
|
|
||||||
return self.none()
|
|
||||||
return self.filter(id=user.id)
|
|
||||||
|
|
||||||
|
|
||||||
class CustomUserManager(UserManager.from_queryset(UserQuerySet)):
|
class CustomUserManager(UserManager.from_queryset(UserQuerySet)):
|
||||||
# see https://docs.djangoproject.com/fr/stable/topics/migrations/#model-managers
|
# see https://docs.djangoproject.com/fr/stable/topics/migrations/#model-managers
|
||||||
@@ -281,24 +315,13 @@ class User(AbstractUser):
|
|||||||
parent_address = models.CharField(
|
parent_address = models.CharField(
|
||||||
_("parent address"), max_length=128, blank=True, default=""
|
_("parent address"), max_length=128, blank=True, default=""
|
||||||
)
|
)
|
||||||
is_viewable = models.BooleanField(
|
is_subscriber_viewable = models.BooleanField(
|
||||||
_("Profile visible by subscribers"),
|
_("is subscriber viewable"), default=True
|
||||||
help_text=_(
|
|
||||||
"If you disable this option, only admin users "
|
|
||||||
"will be able to see your profile."
|
|
||||||
),
|
|
||||||
default=True,
|
|
||||||
)
|
)
|
||||||
godfathers = models.ManyToManyField("User", related_name="godchildren", blank=True)
|
godfathers = models.ManyToManyField("User", related_name="godchildren", blank=True)
|
||||||
|
|
||||||
objects = CustomUserManager()
|
objects = CustomUserManager()
|
||||||
|
|
||||||
class Meta(AbstractUser.Meta):
|
|
||||||
abstract = False
|
|
||||||
permissions = [
|
|
||||||
("view_hidden_user", "Can view hidden users"),
|
|
||||||
]
|
|
||||||
|
|
||||||
def __str__(self):
|
def __str__(self):
|
||||||
return self.get_display_name()
|
return self.get_display_name()
|
||||||
|
|
||||||
@@ -359,18 +382,19 @@ class User(AbstractUser):
|
|||||||
Returns:
|
Returns:
|
||||||
True if the user is the group, else False
|
True if the user is the group, else False
|
||||||
"""
|
"""
|
||||||
if not pk and not name:
|
if pk is not None:
|
||||||
|
group: Optional[Group] = get_group(pk=pk)
|
||||||
|
elif name is not None:
|
||||||
|
group: Optional[Group] = get_group(name=name)
|
||||||
|
else:
|
||||||
raise ValueError("You must either provide the id or the name of the group")
|
raise ValueError("You must either provide the id or the name of the group")
|
||||||
group_id: int | None = (
|
if group is None:
|
||||||
pk or Group.objects.filter(name=name).values_list("id", flat=True).first()
|
|
||||||
)
|
|
||||||
if group_id is None:
|
|
||||||
return False
|
return False
|
||||||
if group_id == settings.SITH_GROUP_SUBSCRIBERS_ID:
|
if group.id == settings.SITH_GROUP_SUBSCRIBERS_ID:
|
||||||
return self.is_subscribed
|
return self.is_subscribed
|
||||||
if group_id == settings.SITH_GROUP_ROOT_ID:
|
if group.id == settings.SITH_GROUP_ROOT_ID:
|
||||||
return self.is_root
|
return self.is_root
|
||||||
return any(g.id == group_id for g in self.cached_groups)
|
return group in self.cached_groups
|
||||||
|
|
||||||
@cached_property
|
@cached_property
|
||||||
def cached_groups(self) -> list[Group]:
|
def cached_groups(self) -> list[Group]:
|
||||||
@@ -430,6 +454,14 @@ class User(AbstractUser):
|
|||||||
else:
|
else:
|
||||||
raise ValidationError(_("A user with that username already exists"))
|
raise ValidationError(_("A user with that username already exists"))
|
||||||
|
|
||||||
|
def get_profile(self):
|
||||||
|
return {
|
||||||
|
"last_name": self.last_name,
|
||||||
|
"first_name": self.first_name,
|
||||||
|
"nick_name": self.nick_name,
|
||||||
|
"date_of_birth": self.date_of_birth,
|
||||||
|
}
|
||||||
|
|
||||||
def get_short_name(self):
|
def get_short_name(self):
|
||||||
"""Returns the short name for the user."""
|
"""Returns the short name for the user."""
|
||||||
if self.nick_name:
|
if self.nick_name:
|
||||||
@@ -572,12 +604,8 @@ class User(AbstractUser):
|
|||||||
def can_be_edited_by(self, user):
|
def can_be_edited_by(self, user):
|
||||||
return user.is_root or user.is_board_member
|
return user.is_root or user.is_board_member
|
||||||
|
|
||||||
def can_be_viewed_by(self, user: User) -> bool:
|
def can_be_viewed_by(self, user):
|
||||||
return (
|
return (user.was_subscribed and self.is_subscriber_viewable) or user.is_root
|
||||||
user.id == self.id
|
|
||||||
or user.has_perm("core.view_hidden_user")
|
|
||||||
or (user.has_perm("core.view_user") and self.is_viewable)
|
|
||||||
)
|
|
||||||
|
|
||||||
def get_mini_item(self):
|
def get_mini_item(self):
|
||||||
return """
|
return """
|
||||||
@@ -661,8 +689,8 @@ class AnonymousUser(AuthAnonymousUser):
|
|||||||
if pk is not None:
|
if pk is not None:
|
||||||
return pk == allowed_id
|
return pk == allowed_id
|
||||||
elif name is not None:
|
elif name is not None:
|
||||||
group = Group.objects.get(id=allowed_id)
|
group = get_group(name=name)
|
||||||
return group.name == name
|
return group is not None and group.id == allowed_id
|
||||||
else:
|
else:
|
||||||
raise ValueError("You must either provide the id or the name of the group")
|
raise ValueError("You must either provide the id or the name of the group")
|
||||||
|
|
||||||
@@ -988,6 +1016,63 @@ class SithFile(models.Model):
|
|||||||
self.clean()
|
self.clean()
|
||||||
self.save()
|
self.save()
|
||||||
|
|
||||||
|
def _repair_fs(self):
|
||||||
|
"""Rebuilds recursively the filesystem as it should be regarding the DB tree."""
|
||||||
|
if self.is_folder:
|
||||||
|
for c in self.children.all():
|
||||||
|
c._repair_fs()
|
||||||
|
return
|
||||||
|
elif not self._check_path_consistence():
|
||||||
|
# First get future parent path and the old file name
|
||||||
|
# Prepend "." so that we match all relative handling of Django's
|
||||||
|
# file storage
|
||||||
|
parent_path = "." + self.parent.get_full_path()
|
||||||
|
parent_full_path = settings.MEDIA_ROOT + parent_path
|
||||||
|
os.makedirs(parent_full_path, exist_ok=True)
|
||||||
|
old_path = self.file.name # Should be relative: "./users/skia/bleh.jpg"
|
||||||
|
new_path = "." + self.get_full_path()
|
||||||
|
try:
|
||||||
|
# Make this atomic, so that a FS problem rolls back the DB change
|
||||||
|
with transaction.atomic():
|
||||||
|
# Set the new filesystem path
|
||||||
|
self.file.name = new_path
|
||||||
|
self.save()
|
||||||
|
# Really move at the FS level
|
||||||
|
if os.path.exists(parent_full_path):
|
||||||
|
os.rename(
|
||||||
|
settings.MEDIA_ROOT + old_path,
|
||||||
|
settings.MEDIA_ROOT + new_path,
|
||||||
|
)
|
||||||
|
# Empty directories may remain, but that's not really a
|
||||||
|
# problem, and that can be solved with a simple shell
|
||||||
|
# command: `find . -type d -empty -delete`
|
||||||
|
except Exception as e:
|
||||||
|
logging.error(e)
|
||||||
|
|
||||||
|
def _check_path_consistence(self):
|
||||||
|
file_path = str(self.file)
|
||||||
|
file_full_path = settings.MEDIA_ROOT + file_path
|
||||||
|
db_path = ".%s" % self.get_full_path()
|
||||||
|
if not os.path.exists(file_full_path):
|
||||||
|
print("%s: WARNING: real file does not exists!" % self.id) # noqa T201
|
||||||
|
print("file path: %s" % file_path, end="") # noqa T201
|
||||||
|
print(" db path: %s" % db_path) # noqa T201
|
||||||
|
return False
|
||||||
|
if file_path != db_path:
|
||||||
|
print("%s: " % self.id, end="") # noqa T201
|
||||||
|
print("file path: %s" % file_path, end="") # noqa T201
|
||||||
|
print(" db path: %s" % db_path) # noqa T201
|
||||||
|
return False
|
||||||
|
return True
|
||||||
|
|
||||||
|
def _check_fs(self):
|
||||||
|
if self.is_folder:
|
||||||
|
for c in self.children.all():
|
||||||
|
c._check_fs()
|
||||||
|
return
|
||||||
|
else:
|
||||||
|
self._check_path_consistence()
|
||||||
|
|
||||||
@property
|
@property
|
||||||
def is_file(self):
|
def is_file(self):
|
||||||
return not self.is_folder
|
return not self.is_folder
|
||||||
@@ -1072,6 +1157,8 @@ class QuickUploadImage(models.Model):
|
|||||||
identifier = str(uuid4())
|
identifier = str(uuid4())
|
||||||
name = Path(image.name).stem[: cls.IMAGE_NAME_SIZE - 1]
|
name = Path(image.name).stem[: cls.IMAGE_NAME_SIZE - 1]
|
||||||
file = File(convert_image(image), name=f"{identifier}.webp")
|
file = File(convert_image(image), name=f"{identifier}.webp")
|
||||||
|
width, height = Image.open(file).size
|
||||||
|
|
||||||
return cls.objects.create(
|
return cls.objects.create(
|
||||||
uuid=identifier,
|
uuid=identifier,
|
||||||
name=name,
|
name=name,
|
||||||
|
|||||||
@@ -1,10 +1,10 @@
|
|||||||
import { limitedChoices } from "#core:alpine/limited-choices";
|
import { alpinePlugin } from "#core:utils/notifications";
|
||||||
import { alpinePlugin as notificationPlugin } from "#core:utils/notifications";
|
import { morph } from "@alpinejs/morph";
|
||||||
import sort from "@alpinejs/sort";
|
import sort from "@alpinejs/sort";
|
||||||
import Alpine from "alpinejs";
|
import Alpine from "alpinejs";
|
||||||
|
|
||||||
Alpine.plugin([sort, limitedChoices]);
|
Alpine.plugin([sort, morph]);
|
||||||
Alpine.magic("notifications", notificationPlugin);
|
Alpine.magic("notifications", alpinePlugin);
|
||||||
window.Alpine = Alpine;
|
window.Alpine = Alpine;
|
||||||
|
|
||||||
window.addEventListener("DOMContentLoaded", () => {
|
window.addEventListener("DOMContentLoaded", () => {
|
||||||
|
|||||||
@@ -1,69 +0,0 @@
|
|||||||
import type { Alpine as AlpineType } from "alpinejs";
|
|
||||||
|
|
||||||
export function limitedChoices(Alpine: AlpineType) {
|
|
||||||
/**
|
|
||||||
* Directive to limit the number of elements
|
|
||||||
* that can be selected in a group of checkboxes.
|
|
||||||
*
|
|
||||||
* When the max numbers of selectable elements is reached,
|
|
||||||
* new elements will still be inserted, but oldest ones will be deselected.
|
|
||||||
* For example, if checkboxes A, B and C have been selected and the max
|
|
||||||
* number of selections is 3, then selecting D will result in having
|
|
||||||
* B, C and D selected.
|
|
||||||
*
|
|
||||||
* # Example in template
|
|
||||||
* ```html
|
|
||||||
* <div x-data="{nbMax: 2}", x-limited-choices="nbMax">
|
|
||||||
* <button @click="nbMax += 1">Click me to increase the limit</button>
|
|
||||||
* <input type="checkbox" value="A" name="foo">
|
|
||||||
* <input type="checkbox" value="B" name="foo">
|
|
||||||
* <input type="checkbox" value="C" name="foo">
|
|
||||||
* <input type="checkbox" value="D" name="foo">
|
|
||||||
* </div>
|
|
||||||
* ```
|
|
||||||
*/
|
|
||||||
Alpine.directive(
|
|
||||||
"limited-choices",
|
|
||||||
(el, { expression }, { evaluateLater, effect }) => {
|
|
||||||
const getMaxChoices = evaluateLater(expression);
|
|
||||||
let maxChoices: number;
|
|
||||||
const inputs: HTMLInputElement[] = Array.from(
|
|
||||||
el.querySelectorAll("input[type='checkbox']"),
|
|
||||||
);
|
|
||||||
const checked = [] as HTMLInputElement[];
|
|
||||||
|
|
||||||
const manageDequeue = () => {
|
|
||||||
if (checked.length <= maxChoices) {
|
|
||||||
// There isn't too many checkboxes selected. Nothing to do
|
|
||||||
return;
|
|
||||||
}
|
|
||||||
const popped = checked.splice(0, checked.length - maxChoices);
|
|
||||||
for (const p of popped) {
|
|
||||||
p.checked = false;
|
|
||||||
}
|
|
||||||
};
|
|
||||||
|
|
||||||
for (const input of inputs) {
|
|
||||||
input.addEventListener("change", (_e) => {
|
|
||||||
if (input.checked) {
|
|
||||||
checked.push(input);
|
|
||||||
} else {
|
|
||||||
checked.splice(checked.indexOf(input), 1);
|
|
||||||
}
|
|
||||||
manageDequeue();
|
|
||||||
});
|
|
||||||
}
|
|
||||||
effect(() => {
|
|
||||||
getMaxChoices((value: string) => {
|
|
||||||
const previousValue = maxChoices;
|
|
||||||
maxChoices = Number.parseInt(value);
|
|
||||||
if (maxChoices < previousValue) {
|
|
||||||
// The maximum number of selectable items has been lowered.
|
|
||||||
// Some currently selected elements may need to be removed
|
|
||||||
manageDequeue();
|
|
||||||
}
|
|
||||||
});
|
|
||||||
});
|
|
||||||
},
|
|
||||||
);
|
|
||||||
}
|
|
||||||
@@ -1,4 +1,5 @@
|
|||||||
import htmx from "htmx.org";
|
import htmx from "htmx.org";
|
||||||
|
import "htmx-ext-alpine-morph";
|
||||||
|
|
||||||
document.body.addEventListener("htmx:beforeRequest", (event) => {
|
document.body.addEventListener("htmx:beforeRequest", (event) => {
|
||||||
event.target.ariaBusy = true;
|
event.target.ariaBusy = true;
|
||||||
|
|||||||
@@ -16,14 +16,74 @@
|
|||||||
--event-details-padding: 20px;
|
--event-details-padding: 20px;
|
||||||
--event-details-border: 1px solid #EEEEEE;
|
--event-details-border: 1px solid #EEEEEE;
|
||||||
--event-details-border-radius: 4px;
|
--event-details-border-radius: 4px;
|
||||||
--event-details-box-shadow: 0px 6px 20px 4px rgb(0 0 0 / 16%);
|
--event-details-box-shadow: 0 6px 20px 4px rgb(0 0 0 / 16%);
|
||||||
--event-details-max-width: 600px;
|
--event-details-max-width: 600px;
|
||||||
}
|
}
|
||||||
|
|
||||||
ics-calendar {
|
ics-calendar,
|
||||||
|
room-scheduler {
|
||||||
border: none;
|
border: none;
|
||||||
box-shadow: none;
|
box-shadow: none;
|
||||||
|
|
||||||
|
a.fc-col-header-cell-cushion,
|
||||||
|
a.fc-col-header-cell-cushion:hover {
|
||||||
|
color: black;
|
||||||
|
}
|
||||||
|
|
||||||
|
a.fc-daygrid-day-number,
|
||||||
|
a.fc-daygrid-day-number:hover {
|
||||||
|
color: rgb(34, 34, 34);
|
||||||
|
}
|
||||||
|
|
||||||
|
td {
|
||||||
|
overflow: visible; // Show events on multiple days
|
||||||
|
}
|
||||||
|
|
||||||
|
td, th {
|
||||||
|
text-align: unset;
|
||||||
|
}
|
||||||
|
|
||||||
|
//Reset from style.scss
|
||||||
|
table {
|
||||||
|
box-shadow: none;
|
||||||
|
border-radius: 0;
|
||||||
|
-moz-border-radius: 0;
|
||||||
|
margin: 0;
|
||||||
|
}
|
||||||
|
|
||||||
|
// Reset from style.scss
|
||||||
|
thead {
|
||||||
|
background-color: white;
|
||||||
|
color: black;
|
||||||
|
}
|
||||||
|
|
||||||
|
// Reset from style.scss
|
||||||
|
tbody > tr {
|
||||||
|
&:nth-child(even):not(.highlight) {
|
||||||
|
background: white;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
.fc .fc-toolbar.fc-footer-toolbar {
|
||||||
|
margin-bottom: 0.5em;
|
||||||
|
}
|
||||||
|
|
||||||
|
button.text-copy,
|
||||||
|
button.text-copy:focus,
|
||||||
|
button.text-copy:hover {
|
||||||
|
background-color: #67AE6E !important;
|
||||||
|
transition: 500ms ease-in;
|
||||||
|
}
|
||||||
|
|
||||||
|
button.text-copied,
|
||||||
|
button.text-copied:focus,
|
||||||
|
button.text-copied:hover {
|
||||||
|
transition: 500ms ease-out;
|
||||||
|
}
|
||||||
|
|
||||||
|
}
|
||||||
|
|
||||||
|
ics-calendar {
|
||||||
#event-details {
|
#event-details {
|
||||||
z-index: 10;
|
z-index: 10;
|
||||||
max-width: 1151px;
|
max-width: 1151px;
|
||||||
@@ -60,82 +120,60 @@ ics-calendar {
|
|||||||
align-items: start;
|
align-items: start;
|
||||||
flex-direction: row;
|
flex-direction: row;
|
||||||
background-color: var(--event-details-background-color);
|
background-color: var(--event-details-background-color);
|
||||||
margin-top: 0px;
|
margin-top: 0;
|
||||||
margin-bottom: 4px;
|
margin-bottom: 4px;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
}
|
||||||
|
|
||||||
a.fc-col-header-cell-cushion,
|
// Reset from style.scss
|
||||||
a.fc-col-header-cell-cushion:hover {
|
thead {
|
||||||
color: black;
|
background-color: white;
|
||||||
|
color: black;
|
||||||
|
}
|
||||||
|
|
||||||
|
// Reset from style.scss
|
||||||
|
tbody > tr {
|
||||||
|
&:nth-child(even):not(.highlight) {
|
||||||
|
background: white;
|
||||||
}
|
}
|
||||||
|
}
|
||||||
|
|
||||||
a.fc-daygrid-day-number,
|
.fc .fc-toolbar.fc-footer-toolbar {
|
||||||
a.fc-daygrid-day-number:hover {
|
margin-bottom: 0.5em;
|
||||||
color: rgb(34, 34, 34);
|
}
|
||||||
}
|
|
||||||
|
|
||||||
td {
|
button.text-copy,
|
||||||
overflow: visible; // Show events on multiple days
|
button.text-copy:focus,
|
||||||
}
|
button.text-copy:hover {
|
||||||
|
background-color: #67AE6E !important;
|
||||||
|
transition: 500ms ease-in;
|
||||||
|
}
|
||||||
|
|
||||||
//Reset from style.scss
|
button.text-copied,
|
||||||
table {
|
button.text-copied:focus,
|
||||||
box-shadow: none;
|
button.text-copied:hover {
|
||||||
border-radius: 0px;
|
transition: 500ms ease-out;
|
||||||
-moz-border-radius: 0px;
|
}
|
||||||
margin: 0px;
|
|
||||||
}
|
|
||||||
|
|
||||||
// Reset from style.scss
|
.fc .fc-getCalendarLink-button {
|
||||||
thead {
|
margin-right: 0.5rem;
|
||||||
background-color: white;
|
}
|
||||||
color: black;
|
|
||||||
}
|
|
||||||
|
|
||||||
// Reset from style.scss
|
.fc .fc-helpButton-button {
|
||||||
tbody>tr {
|
border-radius: 70%;
|
||||||
&:nth-child(even):not(.highlight) {
|
padding-left: 0.5rem;
|
||||||
background: white;
|
padding-right: 0.5rem;
|
||||||
}
|
background-color: rgba(0, 0, 0, 0.8);
|
||||||
}
|
transition: 100ms ease-out;
|
||||||
|
width: 30px;
|
||||||
.fc .fc-toolbar.fc-footer-toolbar {
|
height: 30px;
|
||||||
margin-bottom: 0.5em;
|
font-size: 11px;
|
||||||
}
|
}
|
||||||
|
|
||||||
button.text-copy,
|
|
||||||
button.text-copy:focus,
|
|
||||||
button.text-copy:hover {
|
|
||||||
background-color: #67AE6E !important;
|
|
||||||
transition: 500ms ease-in;
|
|
||||||
}
|
|
||||||
|
|
||||||
button.text-copied,
|
|
||||||
button.text-copied:focus,
|
|
||||||
button.text-copied:hover {
|
|
||||||
transition: 500ms ease-out;
|
|
||||||
}
|
|
||||||
|
|
||||||
.fc .fc-getCalendarLink-button {
|
|
||||||
margin-right: 0.5rem;
|
|
||||||
}
|
|
||||||
|
|
||||||
.fc .fc-helpButton-button {
|
|
||||||
border-radius: 70%;
|
|
||||||
padding-left: 0.5rem;
|
|
||||||
padding-right: 0.5rem;
|
|
||||||
background-color: rgba(0, 0, 0, 0.8);
|
|
||||||
transition: 100ms ease-out;
|
|
||||||
width: 30px;
|
|
||||||
height: 30px;
|
|
||||||
font-size: 11px;
|
|
||||||
}
|
|
||||||
|
|
||||||
|
|
||||||
.fc .fc-helpButton-button:hover {
|
.fc .fc-helpButton-button:hover {
|
||||||
background-color: rgba(20, 20, 20, 0.6);
|
background-color: rgba(20, 20, 20, 0.6);
|
||||||
}
|
|
||||||
}
|
}
|
||||||
|
|
||||||
.tooltip.calendar-copy-tooltip {
|
.tooltip.calendar-copy-tooltip {
|
||||||
@@ -16,6 +16,13 @@
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
.card-group {
|
||||||
|
display: flex;
|
||||||
|
gap: 15px;
|
||||||
|
margin-bottom: 30px;
|
||||||
|
flex-wrap: wrap;
|
||||||
|
}
|
||||||
|
|
||||||
.card {
|
.card {
|
||||||
background-color: $primary-neutral-light-color;
|
background-color: $primary-neutral-light-color;
|
||||||
border-radius: 5px;
|
border-radius: 5px;
|
||||||
@@ -92,13 +99,23 @@
|
|||||||
}
|
}
|
||||||
|
|
||||||
@media screen and (max-width: 765px) {
|
@media screen and (max-width: 765px) {
|
||||||
@include row-layout
|
@include row-layout;
|
||||||
}
|
}
|
||||||
|
|
||||||
// When combined with card, card-row display the card in a row layout,
|
// When combined with card, card-row display the card in a row layout,
|
||||||
// whatever the size of the screen.
|
// whatever the size of the screen.
|
||||||
&.card-row {
|
&.card-row {
|
||||||
@include row-layout
|
@include row-layout;
|
||||||
|
|
||||||
|
&.card-row-m {
|
||||||
|
//width: 50%;
|
||||||
|
max-width: 50%;
|
||||||
|
}
|
||||||
|
|
||||||
|
&.card-row-s {
|
||||||
|
//width: 33%;
|
||||||
|
max-width: 33%;
|
||||||
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
@@ -154,8 +154,10 @@ form {
|
|||||||
margin-bottom: 1rem;
|
margin-bottom: 1rem;
|
||||||
}
|
}
|
||||||
|
|
||||||
.row > label {
|
.row {
|
||||||
margin: unset;
|
label {
|
||||||
|
margin: unset;
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
// ------------- LABEL
|
// ------------- LABEL
|
||||||
|
|||||||
@@ -503,10 +503,6 @@ th {
|
|||||||
text-align: center;
|
text-align: center;
|
||||||
padding: 5px 10px;
|
padding: 5px 10px;
|
||||||
|
|
||||||
>input[type="checkbox"] {
|
|
||||||
padding: unset;
|
|
||||||
}
|
|
||||||
|
|
||||||
>ul {
|
>ul {
|
||||||
margin-top: 0;
|
margin-top: 0;
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -10,10 +10,9 @@
|
|||||||
border-radius: 5px;
|
border-radius: 5px;
|
||||||
padding: 5px 10px;
|
padding: 5px 10px;
|
||||||
position: absolute;
|
position: absolute;
|
||||||
white-space: nowrap;
|
|
||||||
opacity: 0;
|
opacity: 0;
|
||||||
transition: opacity 500ms ease-out;
|
transition: opacity 500ms ease-out;
|
||||||
|
width: max-content;
|
||||||
white-space: normal;
|
white-space: normal;
|
||||||
|
|
||||||
left: 0;
|
left: 0;
|
||||||
|
|||||||
@@ -7,13 +7,10 @@
|
|||||||
.profile {
|
.profile {
|
||||||
&-visible {
|
&-visible {
|
||||||
display: flex;
|
display: flex;
|
||||||
flex-direction: column;
|
justify-content: center;
|
||||||
align-items: center;
|
align-items: center;
|
||||||
gap: 5px;
|
gap: 5px;
|
||||||
padding-top: 10px;
|
padding-top: 10px;
|
||||||
input[type="checkbox"]+label {
|
|
||||||
max-width: unset;
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
|
|
||||||
&-pictures {
|
&-pictures {
|
||||||
@@ -119,19 +116,23 @@
|
|||||||
display: flex;
|
display: flex;
|
||||||
flex-direction: row;
|
flex-direction: row;
|
||||||
flex-wrap: wrap;
|
flex-wrap: wrap;
|
||||||
gap: var(--nf-input-size) 10px;
|
gap: 10px;
|
||||||
justify-content: center;
|
justify-content: center;
|
||||||
}
|
}
|
||||||
|
|
||||||
&-field {
|
&-field {
|
||||||
display: flex;
|
display: flex;
|
||||||
|
flex-direction: row;
|
||||||
|
align-items: center;
|
||||||
flex-wrap: wrap;
|
flex-wrap: wrap;
|
||||||
justify-content: center;
|
justify-content: center;
|
||||||
|
gap: 10px;
|
||||||
width: 100%;
|
width: 100%;
|
||||||
max-width: 330px;
|
max-width: 330px;
|
||||||
min-width: 300px;
|
min-width: 300px;
|
||||||
|
|
||||||
@media (max-width: 750px) {
|
@media (max-width: 750px) {
|
||||||
|
gap: 4px;
|
||||||
max-width: 100%;
|
max-width: 100%;
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -144,6 +145,22 @@
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
&-label {
|
||||||
|
text-align: left !important;
|
||||||
|
}
|
||||||
|
|
||||||
|
&-content {
|
||||||
|
> * {
|
||||||
|
box-sizing: border-box;
|
||||||
|
text-align: left !important;
|
||||||
|
margin: 0;
|
||||||
|
|
||||||
|
> * {
|
||||||
|
text-align: left !important;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
textarea {
|
textarea {
|
||||||
height: 7rem;
|
height: 7rem;
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -4,22 +4,12 @@
|
|||||||
{% block head %}
|
{% block head %}
|
||||||
<title>{% block title %}Association des Étudiants de l'UTBM{% endblock %}</title>
|
<title>{% block title %}Association des Étudiants de l'UTBM{% endblock %}</title>
|
||||||
<meta name="viewport" content="width=device-width, initial-scale=1.0">
|
<meta name="viewport" content="width=device-width, initial-scale=1.0">
|
||||||
<meta
|
<meta name="description" content="{% block description -%}
|
||||||
name="description"
|
{% trans trimmed %}
|
||||||
content="{% block description -%}
|
AE UTBM is a voluntary organisation run by UTBM students.
|
||||||
{% trans trimmed %}
|
It organises student life at UTBM and manages its student facilities.
|
||||||
AE UTBM is a voluntary organisation run by UTBM students.
|
{% endtrans %}
|
||||||
It organises student life at UTBM and manages its student facilities.
|
{%- endblock %}">
|
||||||
{% endtrans %}
|
|
||||||
{%- endblock %}"
|
|
||||||
>
|
|
||||||
<meta property="og:site_name" content="Association des Étudiants de l'UTBM" />
|
|
||||||
{% block metatags %}
|
|
||||||
<meta property="og:url" content="{{ request.build_absolute_uri() }}" />
|
|
||||||
<meta property="og:type" content="website" />
|
|
||||||
<meta property="og:title" content="Association des Étudiants de l'UTBM" />
|
|
||||||
<meta property="og:image" content="{{ request.build_absolute_uri(static("core/img/logo_no_text.png")) }}" />
|
|
||||||
{% endblock %}
|
|
||||||
<link rel="shortcut icon" href="{{ static('core/img/favicon.ico') }}">
|
<link rel="shortcut icon" href="{{ static('core/img/favicon.ico') }}">
|
||||||
<link rel="stylesheet" href="{{ static('core/base.css') }}">
|
<link rel="stylesheet" href="{{ static('core/base.css') }}">
|
||||||
<link rel="stylesheet" href="{{ static('core/style.scss') }}">
|
<link rel="stylesheet" href="{{ static('core/style.scss') }}">
|
||||||
|
|||||||
@@ -13,10 +13,10 @@
|
|||||||
}"
|
}"
|
||||||
@quick-notification-add="(e) => messages.push(e?.detail)"
|
@quick-notification-add="(e) => messages.push(e?.detail)"
|
||||||
@quick-notification-delete="messages = []">
|
@quick-notification-delete="messages = []">
|
||||||
<template x-for="(message, index) in messages">
|
<template x-for="message in messages">
|
||||||
<div class="alert" :class="`alert-${message.tag}`" x-transition>
|
<div x-data="{show: true}" class="alert" :class="`alert-${message.tag}`" x-show="show" x-transition>
|
||||||
<span class="alert-main" x-text="message.text"></span>
|
<span class="alert-main" x-text="message.text"></span>
|
||||||
<span class="clickable" @click="messages = messages.filter((item, i) => i !== index)">
|
<span class="clickable" @click="show = false">
|
||||||
<i class="fa fa-close"></i>
|
<i class="fa fa-close"></i>
|
||||||
</span>
|
</span>
|
||||||
</div>
|
</div>
|
||||||
|
|||||||
@@ -21,6 +21,20 @@
|
|||||||
{% else %}
|
{% else %}
|
||||||
<h2>{% trans %}Save{% endtrans %}</h2>
|
<h2>{% trans %}Save{% endtrans %}</h2>
|
||||||
{% endif %}
|
{% endif %}
|
||||||
|
{% if messages %}
|
||||||
|
<div x-data="{show_alert: true}" class="alert alert-green" x-show="show_alert" x-transition>
|
||||||
|
<span class="alert-main">
|
||||||
|
{% for message in messages %}
|
||||||
|
{% if message.level_tag == "success" %}
|
||||||
|
{{ message }}
|
||||||
|
{% endif %}
|
||||||
|
{% endfor %}
|
||||||
|
</span>
|
||||||
|
<span class="clickable" @click="show_alert = false">
|
||||||
|
<i class="fa fa-close"></i>
|
||||||
|
</span>
|
||||||
|
</div>
|
||||||
|
{% endif %}
|
||||||
<form action="" method="post" enctype="multipart/form-data">
|
<form action="" method="post" enctype="multipart/form-data">
|
||||||
{% csrf_token %}
|
{% csrf_token %}
|
||||||
{{ form.as_p() }}
|
{{ form.as_p() }}
|
||||||
|
|||||||
@@ -13,11 +13,30 @@
|
|||||||
{%- endmacro %}
|
{%- endmacro %}
|
||||||
|
|
||||||
{% macro link_news_logo(news) -%}
|
{% macro link_news_logo(news) -%}
|
||||||
{%- if news.club.logo -%}
|
{% if news.club.logo -%}
|
||||||
{{ news.club.logo.url }}
|
{{ news.club.logo.url }}
|
||||||
{%- else -%}
|
{% else -%}
|
||||||
{{ static("com/img/news.png") }}
|
{{ static("com/img/news.png") }}
|
||||||
{%- endif -%}
|
{% endif %}
|
||||||
|
{%- endmacro %}
|
||||||
|
|
||||||
|
{% macro gen_news_metatags(news) -%}
|
||||||
|
<meta name="twitter:card" content="summary" />
|
||||||
|
<meta name="twitter:site" content="{{ settings.SITH_TWITTER }}" />
|
||||||
|
<meta name="twitter:creator" content= "{{ settings.SITH_TWITTER }}" />
|
||||||
|
<meta property="og:url" content="{{ news.get_full_url() }}" />
|
||||||
|
<meta property="og:type" content="article" />
|
||||||
|
<meta property="og:title" content="{{ news.title }}" />
|
||||||
|
<meta property="og:description" content="{{ news.summary }}" />
|
||||||
|
<meta property="og:image" content="{{ "https://%s%s" % (settings.SITH_URL, link_news_logo(news)) }}" />
|
||||||
|
{%- endmacro %}
|
||||||
|
|
||||||
|
{% macro facebook_share(news) -%}
|
||||||
|
<a rel="nofollow" target="#" class="share_button facebook" href="https://www.facebook.com/sharer/sharer.php?u={{ news.get_full_url() }}">{% trans %}Share on Facebook{% endtrans %}</a>
|
||||||
|
{%- endmacro %}
|
||||||
|
|
||||||
|
{% macro tweet(news) -%}
|
||||||
|
<a rel="nofollow" target="#" class="share_button twitter" href="https://twitter.com/intent/tweet?text={{ news.get_full_url() }}">{% trans %}Tweet{% endtrans %}</a>
|
||||||
{%- endmacro %}
|
{%- endmacro %}
|
||||||
|
|
||||||
{% macro user_mini_profile(user) %}
|
{% macro user_mini_profile(user) %}
|
||||||
@@ -134,7 +153,7 @@
|
|||||||
current_page (django.core.paginator.Page): the current page object
|
current_page (django.core.paginator.Page): the current page object
|
||||||
paginator (django.core.paginator.Paginator): the paginator object
|
paginator (django.core.paginator.Paginator): the paginator object
|
||||||
#}
|
#}
|
||||||
{{ paginate_server_side(current_page, paginator, False) }}
|
{{ paginate_server_side(current_page, paginator, False) }}
|
||||||
{% endmacro %}
|
{% endmacro %}
|
||||||
|
|
||||||
{% macro paginate_htmx(current_page, paginator) %}
|
{% macro paginate_htmx(current_page, paginator) %}
|
||||||
@@ -149,7 +168,7 @@
|
|||||||
current_page (django.core.paginator.Page): the current page object
|
current_page (django.core.paginator.Page): the current page object
|
||||||
paginator (django.core.paginator.Paginator): the paginator object
|
paginator (django.core.paginator.Paginator): the paginator object
|
||||||
#}
|
#}
|
||||||
{{ paginate_server_side(current_page, paginator, True) }}
|
{{ paginate_server_side(current_page, paginator, True) }}
|
||||||
{% endmacro %}
|
{% endmacro %}
|
||||||
|
|
||||||
{% macro paginate_server_side(current_page, paginator, use_htmx) %}
|
{% macro paginate_server_side(current_page, paginator, use_htmx) %}
|
||||||
@@ -226,26 +245,3 @@
|
|||||||
<button type="button" onclick="checkbox_{{form_id}}(true);">{% trans %}Select All{% endtrans %}</button>
|
<button type="button" onclick="checkbox_{{form_id}}(true);">{% trans %}Select All{% endtrans %}</button>
|
||||||
<button type="button" onclick="checkbox_{{form_id}}(false);">{% trans %}Unselect All{% endtrans %}</button>
|
<button type="button" onclick="checkbox_{{form_id}}(false);">{% trans %}Unselect All{% endtrans %}</button>
|
||||||
{% endmacro %}
|
{% endmacro %}
|
||||||
|
|
||||||
{% macro update_notifications(messages, clear) %}
|
|
||||||
{# Update notification area from new messages sent by django backend
|
|
||||||
This is useful when performing fragment swaps to keep messages up to date
|
|
||||||
Without this, the fragment would need to take control of the notification area and
|
|
||||||
this would be an issue when having more than one fragment
|
|
||||||
|
|
||||||
Parameters:
|
|
||||||
messages: messages from django.contrib
|
|
||||||
clear : optional boolean that controls if notifications should be cleared first. True is the default
|
|
||||||
#}
|
|
||||||
{% set clear = clear|default(true) %}
|
|
||||||
{% if messages %}
|
|
||||||
<div x-init="() => {
|
|
||||||
{% if clear %}
|
|
||||||
$notifications.clear()
|
|
||||||
{% endif %}
|
|
||||||
{% for message in messages %}
|
|
||||||
$notifications.{{ message.tags }}('{{ message }}')
|
|
||||||
{% endfor %}
|
|
||||||
}"></div>
|
|
||||||
{% endif %}
|
|
||||||
{% endmacro %}
|
|
||||||
|
|||||||
@@ -17,3 +17,12 @@
|
|||||||
{%- endfor -%}
|
{%- endfor -%}
|
||||||
</ul>
|
</ul>
|
||||||
{% endmacro %}
|
{% endmacro %}
|
||||||
|
|
||||||
|
{% macro page_edit_form(page, form, url, token) %}
|
||||||
|
<h2>{% trans %}Edit page{% endtrans %}</h2>
|
||||||
|
<form action="{{ url }}" method="post">
|
||||||
|
<input type="hidden" name="csrfmiddlewaretoken" value="{{ token }}">
|
||||||
|
{{ form.as_p() }}
|
||||||
|
<p><input type="submit" value="{% trans %}Save{% endtrans %}" /></p>
|
||||||
|
</form>
|
||||||
|
{% endmacro %}
|
||||||
52
core/templates/core/page.jinja
Normal file
52
core/templates/core/page.jinja
Normal file
@@ -0,0 +1,52 @@
|
|||||||
|
{% extends "core/base.jinja" %}
|
||||||
|
|
||||||
|
{% block title %}
|
||||||
|
{% if page %}
|
||||||
|
{{ page.get_display_name() }}
|
||||||
|
{% elif page_list %}
|
||||||
|
{% trans %}Page list{% endtrans %}
|
||||||
|
{% elif new_page %}
|
||||||
|
{% trans %}Create page{% endtrans %}
|
||||||
|
{% else %}
|
||||||
|
{% trans %}Not found{% endtrans %}
|
||||||
|
{% endif %}
|
||||||
|
{% endblock %}
|
||||||
|
|
||||||
|
{%- macro print_page_name(page) -%}
|
||||||
|
{%- if page -%}
|
||||||
|
{{ print_page_name(page.parent) }} >
|
||||||
|
<a href="{{ url('core:page', page_name=page.get_full_name()) }}">{{ page.get_display_name() }}</a>
|
||||||
|
{%- endif -%}
|
||||||
|
{%- endmacro -%}
|
||||||
|
|
||||||
|
{% block content %}
|
||||||
|
{{ print_page_name(page) }}
|
||||||
|
<div class="tool_bar">
|
||||||
|
<div class="tools">
|
||||||
|
{% if page %}
|
||||||
|
{% if page.club %}
|
||||||
|
<a href="{{ url('club:club_view', club_id=page.club.id) }}">{% trans %}Return to club management{% endtrans %}</a>
|
||||||
|
{% else %}
|
||||||
|
<a href="{{ url('core:page', page.get_full_name()) }}">{% trans %}View{% endtrans %}</a>
|
||||||
|
{% endif %}
|
||||||
|
<a href="{{ url('core:page_hist', page_name=page.get_full_name()) }}">{% trans %}History{% endtrans %}</a>
|
||||||
|
{% if can_edit(page, user) %}
|
||||||
|
<a href="{{ url('core:page_edit', page_name=page.get_full_name()) }}">{% trans %}Edit{% endtrans %}</a>
|
||||||
|
{% endif %}
|
||||||
|
{% if can_edit_prop(page, user) and not page.is_club_page %}
|
||||||
|
<a href="{{ url('core:page_prop', page_name=page.get_full_name()) }}">{% trans %}Prop{% endtrans %}</a>
|
||||||
|
{% endif %}
|
||||||
|
{% endif %}
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
<hr>
|
||||||
|
|
||||||
|
{% if page %}
|
||||||
|
{% block page %}
|
||||||
|
{% endblock %}
|
||||||
|
{% else %}
|
||||||
|
<h2>{% trans %}Page does not exist{% endtrans %}</h2>
|
||||||
|
<p><a href="{{ url('core:page_new') }}?page={{ request.resolver_match.kwargs['page_name'] }}">
|
||||||
|
{% trans %}Create it?{% endtrans %}</a></p>
|
||||||
|
{% endif %}
|
||||||
|
{% endblock %}
|
||||||
@@ -1,44 +0,0 @@
|
|||||||
{% extends "core/base.jinja" %}
|
|
||||||
|
|
||||||
{% block title %}
|
|
||||||
{{ page.get_display_name() }}
|
|
||||||
{% endblock %}
|
|
||||||
|
|
||||||
{% block metatags %}
|
|
||||||
<meta property="og:url" content="{{ request.build_absolute_uri(page.get_absolute_url()) }}" />
|
|
||||||
<meta property="og:type" content="article" />
|
|
||||||
<meta property="article:section" content="{% trans %}Page{% endtrans %}" />
|
|
||||||
<meta property="og:title" content="{{ page.get_display_name() }}" />
|
|
||||||
<meta property="og:image" content="{{ request.build_absolute_uri(static("core/img/logo_no_text.png")) }}" />
|
|
||||||
{% endblock %}
|
|
||||||
|
|
||||||
{%- macro print_page_name(page) -%}
|
|
||||||
{%- if page -%}
|
|
||||||
{{ print_page_name(page.parent) }} >
|
|
||||||
<a href="{{ url('core:page', page_name=page.get_full_name()) }}">{{ page.get_display_name() }}</a>
|
|
||||||
{%- endif -%}
|
|
||||||
{%- endmacro -%}
|
|
||||||
|
|
||||||
{% block content %}
|
|
||||||
{{ print_page_name(page) }}
|
|
||||||
<div class="tool_bar">
|
|
||||||
<div class="tools">
|
|
||||||
{% if page.club %}
|
|
||||||
<a href="{{ url('club:club_view', club_id=page.club.id) }}">{% trans %}Return to club management{% endtrans %}</a>
|
|
||||||
{% else %}
|
|
||||||
<a href="{{ url('core:page', page.get_full_name()) }}">{% trans %}View{% endtrans %}</a>
|
|
||||||
{% endif %}
|
|
||||||
<a href="{{ url('core:page_hist', page_name=page.get_full_name()) }}">{% trans %}History{% endtrans %}</a>
|
|
||||||
{% if can_edit(page, user) %}
|
|
||||||
<a href="{{ url('core:page_edit', page_name=page.get_full_name()) }}">{% trans %}Edit{% endtrans %}</a>
|
|
||||||
{% endif %}
|
|
||||||
{% if can_edit_prop(page, user) and not page.is_club_page %}
|
|
||||||
<a href="{{ url('core:page_prop', page_name=page.get_full_name()) }}">{% trans %}Prop{% endtrans %}</a>
|
|
||||||
{% endif %}
|
|
||||||
</div>
|
|
||||||
</div>
|
|
||||||
<hr>
|
|
||||||
|
|
||||||
{% block page %}
|
|
||||||
{% endblock %}
|
|
||||||
{% endblock %}
|
|
||||||
@@ -1,17 +0,0 @@
|
|||||||
{% extends "core/page/base.jinja" %}
|
|
||||||
|
|
||||||
{% block page %}
|
|
||||||
{% if revision and revision.id != last_revision.id %}
|
|
||||||
<h4>
|
|
||||||
{% trans trimmed rev_id=revision.revision %}
|
|
||||||
This may not be the last update, you are seeing revision {{ rev_id }}!
|
|
||||||
{% endtrans %}
|
|
||||||
</h4>
|
|
||||||
{% endif %}
|
|
||||||
{% set current_revision = revision or last_revision %}
|
|
||||||
<h3>{{ current_revision.title }}</h3>
|
|
||||||
<div class="page_content">{{ current_revision.content|markdown }}</div>
|
|
||||||
{% endblock %}
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
@@ -1,13 +0,0 @@
|
|||||||
{% extends "core/page/base.jinja" %}
|
|
||||||
|
|
||||||
{% block page %}
|
|
||||||
<h2>{% trans %}Edit page{% endtrans %}</h2>
|
|
||||||
<form action="{{ url('core:page_edit', page_name=page.get_full_name()) }}" method="post">
|
|
||||||
{% csrf_token %}
|
|
||||||
{{ form.as_p() }}
|
|
||||||
<p><input type="submit" value="{% trans %}Save{% endtrans %}" /></p>
|
|
||||||
</form>
|
|
||||||
{% endblock %}
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
@@ -1,12 +0,0 @@
|
|||||||
{% extends "core/base.jinja" %}
|
|
||||||
|
|
||||||
{% block content %}
|
|
||||||
<h2>{% trans %}Page does not exist{% endtrans %}</h2>
|
|
||||||
<p>
|
|
||||||
{# This template is rendered when a PageNotFound error is raised,
|
|
||||||
so the `exception` context variable should always have a page_name attribute #}
|
|
||||||
<a href="{{ url('core:page_new') }}?page={{ exception.page_name }}">
|
|
||||||
{% trans %}Create it?{% endtrans %}
|
|
||||||
</a>
|
|
||||||
</p>
|
|
||||||
{% endblock %}
|
|
||||||
17
core/templates/core/page_detail.jinja
Normal file
17
core/templates/core/page_detail.jinja
Normal file
@@ -0,0 +1,17 @@
|
|||||||
|
{% extends "core/page.jinja" %}
|
||||||
|
|
||||||
|
{% block page %}
|
||||||
|
{% if rev %}
|
||||||
|
<h4>{% trans rev_id=rev.revision %}This may not be the last update, you are seeing revision {{ rev_id }}!{% endtrans %}</h4>
|
||||||
|
<h3>{{ rev.title }}</h3>
|
||||||
|
<div class="page_content">{{ rev.content|markdown }}</div>
|
||||||
|
{% else %}
|
||||||
|
{% if page.revisions.last() %}
|
||||||
|
<h3>{{ page.revisions.last().title }}</h3>
|
||||||
|
<div class="page_content">{{ page.revisions.last().content|markdown }}</div>
|
||||||
|
{% endif %}
|
||||||
|
{% endif %}
|
||||||
|
{% endblock %}
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
@@ -1,6 +1,6 @@
|
|||||||
{% extends "core/page/base.jinja" %}
|
{% extends "core/page.jinja" %}
|
||||||
|
|
||||||
{% from "core/page/macros.jinja" import page_history %}
|
{% from "core/macros_pages.jinja" import page_history %}
|
||||||
|
|
||||||
{% block page %}
|
{% block page %}
|
||||||
<h3>{% trans %}Page history{% endtrans %}</h3>
|
<h3>{% trans %}Page history{% endtrans %}</h3>
|
||||||
@@ -1,13 +1,18 @@
|
|||||||
{% extends "core/page/base.jinja" %}
|
{% extends "core/page.jinja" %}
|
||||||
|
|
||||||
{% block page %}
|
{% block content %}
|
||||||
|
{% if page %}
|
||||||
|
{{ super() }}
|
||||||
|
{% endif %}
|
||||||
<h2>{% trans %}Page properties{% endtrans %}</h2>
|
<h2>{% trans %}Page properties{% endtrans %}</h2>
|
||||||
<form action="" method="post">
|
<form action="" method="post">
|
||||||
{% csrf_token %}
|
{% csrf_token %}
|
||||||
{{ form.as_p() }}
|
{{ form.as_p() }}
|
||||||
<p><input type="submit" value="{% trans %}Save{% endtrans %}" /></p>
|
<p><input type="submit" value="{% trans %}Save{% endtrans %}" /></p>
|
||||||
</form>
|
</form>
|
||||||
<a href="{{ url('core:page_delete', page_id=page.id)}}">{% trans %}Delete{% endtrans %}</a>
|
{% if page %}
|
||||||
|
<a href="{{ url('core:page_delete', page_id=page.id)}}">{% trans %}Delete{% endtrans %}</a>
|
||||||
|
{% endif %}
|
||||||
{% endblock %}
|
{% endblock %}
|
||||||
|
|
||||||
|
|
||||||
9
core/templates/core/pagerev_edit.jinja
Normal file
9
core/templates/core/pagerev_edit.jinja
Normal file
@@ -0,0 +1,9 @@
|
|||||||
|
{% extends "core/page.jinja" %}
|
||||||
|
{% from 'core/macros_pages.jinja' import page_edit_form %}
|
||||||
|
|
||||||
|
{% block page %}
|
||||||
|
{{ page_edit_form(page, form, url('core:page_edit', page_name=page.get_full_name()), csrf_token) }}
|
||||||
|
{% endblock %}
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
@@ -116,12 +116,12 @@
|
|||||||
{# All fields #}
|
{# All fields #}
|
||||||
<div class="profile-fields">
|
<div class="profile-fields">
|
||||||
{%- for field in form -%}
|
{%- for field in form -%}
|
||||||
{%- if field.name in ["quote","profile_pict","avatar_pict","scrub_pict","is_viewable","forum_signature"] -%}
|
{%- if field.name in ["quote","profile_pict","avatar_pict","scrub_pict","is_subscriber_viewable","forum_signature"] -%}
|
||||||
{%- continue -%}
|
{%- continue -%}
|
||||||
{%- endif -%}
|
{%- endif -%}
|
||||||
|
|
||||||
<div class="profile-field">
|
<div class="profile-field">
|
||||||
{{ field.label_tag() }}
|
<div class="profile-field-label">{{ field.label }}</div>
|
||||||
<div class="profile-field-content">
|
<div class="profile-field-content">
|
||||||
{{ field }}
|
{{ field }}
|
||||||
{%- if field.errors -%}
|
{%- if field.errors -%}
|
||||||
@@ -136,7 +136,7 @@
|
|||||||
<div class="profile-fields">
|
<div class="profile-fields">
|
||||||
{%- for field in [form.quote, form.forum_signature] -%}
|
{%- for field in [form.quote, form.forum_signature] -%}
|
||||||
<div class="profile-field">
|
<div class="profile-field">
|
||||||
{{ field.label_tag() }}
|
<div class="profile-field-label">{{ field.label }}</div>
|
||||||
<div class="profile-field-content">
|
<div class="profile-field-content">
|
||||||
{{ field }}
|
{{ field }}
|
||||||
{%- if field.errors -%}
|
{%- if field.errors -%}
|
||||||
@@ -149,13 +149,8 @@
|
|||||||
|
|
||||||
{# Checkboxes #}
|
{# Checkboxes #}
|
||||||
<div class="profile-visible">
|
<div class="profile-visible">
|
||||||
<div class="row">
|
{{ form.is_subscriber_viewable }}
|
||||||
{{ form.is_viewable }}
|
{{ form.is_subscriber_viewable.label }}
|
||||||
{{ form.is_viewable.label_tag() }}
|
|
||||||
</div>
|
|
||||||
<span class="helptext">
|
|
||||||
{{ form.is_viewable.help_text }}
|
|
||||||
</span>
|
|
||||||
</div>
|
</div>
|
||||||
<div class="final-actions">
|
<div class="final-actions">
|
||||||
|
|
||||||
|
|||||||
@@ -23,7 +23,6 @@ from django.contrib.auth.hashers import make_password
|
|||||||
from django.contrib.auth.models import Permission
|
from django.contrib.auth.models import Permission
|
||||||
from django.core import mail
|
from django.core import mail
|
||||||
from django.core.cache import cache
|
from django.core.cache import cache
|
||||||
from django.core.exceptions import ValidationError
|
|
||||||
from django.core.mail import EmailMessage
|
from django.core.mail import EmailMessage
|
||||||
from django.test import Client, RequestFactory, TestCase
|
from django.test import Client, RequestFactory, TestCase
|
||||||
from django.urls import reverse
|
from django.urls import reverse
|
||||||
@@ -36,8 +35,8 @@ from pytest_django.asserts import assertInHTML, assertRedirects
|
|||||||
from antispam.models import ToxicDomain
|
from antispam.models import ToxicDomain
|
||||||
from club.models import Club, Membership
|
from club.models import Club, Membership
|
||||||
from core.markdown import markdown
|
from core.markdown import markdown
|
||||||
from core.models import AnonymousUser, Group, Page, User, validate_promo
|
from core.models import AnonymousUser, Group, Page, User
|
||||||
from core.utils import get_last_promo, get_semester_code, get_start_of_semester
|
from core.utils import get_semester_code, get_start_of_semester
|
||||||
from core.views import AllowFragment
|
from core.views import AllowFragment
|
||||||
from counter.models import Customer
|
from counter.models import Customer
|
||||||
from sith import settings
|
from sith import settings
|
||||||
@@ -319,8 +318,9 @@ class TestPageHandling(TestCase):
|
|||||||
def test_access_page_not_found(self):
|
def test_access_page_not_found(self):
|
||||||
"""Should not display a page correctly."""
|
"""Should not display a page correctly."""
|
||||||
response = self.client.get(reverse("core:page", kwargs={"page_name": "swagg"}))
|
response = self.client.get(reverse("core:page", kwargs={"page_name": "swagg"}))
|
||||||
assert response.status_code == 404
|
assert response.status_code == 200
|
||||||
assert '<a href="/page/create/?page=swagg">' in response.text
|
html = response.text
|
||||||
|
self.assertIn('<a href="/page/create/?page=swagg">', html)
|
||||||
|
|
||||||
def test_create_page_markdown_safe(self):
|
def test_create_page_markdown_safe(self):
|
||||||
"""Should format the markdown and escape html correctly."""
|
"""Should format the markdown and escape html correctly."""
|
||||||
@@ -421,16 +421,18 @@ class TestUserIsInGroup(TestCase):
|
|||||||
|
|
||||||
# clear the cached property `User.cached_groups`
|
# clear the cached property `User.cached_groups`
|
||||||
self.public_user.__dict__.pop("cached_groups", None)
|
self.public_user.__dict__.pop("cached_groups", None)
|
||||||
|
cache.clear()
|
||||||
# Test when the user is in the group
|
# Test when the user is in the group
|
||||||
with self.assertNumQueries(1):
|
with self.assertNumQueries(2):
|
||||||
self.public_user.is_in_group(pk=group_in.id)
|
self.public_user.is_in_group(pk=group_in.id)
|
||||||
with self.assertNumQueries(0):
|
with self.assertNumQueries(0):
|
||||||
self.public_user.is_in_group(pk=group_in.id)
|
self.public_user.is_in_group(pk=group_in.id)
|
||||||
|
|
||||||
group_not_in = baker.make(Group)
|
group_not_in = baker.make(Group)
|
||||||
self.public_user.__dict__.pop("cached_groups", None)
|
self.public_user.__dict__.pop("cached_groups", None)
|
||||||
|
cache.clear()
|
||||||
# Test when the user is not in the group
|
# Test when the user is not in the group
|
||||||
with self.assertNumQueries(1):
|
with self.assertNumQueries(2):
|
||||||
self.public_user.is_in_group(pk=group_not_in.id)
|
self.public_user.is_in_group(pk=group_not_in.id)
|
||||||
with self.assertNumQueries(0):
|
with self.assertNumQueries(0):
|
||||||
self.public_user.is_in_group(pk=group_not_in.id)
|
self.public_user.is_in_group(pk=group_not_in.id)
|
||||||
@@ -523,21 +525,6 @@ class TestDateUtils(TestCase):
|
|||||||
assert get_start_of_semester() == autumn_2023
|
assert get_start_of_semester() == autumn_2023
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.parametrize(
|
|
||||||
("current_date", "promo"),
|
|
||||||
[("2020-10-01", 22), ("2025-03-01", 26), ("2000-11-11", 2)],
|
|
||||||
)
|
|
||||||
def test_get_last_promo(current_date: str, promo: int):
|
|
||||||
with freezegun.freeze_time(current_date):
|
|
||||||
assert get_last_promo() == promo
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.parametrize("promo", [0, 24])
|
|
||||||
def test_promo_validator(promo: int):
|
|
||||||
with freezegun.freeze_time("2021-10-01"), pytest.raises(ValidationError):
|
|
||||||
validate_promo(promo)
|
|
||||||
|
|
||||||
|
|
||||||
def test_allow_fragment_mixin():
|
def test_allow_fragment_mixin():
|
||||||
class TestAllowFragmentView(AllowFragment, ContextMixin, View):
|
class TestAllowFragmentView(AllowFragment, ContextMixin, View):
|
||||||
def get(self, *args, **kwargs):
|
def get(self, *args, **kwargs):
|
||||||
|
|||||||
@@ -46,7 +46,7 @@ class TestFetchFamilyApi(TestCase):
|
|||||||
response = self.client.get(
|
response = self.client.get(
|
||||||
reverse("api:family_graph", args=[self.main_user.id])
|
reverse("api:family_graph", args=[self.main_user.id])
|
||||||
)
|
)
|
||||||
assert response.status_code == 401
|
assert response.status_code == 403
|
||||||
|
|
||||||
self.client.force_login(baker.make(User)) # unsubscribed user
|
self.client.force_login(baker.make(User)) # unsubscribed user
|
||||||
response = self.client.get(
|
response = self.client.get(
|
||||||
@@ -55,7 +55,7 @@ class TestFetchFamilyApi(TestCase):
|
|||||||
assert response.status_code == 403
|
assert response.status_code == 403
|
||||||
|
|
||||||
def test_fetch_family_hidden_user(self):
|
def test_fetch_family_hidden_user(self):
|
||||||
self.main_user.is_viewable = False
|
self.main_user.is_subscriber_viewable = False
|
||||||
self.main_user.save()
|
self.main_user.save()
|
||||||
for user_to_login, error_code in [
|
for user_to_login, error_code in [
|
||||||
(self.main_user, 200),
|
(self.main_user, 200),
|
||||||
|
|||||||
@@ -269,7 +269,7 @@ def test_apply_rights_recursively():
|
|||||||
SimpleUploadedFile(
|
SimpleUploadedFile(
|
||||||
"test.jpg", content=RED_PIXEL_PNG, content_type="image/jpg"
|
"test.jpg", content=RED_PIXEL_PNG, content_type="image/jpg"
|
||||||
),
|
),
|
||||||
401,
|
403,
|
||||||
),
|
),
|
||||||
(
|
(
|
||||||
lambda: baker.make(User),
|
lambda: baker.make(User),
|
||||||
|
|||||||
@@ -1,122 +1,32 @@
|
|||||||
from datetime import timedelta
|
|
||||||
|
|
||||||
import freezegun
|
|
||||||
import pytest
|
import pytest
|
||||||
from bs4 import BeautifulSoup
|
|
||||||
from django.conf import settings
|
from django.conf import settings
|
||||||
from django.contrib.auth.models import Permission
|
from django.contrib.auth.models import Permission
|
||||||
from django.test import Client
|
from django.test import Client
|
||||||
from django.urls import reverse
|
from django.urls import reverse
|
||||||
from django.utils.timezone import now
|
|
||||||
from model_bakery import baker
|
from model_bakery import baker
|
||||||
from pytest_django.asserts import assertHTMLEqual, assertRedirects
|
from pytest_django.asserts import assertRedirects
|
||||||
|
|
||||||
from club.models import Club
|
|
||||||
from core.baker_recipes import board_user, subscriber_user
|
from core.baker_recipes import board_user, subscriber_user
|
||||||
from core.markdown import markdown
|
from core.models import AnonymousUser, Page, User
|
||||||
from core.models import AnonymousUser, Page, PageRev, User
|
from sith.settings import SITH_GROUP_OLD_SUBSCRIBERS_ID, SITH_GROUP_SUBSCRIBERS_ID
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
@pytest.mark.django_db
|
||||||
class TestEditPage:
|
def test_edit_page(client: Client):
|
||||||
def test_edit_page(self, client: Client):
|
user = board_user.make()
|
||||||
user = board_user.make()
|
|
||||||
page = baker.prepare(Page)
|
|
||||||
page.save(force_lock=True)
|
|
||||||
page.view_groups.add(user.groups.first())
|
|
||||||
page.edit_groups.add(user.groups.first())
|
|
||||||
client.force_login(user)
|
|
||||||
|
|
||||||
url = reverse("core:page_edit", kwargs={"page_name": page._full_name})
|
|
||||||
res = client.get(url)
|
|
||||||
assert res.status_code == 200
|
|
||||||
|
|
||||||
res = client.post(url, data={"content": "Hello World"})
|
|
||||||
assertRedirects(
|
|
||||||
res, reverse("core:page", kwargs={"page_name": page._full_name})
|
|
||||||
)
|
|
||||||
revision = page.revisions.last()
|
|
||||||
assert revision.content == "Hello World"
|
|
||||||
|
|
||||||
def test_pagerev_reused(self, client):
|
|
||||||
"""Test that the previous revision is edited, if same author and small time diff"""
|
|
||||||
user = baker.make(User, is_superuser=True)
|
|
||||||
page = baker.prepare(Page)
|
|
||||||
page.save(force_lock=True)
|
|
||||||
first_rev = baker.make(
|
|
||||||
PageRev, author=user, page=page, date=now(), content="Hello World"
|
|
||||||
)
|
|
||||||
client.force_login(user)
|
|
||||||
url = reverse("core:page_edit", kwargs={"page_name": page._full_name})
|
|
||||||
client.post(url, data={"content": "Hello World!"})
|
|
||||||
assert page.revisions.count() == 1
|
|
||||||
assert page.revisions.last() == first_rev
|
|
||||||
first_rev.refresh_from_db()
|
|
||||||
assert first_rev.author == user
|
|
||||||
assert first_rev.content == "Hello World!"
|
|
||||||
|
|
||||||
def test_pagerev_not_reused(self, client):
|
|
||||||
"""Test that a new revision is created if too much time
|
|
||||||
passed since the last one.
|
|
||||||
"""
|
|
||||||
user = baker.make(User, is_superuser=True)
|
|
||||||
page = baker.prepare(Page)
|
|
||||||
page.save(force_lock=True)
|
|
||||||
first_rev = baker.make(PageRev, author=user, page=page, date=now())
|
|
||||||
client.force_login(user)
|
|
||||||
url = reverse("core:page_edit", kwargs={"page_name": page._full_name})
|
|
||||||
with freezegun.freeze_time(now() + timedelta(minutes=30)):
|
|
||||||
client.post(url, data={"content": "Hello World"})
|
|
||||||
assert page.revisions.count() == 2
|
|
||||||
assert page.revisions.last() != first_rev
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
def test_page_revision(client: Client):
|
|
||||||
"""Test the GET to request to a specific revision page."""
|
|
||||||
page = baker.prepare(Page)
|
page = baker.prepare(Page)
|
||||||
page.save(force_lock=True)
|
page.save(force_lock=True)
|
||||||
page.view_groups.add(settings.SITH_GROUP_SUBSCRIBERS_ID)
|
page.view_groups.add(user.groups.first())
|
||||||
revisions = baker.make(
|
client.force_login(user)
|
||||||
PageRev, page=page, _quantity=3, content=iter(["foo", "bar", "baz"])
|
|
||||||
)
|
url = reverse("core:page_edit", kwargs={"page_name": page._full_name})
|
||||||
client.force_login(subscriber_user.make())
|
|
||||||
url = reverse(
|
|
||||||
"core:page_rev",
|
|
||||||
kwargs={"page_name": page._full_name, "rev": revisions[1].id},
|
|
||||||
)
|
|
||||||
res = client.get(url)
|
res = client.get(url)
|
||||||
assert res.status_code == 200
|
assert res.status_code == 200
|
||||||
soup = BeautifulSoup(res.text, "lxml")
|
|
||||||
detail_html = soup.find(class_="markdown")
|
|
||||||
assertHTMLEqual(detail_html.decode_contents(), markdown(revisions[1].content))
|
|
||||||
|
|
||||||
|
res = client.post(url, data={"content": "Hello World"})
|
||||||
@pytest.mark.django_db
|
assertRedirects(res, reverse("core:page", kwargs={"page_name": page._full_name}))
|
||||||
def test_page_club_redirection(client: Client):
|
revision = page.revisions.last()
|
||||||
club = baker.make(Club)
|
assert revision.content == "Hello World"
|
||||||
url = reverse("core:page", kwargs={"page_name": club.page._full_name})
|
|
||||||
res = client.get(url)
|
|
||||||
redirection_url = reverse("club:club_view", kwargs={"club_id": club.id})
|
|
||||||
assertRedirects(res, redirection_url)
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
def test_page_revision_club_redirection(client: Client):
|
|
||||||
client.force_login(subscriber_user.make())
|
|
||||||
club = baker.make(Club)
|
|
||||||
revisions = baker.make(
|
|
||||||
PageRev, page=club.page, _quantity=3, content=iter(["foo", "bar", "baz"])
|
|
||||||
)
|
|
||||||
url = reverse(
|
|
||||||
"core:page_rev",
|
|
||||||
kwargs={"page_name": club.page._full_name, "rev": revisions[1].id},
|
|
||||||
)
|
|
||||||
res = client.get(url)
|
|
||||||
redirection_url = reverse(
|
|
||||||
"club:club_view_rev", kwargs={"club_id": club.id, "rev_id": revisions[1].id}
|
|
||||||
)
|
|
||||||
assertRedirects(res, redirection_url)
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
@pytest.mark.django_db
|
||||||
@@ -125,9 +35,9 @@ def test_viewable_by():
|
|||||||
Page.objects.all().delete()
|
Page.objects.all().delete()
|
||||||
view_groups = [
|
view_groups = [
|
||||||
[settings.SITH_GROUP_PUBLIC_ID],
|
[settings.SITH_GROUP_PUBLIC_ID],
|
||||||
[settings.SITH_GROUP_PUBLIC_ID, settings.SITH_GROUP_SUBSCRIBERS_ID],
|
[settings.SITH_GROUP_PUBLIC_ID, SITH_GROUP_SUBSCRIBERS_ID],
|
||||||
[settings.SITH_GROUP_SUBSCRIBERS_ID],
|
[SITH_GROUP_SUBSCRIBERS_ID],
|
||||||
[settings.SITH_GROUP_SUBSCRIBERS_ID, settings.SITH_GROUP_OLD_SUBSCRIBERS_ID],
|
[SITH_GROUP_SUBSCRIBERS_ID, SITH_GROUP_OLD_SUBSCRIBERS_ID],
|
||||||
[],
|
[],
|
||||||
]
|
]
|
||||||
pages = baker.make(Page, _quantity=len(view_groups), _bulk_create=True)
|
pages = baker.make(Page, _quantity=len(view_groups), _bulk_create=True)
|
||||||
@@ -146,11 +56,3 @@ def test_viewable_by():
|
|||||||
)
|
)
|
||||||
viewable = Page.objects.viewable_by(root_user).values_list("id", flat=True)
|
viewable = Page.objects.viewable_by(root_user).values_list("id", flat=True)
|
||||||
assert set(viewable) == {p.id for p in pages}
|
assert set(viewable) == {p.id for p in pages}
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
def test_page_list_view(client: Client):
|
|
||||||
baker.make(Page, _quantity=10, _bulk_create=True)
|
|
||||||
client.force_login(subscriber_user.make())
|
|
||||||
res = client.get(reverse("core:page_list"))
|
|
||||||
assert res.status_code == 200
|
|
||||||
|
|||||||
@@ -3,7 +3,6 @@ from datetime import timedelta
|
|||||||
import pytest
|
import pytest
|
||||||
from django.conf import settings
|
from django.conf import settings
|
||||||
from django.contrib import auth
|
from django.contrib import auth
|
||||||
from django.contrib.auth.models import Permission
|
|
||||||
from django.core.management import call_command
|
from django.core.management import call_command
|
||||||
from django.test import Client, RequestFactory, TestCase
|
from django.test import Client, RequestFactory, TestCase
|
||||||
from django.urls import reverse
|
from django.urls import reverse
|
||||||
@@ -19,7 +18,7 @@ from core.baker_recipes import (
|
|||||||
subscriber_user,
|
subscriber_user,
|
||||||
very_old_subscriber_user,
|
very_old_subscriber_user,
|
||||||
)
|
)
|
||||||
from core.models import AnonymousUser, Group, User
|
from core.models import Group, User
|
||||||
from core.views import UserTabsMixin
|
from core.views import UserTabsMixin
|
||||||
from counter.baker_recipes import sale_recipe
|
from counter.baker_recipes import sale_recipe
|
||||||
from counter.models import Counter, Customer, Refilling, Selling
|
from counter.models import Counter, Customer, Refilling, Selling
|
||||||
@@ -369,38 +368,3 @@ class TestRedirectMe:
|
|||||||
def test_promo_has_logo(promo):
|
def test_promo_has_logo(promo):
|
||||||
user = baker.make(User, promo=promo)
|
user = baker.make(User, promo=promo)
|
||||||
assert user.promo_has_logo()
|
assert user.promo_has_logo()
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
class TestUserQuerySetViewableBy:
|
|
||||||
@pytest.fixture
|
|
||||||
def users(self) -> list[User]:
|
|
||||||
return [
|
|
||||||
baker.make(User),
|
|
||||||
subscriber_user.make(),
|
|
||||||
subscriber_user.make(is_viewable=False),
|
|
||||||
]
|
|
||||||
|
|
||||||
def test_admin_user(self, users: list[User]):
|
|
||||||
user = baker.make(
|
|
||||||
User,
|
|
||||||
user_permissions=[Permission.objects.get(codename="view_hidden_user")],
|
|
||||||
)
|
|
||||||
viewable = User.objects.filter(id__in=[u.id for u in users]).viewable_by(user)
|
|
||||||
assert set(viewable) == set(users)
|
|
||||||
|
|
||||||
@pytest.mark.parametrize(
|
|
||||||
"user_factory", [old_subscriber_user.make, subscriber_user.make]
|
|
||||||
)
|
|
||||||
def test_subscriber(self, users: list[User], user_factory):
|
|
||||||
user = user_factory()
|
|
||||||
viewable = User.objects.filter(id__in=[u.id for u in users]).viewable_by(user)
|
|
||||||
assert set(viewable) == {users[0], users[1]}
|
|
||||||
|
|
||||||
@pytest.mark.parametrize(
|
|
||||||
"user_factory", [lambda: baker.make(User), lambda: AnonymousUser()]
|
|
||||||
)
|
|
||||||
def test_not_subscriber(self, users: list[User], user_factory):
|
|
||||||
user = user_factory()
|
|
||||||
viewable = User.objects.filter(id__in=[u.id for u in users]).viewable_by(user)
|
|
||||||
assert not viewable.exists()
|
|
||||||
|
|||||||
@@ -112,16 +112,6 @@ def get_semester_code(d: date | None = None) -> str:
|
|||||||
return "P" + str(start.year)[-2:]
|
return "P" + str(start.year)[-2:]
|
||||||
|
|
||||||
|
|
||||||
def get_last_promo() -> int:
|
|
||||||
"""Get the latest promo at the time the function is called.
|
|
||||||
|
|
||||||
For example, if called in october 2022 return 24,
|
|
||||||
if called in march 2026 return 27, etc.
|
|
||||||
"""
|
|
||||||
start_year = settings.SITH_SCHOOL_START_YEAR
|
|
||||||
return (localdate() + timedelta(days=180)).year - start_year
|
|
||||||
|
|
||||||
|
|
||||||
def is_image(file: UploadedFile):
|
def is_image(file: UploadedFile):
|
||||||
try:
|
try:
|
||||||
im = PIL.Image.open(file.file)
|
im = PIL.Image.open(file.file)
|
||||||
@@ -196,7 +186,7 @@ def exif_auto_rotate(image):
|
|||||||
|
|
||||||
def get_client_ip(request: HttpRequest) -> str | None:
|
def get_client_ip(request: HttpRequest) -> str | None:
|
||||||
headers = (
|
headers = (
|
||||||
"X_FORWARDED_FOR", # Common header for proxies
|
"X_FORWARDED_FOR", # Common header for proixes
|
||||||
"FORWARDED", # Standard header defined by RFC 7239.
|
"FORWARDED", # Standard header defined by RFC 7239.
|
||||||
"REMOTE_ADDR", # Default IP Address (direct connection)
|
"REMOTE_ADDR", # Default IP Address (direct connection)
|
||||||
)
|
)
|
||||||
|
|||||||
@@ -21,10 +21,10 @@
|
|||||||
# Place - Suite 330, Boston, MA 02111-1307, USA.
|
# Place - Suite 330, Boston, MA 02111-1307, USA.
|
||||||
#
|
#
|
||||||
#
|
#
|
||||||
|
|
||||||
from django.http import (
|
from django.http import (
|
||||||
Http404,
|
|
||||||
HttpRequest,
|
|
||||||
HttpResponseForbidden,
|
HttpResponseForbidden,
|
||||||
|
HttpResponseNotFound,
|
||||||
HttpResponseServerError,
|
HttpResponseServerError,
|
||||||
)
|
)
|
||||||
from django.shortcuts import render
|
from django.shortcuts import render
|
||||||
@@ -33,20 +33,17 @@ from django.views.generic.edit import FormView
|
|||||||
from sentry_sdk import last_event_id
|
from sentry_sdk import last_event_id
|
||||||
|
|
||||||
from core.views.forms import LoginForm
|
from core.views.forms import LoginForm
|
||||||
from core.views.page import PageNotFound
|
|
||||||
|
|
||||||
|
|
||||||
def forbidden(request: HttpRequest, exception):
|
def forbidden(request, exception):
|
||||||
context = {"next": request.path, "form": LoginForm()}
|
context = {"next": request.path, "form": LoginForm()}
|
||||||
return HttpResponseForbidden(render(request, "core/403.jinja", context=context))
|
return HttpResponseForbidden(render(request, "core/403.jinja", context=context))
|
||||||
|
|
||||||
|
|
||||||
def not_found(request: HttpRequest, exception: Http404):
|
def not_found(request, exception):
|
||||||
if isinstance(exception, PageNotFound):
|
return HttpResponseNotFound(
|
||||||
template_name = "core/page/not_found.jinja"
|
render(request, "core/404.jinja", context={"exception": exception})
|
||||||
else:
|
)
|
||||||
template_name = "core/404.jinja"
|
|
||||||
return render(request, template_name, context={"exception": exception}, status=404)
|
|
||||||
|
|
||||||
|
|
||||||
def internal_servor_error(request):
|
def internal_servor_error(request):
|
||||||
|
|||||||
@@ -20,9 +20,8 @@
|
|||||||
# Place - Suite 330, Boston, MA 02111-1307, USA.
|
# Place - Suite 330, Boston, MA 02111-1307, USA.
|
||||||
#
|
#
|
||||||
#
|
#
|
||||||
import difflib
|
|
||||||
import re
|
import re
|
||||||
from datetime import date, datetime, timedelta
|
from datetime import date, datetime
|
||||||
from io import BytesIO
|
from io import BytesIO
|
||||||
|
|
||||||
from captcha.fields import CaptchaField
|
from captcha.fields import CaptchaField
|
||||||
@@ -40,15 +39,15 @@ from django.forms import (
|
|||||||
DateInput,
|
DateInput,
|
||||||
DateTimeInput,
|
DateTimeInput,
|
||||||
TextInput,
|
TextInput,
|
||||||
Widget,
|
|
||||||
)
|
)
|
||||||
from django.utils.timezone import now
|
from django.utils.timezone import localtime, now
|
||||||
|
from django.utils.translation import gettext
|
||||||
from django.utils.translation import gettext_lazy as _
|
from django.utils.translation import gettext_lazy as _
|
||||||
from phonenumber_field.widgets import RegionalPhoneNumberWidget
|
from phonenumber_field.widgets import RegionalPhoneNumberWidget
|
||||||
from PIL import Image
|
from PIL import Image
|
||||||
|
|
||||||
from antispam.forms import AntiSpamEmailField
|
from antispam.forms import AntiSpamEmailField
|
||||||
from core.models import Gift, Group, Page, PageRev, SithFile, User
|
from core.models import Gift, Group, Page, SithFile, User
|
||||||
from core.utils import resize_image
|
from core.utils import resize_image
|
||||||
from core.views.widgets.ajax_select import (
|
from core.views.widgets.ajax_select import (
|
||||||
AutoCompleteSelect,
|
AutoCompleteSelect,
|
||||||
@@ -56,7 +55,6 @@ from core.views.widgets.ajax_select import (
|
|||||||
AutoCompleteSelectMultipleGroup,
|
AutoCompleteSelectMultipleGroup,
|
||||||
AutoCompleteSelectUser,
|
AutoCompleteSelectUser,
|
||||||
)
|
)
|
||||||
from core.views.widgets.markdown import MarkdownInput
|
|
||||||
|
|
||||||
# Widgets
|
# Widgets
|
||||||
|
|
||||||
@@ -87,6 +85,30 @@ class NFCTextInput(TextInput):
|
|||||||
return context
|
return context
|
||||||
|
|
||||||
|
|
||||||
|
class SelectUser(TextInput):
|
||||||
|
def render(self, name, value, attrs=None, renderer=None):
|
||||||
|
if attrs:
|
||||||
|
attrs["class"] = "select_user"
|
||||||
|
else:
|
||||||
|
attrs = {"class": "select_user"}
|
||||||
|
output = (
|
||||||
|
'%(content)s<div name="%(name)s" class="choose_user_widget" title="%(title)s"></div>'
|
||||||
|
% {
|
||||||
|
"content": super().render(name, value, attrs, renderer),
|
||||||
|
"title": _("Choose user"),
|
||||||
|
"name": name,
|
||||||
|
}
|
||||||
|
)
|
||||||
|
output += (
|
||||||
|
'<span name="'
|
||||||
|
+ name
|
||||||
|
+ '" class="choose_user_button">'
|
||||||
|
+ gettext("Choose user")
|
||||||
|
+ "</span>"
|
||||||
|
)
|
||||||
|
return output
|
||||||
|
|
||||||
|
|
||||||
# Fields
|
# Fields
|
||||||
|
|
||||||
|
|
||||||
@@ -100,8 +122,8 @@ class FutureDateTimeField(forms.DateTimeField):
|
|||||||
|
|
||||||
default_validators = [validate_future_timestamp]
|
default_validators = [validate_future_timestamp]
|
||||||
|
|
||||||
def widget_attrs(self, widget: Widget) -> dict[str, str]:
|
def widget_attrs(self, widget: forms.Widget) -> dict[str, str]:
|
||||||
return {"min": widget.format_value(now())}
|
return {"min": widget.format_value(localtime())}
|
||||||
|
|
||||||
|
|
||||||
# Forms
|
# Forms
|
||||||
@@ -179,7 +201,7 @@ class UserProfileForm(forms.ModelForm):
|
|||||||
"school",
|
"school",
|
||||||
"promo",
|
"promo",
|
||||||
"forum_signature",
|
"forum_signature",
|
||||||
"is_viewable",
|
"is_subscriber_viewable",
|
||||||
]
|
]
|
||||||
widgets = {
|
widgets = {
|
||||||
"date_of_birth": SelectDate,
|
"date_of_birth": SelectDate,
|
||||||
@@ -188,8 +210,8 @@ class UserProfileForm(forms.ModelForm):
|
|||||||
"quote": forms.Textarea,
|
"quote": forms.Textarea,
|
||||||
}
|
}
|
||||||
|
|
||||||
def __init__(self, *args, label_suffix: str = "", **kwargs):
|
def __init__(self, *args, **kwargs):
|
||||||
super().__init__(*args, label_suffix=label_suffix, **kwargs)
|
super().__init__(*args, **kwargs)
|
||||||
|
|
||||||
# Image fields are injected here to override the file field provided by the model
|
# Image fields are injected here to override the file field provided by the model
|
||||||
# This would be better if we could have a SithImage sort of model input instead of a generic SithFile
|
# This would be better if we could have a SithImage sort of model input instead of a generic SithFile
|
||||||
@@ -381,55 +403,6 @@ class PageForm(forms.ModelForm):
|
|||||||
)
|
)
|
||||||
|
|
||||||
|
|
||||||
class PageRevisionForm(forms.ModelForm):
|
|
||||||
"""Form to add a new revision to a page.
|
|
||||||
|
|
||||||
Notes:
|
|
||||||
Saving this form won't always result in a new revision.
|
|
||||||
If the previous revision on the same page was made :
|
|
||||||
|
|
||||||
- less than 20 minutes ago
|
|
||||||
- by the same author
|
|
||||||
- with a diff ratio higher than 20%
|
|
||||||
|
|
||||||
then the latter will be edited and the new revision won't be created.
|
|
||||||
"""
|
|
||||||
|
|
||||||
TIME_THRESHOLD = timedelta(minutes=20)
|
|
||||||
DIFF_THRESHOLD = 0.2
|
|
||||||
|
|
||||||
class Meta:
|
|
||||||
model = PageRev
|
|
||||||
fields = ["title", "content"]
|
|
||||||
widgets = {"content": MarkdownInput}
|
|
||||||
|
|
||||||
def __init__(
|
|
||||||
self, *args, author: User, page: Page, instance: PageRev | None = None, **kwargs
|
|
||||||
):
|
|
||||||
super().__init__(*args, instance=instance, **kwargs)
|
|
||||||
self.author = author
|
|
||||||
self.page = page
|
|
||||||
self.initial_content = instance.content if instance else ""
|
|
||||||
|
|
||||||
def diff_ratio(self, new_str: str) -> float:
|
|
||||||
return difflib.SequenceMatcher(
|
|
||||||
None, self.initial_content, new_str
|
|
||||||
).quick_ratio()
|
|
||||||
|
|
||||||
def save(self, commit=True): # noqa FBT002
|
|
||||||
revision: PageRev = self.instance
|
|
||||||
if (
|
|
||||||
revision._state.adding
|
|
||||||
or revision.author != self.author
|
|
||||||
or revision.date + self.TIME_THRESHOLD < now()
|
|
||||||
or self.diff_ratio(revision.content) < (1 - self.DIFF_THRESHOLD)
|
|
||||||
):
|
|
||||||
revision.author = self.author
|
|
||||||
revision.page = self.page
|
|
||||||
revision.id = None # if id is None, Django will create a new record
|
|
||||||
return super().save(commit=commit)
|
|
||||||
|
|
||||||
|
|
||||||
class GiftForm(forms.ModelForm):
|
class GiftForm(forms.ModelForm):
|
||||||
class Meta:
|
class Meta:
|
||||||
model = Gift
|
model = Gift
|
||||||
|
|||||||
@@ -78,7 +78,7 @@ class FragmentMixin(TemplateResponseMixin, ContextMixin):
|
|||||||
return render(
|
return render(
|
||||||
request,
|
request,
|
||||||
"app/template.jinja",
|
"app/template.jinja",
|
||||||
context={"fragment": fragment(request)
|
context={"fragment": fragment(request)}
|
||||||
}
|
}
|
||||||
|
|
||||||
# in urls.py
|
# in urls.py
|
||||||
|
|||||||
@@ -13,39 +13,39 @@
|
|||||||
#
|
#
|
||||||
#
|
#
|
||||||
|
|
||||||
from django.contrib.auth.mixins import PermissionRequiredMixin, UserPassesTestMixin
|
from django.contrib.auth.mixins import PermissionRequiredMixin
|
||||||
from django.db.models import F, OuterRef, Subquery
|
from django.db.models import F, OuterRef, Subquery
|
||||||
from django.db.models.functions import Coalesce
|
from django.db.models.functions import Coalesce
|
||||||
|
|
||||||
|
# This file contains all the views that concern the page model
|
||||||
|
from django.forms.models import modelform_factory
|
||||||
from django.http import Http404
|
from django.http import Http404
|
||||||
from django.shortcuts import get_object_or_404, redirect
|
from django.shortcuts import redirect
|
||||||
from django.urls import reverse_lazy
|
from django.urls import reverse_lazy
|
||||||
from django.utils.functional import cached_property
|
|
||||||
from django.views.generic import DetailView, ListView
|
from django.views.generic import DetailView, ListView
|
||||||
from django.views.generic.edit import CreateView, DeleteView, UpdateView
|
from django.views.generic.edit import CreateView, DeleteView, UpdateView
|
||||||
|
|
||||||
from core.auth.mixins import CanEditPropMixin, CanViewMixin
|
from core.auth.mixins import (
|
||||||
from core.models import Page, PageRev
|
CanEditMixin,
|
||||||
from core.views.forms import PageForm, PagePropForm, PageRevisionForm
|
CanEditPropMixin,
|
||||||
|
CanViewMixin,
|
||||||
|
)
|
||||||
|
from core.models import LockError, Page, PageRev
|
||||||
|
from core.views.forms import PageForm, PagePropForm
|
||||||
|
from core.views.widgets.markdown import MarkdownInput
|
||||||
|
|
||||||
|
|
||||||
class PageNotFound(Http404):
|
class CanEditPagePropMixin(CanEditPropMixin):
|
||||||
"""Http404 Exception, but specifically for when the not found object is a Page."""
|
def dispatch(self, request, *args, **kwargs):
|
||||||
|
res = super().dispatch(request, *args, **kwargs)
|
||||||
def __init__(self, page_name: str):
|
if self.object.is_club_page:
|
||||||
self.page_name = page_name
|
raise Http404
|
||||||
|
return res
|
||||||
|
|
||||||
def get_page_or_404(full_name: str) -> Page:
|
|
||||||
"""Like Django's get_object_or_404, but for Page, and with a custom 404 exception."""
|
|
||||||
page = Page.objects.filter(_full_name=full_name).first()
|
|
||||||
if not page:
|
|
||||||
raise PageNotFound(full_name)
|
|
||||||
return page
|
|
||||||
|
|
||||||
|
|
||||||
class PageListView(ListView):
|
class PageListView(ListView):
|
||||||
model = Page
|
model = Page
|
||||||
template_name = "core/page/list.jinja"
|
template_name = "core/page_list.jinja"
|
||||||
|
|
||||||
def get_queryset(self):
|
def get_queryset(self):
|
||||||
return (
|
return (
|
||||||
@@ -64,57 +64,80 @@ class PageListView(ListView):
|
|||||||
)
|
)
|
||||||
|
|
||||||
|
|
||||||
class BasePageDetailView(CanViewMixin, DetailView):
|
class PageView(CanViewMixin, DetailView):
|
||||||
model = Page
|
model = Page
|
||||||
|
template_name = "core/page_detail.jinja"
|
||||||
|
|
||||||
|
def dispatch(self, request, *args, **kwargs):
|
||||||
|
res = super().dispatch(request, *args, **kwargs)
|
||||||
|
if self.object and self.object.need_club_redirection:
|
||||||
|
return redirect("club:club_view", club_id=self.object.club.id)
|
||||||
|
return res
|
||||||
|
|
||||||
|
def get_object(self):
|
||||||
|
self.page = Page.get_page_by_full_name(self.kwargs["page_name"])
|
||||||
|
return self.page
|
||||||
|
|
||||||
|
def get_context_data(self, **kwargs):
|
||||||
|
context = super().get_context_data(**kwargs)
|
||||||
|
if "page" not in context:
|
||||||
|
context["new_page"] = self.kwargs["page_name"]
|
||||||
|
return context
|
||||||
|
|
||||||
|
|
||||||
|
class PageHistView(CanViewMixin, DetailView):
|
||||||
|
model = Page
|
||||||
|
template_name = "core/page_hist.jinja"
|
||||||
|
slug_field = "_full_name"
|
||||||
slug_url_kwarg = "page_name"
|
slug_url_kwarg = "page_name"
|
||||||
_cached_object: Page | None = None
|
_cached_object: Page | None = None
|
||||||
|
|
||||||
def dispatch(self, request, *args, **kwargs):
|
def dispatch(self, request, *args, **kwargs):
|
||||||
page = self.get_object()
|
page = self.get_object()
|
||||||
if page.need_club_redirection:
|
if page.need_club_redirection:
|
||||||
return redirect("club:club_view", club_id=page.club.id)
|
return redirect("club:club_hist", club_id=page.club.id)
|
||||||
return super().dispatch(request, *args, **kwargs)
|
return super().dispatch(request, *args, **kwargs)
|
||||||
|
|
||||||
def get_object(self, *args, **kwargs):
|
def get_object(self, *args, **kwargs):
|
||||||
if not self._cached_object:
|
if not self._cached_object:
|
||||||
full_name = self.kwargs.get(self.slug_url_kwarg)
|
self._cached_object = super().get_object()
|
||||||
self._cached_object = get_page_or_404(full_name)
|
|
||||||
return self._cached_object
|
return self._cached_object
|
||||||
|
|
||||||
def get_context_data(self, **kwargs):
|
|
||||||
return super().get_context_data(**kwargs) | {
|
|
||||||
"last_revision": self.object.revisions.last()
|
|
||||||
}
|
|
||||||
|
|
||||||
|
class PageRevView(CanViewMixin, DetailView):
|
||||||
class PageView(BasePageDetailView):
|
model = Page
|
||||||
template_name = "core/page/detail.jinja"
|
template_name = "core/page_detail.jinja"
|
||||||
|
|
||||||
|
|
||||||
class PageHistView(BasePageDetailView):
|
|
||||||
template_name = "core/page/history.jinja"
|
|
||||||
|
|
||||||
|
|
||||||
class PageRevView(BasePageDetailView):
|
|
||||||
template_name = "core/page/detail.jinja"
|
|
||||||
|
|
||||||
def dispatch(self, request, *args, **kwargs):
|
def dispatch(self, request, *args, **kwargs):
|
||||||
page = self.get_object()
|
res = super().dispatch(request, *args, **kwargs)
|
||||||
if page.need_club_redirection:
|
self.object = self.get_object()
|
||||||
|
|
||||||
|
if self.object is None:
|
||||||
|
return redirect("core:page_create", page_name=self.kwargs["page_name"])
|
||||||
|
|
||||||
|
if self.object.need_club_redirection:
|
||||||
return redirect(
|
return redirect(
|
||||||
"club:club_view_rev", club_id=page.club.id, rev_id=kwargs["rev"]
|
"club:club_view_rev", club_id=self.object.club.id, rev_id=kwargs["rev"]
|
||||||
)
|
)
|
||||||
self.revision = get_object_or_404(page.revisions, id=self.kwargs["rev"])
|
return res
|
||||||
return super().dispatch(request, *args, **kwargs)
|
|
||||||
|
def get_object(self, *args, **kwargs):
|
||||||
|
self.page = Page.get_page_by_full_name(self.kwargs["page_name"])
|
||||||
|
return self.page
|
||||||
|
|
||||||
def get_context_data(self, **kwargs):
|
def get_context_data(self, **kwargs):
|
||||||
return super().get_context_data(**kwargs) | {"revision": self.revision}
|
context = super().get_context_data(**kwargs)
|
||||||
|
if not self.page:
|
||||||
|
return context | {"new_page": self.kwargs["page_name"]}
|
||||||
|
context["page"] = self.page
|
||||||
|
context["rev"] = self.page.revisions.filter(id=self.kwargs["rev"]).first()
|
||||||
|
return context
|
||||||
|
|
||||||
|
|
||||||
class PageCreateView(PermissionRequiredMixin, CreateView):
|
class PageCreateView(PermissionRequiredMixin, CreateView):
|
||||||
model = Page
|
model = Page
|
||||||
form_class = PageForm
|
form_class = PageForm
|
||||||
template_name = "core/create.jinja"
|
template_name = "core/page_prop.jinja"
|
||||||
permission_required = "core.add_page"
|
permission_required = "core.add_page"
|
||||||
|
|
||||||
def get_initial(self):
|
def get_initial(self):
|
||||||
@@ -129,67 +152,88 @@ class PageCreateView(PermissionRequiredMixin, CreateView):
|
|||||||
init["name"] = page_name[-1]
|
init["name"] = page_name[-1]
|
||||||
return init
|
return init
|
||||||
|
|
||||||
|
def get_context_data(self, **kwargs):
|
||||||
|
context = super().get_context_data(**kwargs)
|
||||||
|
context["new_page"] = True
|
||||||
|
return context
|
||||||
|
|
||||||
def form_valid(self, form):
|
def form_valid(self, form):
|
||||||
form.instance.set_lock(self.request.user)
|
form.instance.set_lock(self.request.user)
|
||||||
ret = super().form_valid(form)
|
ret = super().form_valid(form)
|
||||||
return ret
|
return ret
|
||||||
|
|
||||||
|
|
||||||
class CanEditPagePropMixin(CanEditPropMixin):
|
|
||||||
def dispatch(self, request, *args, **kwargs):
|
|
||||||
res = super().dispatch(request, *args, **kwargs)
|
|
||||||
if self.object.is_club_page:
|
|
||||||
raise Http404
|
|
||||||
return res
|
|
||||||
|
|
||||||
|
|
||||||
class PagePropView(CanEditPagePropMixin, UpdateView):
|
class PagePropView(CanEditPagePropMixin, UpdateView):
|
||||||
model = Page
|
model = Page
|
||||||
form_class = PagePropForm
|
form_class = PagePropForm
|
||||||
template_name = "core/page/prop.jinja"
|
template_name = "core/page_prop.jinja"
|
||||||
|
slug_field = "_full_name"
|
||||||
|
slug_url_kwarg = "page_name"
|
||||||
|
|
||||||
def get_object(self, queryset=None):
|
def get_object(self, queryset=None):
|
||||||
self.page = get_page_or_404(full_name=self.kwargs["page_name"])
|
self.page = super().get_object()
|
||||||
self.page.set_lock_recursive(self.request.user)
|
try:
|
||||||
|
self.page.set_lock_recursive(self.request.user)
|
||||||
|
except LockError as e:
|
||||||
|
raise e
|
||||||
return self.page
|
return self.page
|
||||||
|
|
||||||
|
|
||||||
class BasePageEditView(UserPassesTestMixin, UpdateView):
|
class PageEditViewBase(CanEditMixin, UpdateView):
|
||||||
model = PageRev
|
model = PageRev
|
||||||
form_class = PageRevisionForm
|
form_class = modelform_factory(
|
||||||
template_name = "core/page/edit.jinja"
|
model=PageRev, fields=["title", "content"], widgets={"content": MarkdownInput}
|
||||||
|
)
|
||||||
def test_func(self):
|
template_name = "core/pagerev_edit.jinja"
|
||||||
return self.request.user.can_edit(self.page)
|
|
||||||
|
|
||||||
@cached_property
|
|
||||||
def page(self) -> Page:
|
|
||||||
page = get_page_or_404(full_name=self.kwargs["page_name"])
|
|
||||||
page.set_lock(self.request.user)
|
|
||||||
return page
|
|
||||||
|
|
||||||
def get_object(self, *args, **kwargs):
|
def get_object(self, *args, **kwargs):
|
||||||
return self.page.revisions.last()
|
self.page = Page.get_page_by_full_name(self.kwargs["page_name"])
|
||||||
|
return self._get_revision()
|
||||||
|
|
||||||
|
def _get_revision(self):
|
||||||
|
if self.page is not None:
|
||||||
|
# First edit
|
||||||
|
if self.page.revisions.all() is None:
|
||||||
|
rev = PageRev(author=self.request.user)
|
||||||
|
rev.save()
|
||||||
|
self.page.revisions.add(rev)
|
||||||
|
try:
|
||||||
|
self.page.set_lock(self.request.user)
|
||||||
|
except LockError as e:
|
||||||
|
raise e
|
||||||
|
return self.page.revisions.last()
|
||||||
|
return None
|
||||||
|
|
||||||
def get_context_data(self, **kwargs):
|
def get_context_data(self, **kwargs):
|
||||||
return super().get_context_data(**kwargs) | {"page": self.page}
|
context = super().get_context_data(**kwargs)
|
||||||
|
if self.page is not None:
|
||||||
|
context["page"] = self.page
|
||||||
|
else:
|
||||||
|
context["new_page"] = self.kwargs["page_name"]
|
||||||
|
return context
|
||||||
|
|
||||||
def get_form_kwargs(self):
|
def form_valid(self, form):
|
||||||
return super().get_form_kwargs() | {
|
# TODO : factor that, but first make some tests
|
||||||
"author": self.request.user,
|
rev = form.instance
|
||||||
"page": self.page,
|
new_rev = PageRev(title=rev.title, content=rev.content)
|
||||||
}
|
new_rev.author = self.request.user
|
||||||
|
new_rev.page = self.page
|
||||||
|
form.instance = new_rev
|
||||||
|
return super().form_valid(form)
|
||||||
|
|
||||||
|
|
||||||
class PageEditView(BasePageEditView):
|
class PageEditView(PageEditViewBase):
|
||||||
def dispatch(self, request, *args, **kwargs):
|
def dispatch(self, request, *args, **kwargs):
|
||||||
if self.page.need_club_redirection:
|
res = super().dispatch(request, *args, **kwargs)
|
||||||
return redirect("club:club_edit_page", club_id=self.page.club.id)
|
if self.object and self.object.page.need_club_redirection:
|
||||||
return super().dispatch(request, *args, **kwargs)
|
return redirect("club:club_edit_page", club_id=self.object.page.club.id)
|
||||||
|
return res
|
||||||
|
|
||||||
|
|
||||||
class PageDeleteView(CanEditPagePropMixin, DeleteView):
|
class PageDeleteView(CanEditPagePropMixin, DeleteView):
|
||||||
model = Page
|
model = Page
|
||||||
template_name = "core/delete_confirm.jinja"
|
template_name = "core/delete_confirm.jinja"
|
||||||
pk_url_kwarg = "page_id"
|
pk_url_kwarg = "page_id"
|
||||||
success_url = reverse_lazy("core:page_list")
|
|
||||||
|
def get_success_url(self, **kwargs):
|
||||||
|
return reverse_lazy("core:page_list")
|
||||||
|
|||||||
@@ -103,7 +103,9 @@ def password_root_change(request, user_id):
|
|||||||
"""Allows a root user to change someone's password."""
|
"""Allows a root user to change someone's password."""
|
||||||
if not request.user.is_root:
|
if not request.user.is_root:
|
||||||
raise PermissionDenied
|
raise PermissionDenied
|
||||||
user = get_object_or_404(User, id=user_id)
|
user = User.objects.filter(id=user_id).first()
|
||||||
|
if not user:
|
||||||
|
raise Http404("User not found")
|
||||||
if request.method == "POST":
|
if request.method == "POST":
|
||||||
form = views.SetPasswordForm(user=user, data=request.POST)
|
form = views.SetPasswordForm(user=user, data=request.POST)
|
||||||
if form.is_valid():
|
if form.is_valid():
|
||||||
|
|||||||
@@ -22,7 +22,6 @@ from counter.models import (
|
|||||||
Counter,
|
Counter,
|
||||||
Customer,
|
Customer,
|
||||||
Eticket,
|
Eticket,
|
||||||
InvoiceCall,
|
|
||||||
Permanency,
|
Permanency,
|
||||||
Product,
|
Product,
|
||||||
ProductType,
|
ProductType,
|
||||||
@@ -161,11 +160,3 @@ class CashRegisterSummaryAdmin(SearchModelAdmin):
|
|||||||
class EticketAdmin(SearchModelAdmin):
|
class EticketAdmin(SearchModelAdmin):
|
||||||
list_display = ("product", "event_date", "event_title")
|
list_display = ("product", "event_date", "event_title")
|
||||||
search_fields = ("product__name", "event_title")
|
search_fields = ("product__name", "event_title")
|
||||||
|
|
||||||
|
|
||||||
@admin.register(InvoiceCall)
|
|
||||||
class InvoiceCallAdmin(SearchModelAdmin):
|
|
||||||
list_display = ("club", "month", "is_validated")
|
|
||||||
search_fields = ("club__name",)
|
|
||||||
list_filter = (("club", admin.RelatedOnlyFieldListFilter),)
|
|
||||||
date_hierarchy = "month"
|
|
||||||
|
|||||||
@@ -64,7 +64,7 @@ class CounterController(ControllerBase):
|
|||||||
@route.get(
|
@route.get(
|
||||||
"/search",
|
"/search",
|
||||||
response=PaginatedResponseSchema[SimplifiedCounterSchema],
|
response=PaginatedResponseSchema[SimplifiedCounterSchema],
|
||||||
auth=[ApiKeyAuth(), SessionAuth()],
|
auth=[SessionAuth(), ApiKeyAuth()],
|
||||||
permissions=[CanAccessLookup],
|
permissions=[CanAccessLookup],
|
||||||
)
|
)
|
||||||
@paginate(PageNumberPaginationExtra, page_size=50)
|
@paginate(PageNumberPaginationExtra, page_size=50)
|
||||||
@@ -77,7 +77,7 @@ class ProductController(ControllerBase):
|
|||||||
@route.get(
|
@route.get(
|
||||||
"/search",
|
"/search",
|
||||||
response=PaginatedResponseSchema[SimpleProductSchema],
|
response=PaginatedResponseSchema[SimpleProductSchema],
|
||||||
auth=[ApiKeyAuth(), SessionAuth()],
|
auth=[SessionAuth(), ApiKeyAuth()],
|
||||||
permissions=[CanAccessLookup],
|
permissions=[CanAccessLookup],
|
||||||
)
|
)
|
||||||
@paginate(PageNumberPaginationExtra, page_size=50)
|
@paginate(PageNumberPaginationExtra, page_size=50)
|
||||||
@@ -117,7 +117,7 @@ class ProductTypeController(ControllerBase):
|
|||||||
def fetch_all(self):
|
def fetch_all(self):
|
||||||
return ProductType.objects.order_by("order")
|
return ProductType.objects.order_by("order")
|
||||||
|
|
||||||
@route.patch("/{type_id}/move", url_name="reorder_product_type")
|
@route.patch("/{type_id}/move")
|
||||||
def reorder(self, type_id: int, other_id: Query[ReorderProductTypeSchema]):
|
def reorder(self, type_id: int, other_id: Query[ReorderProductTypeSchema]):
|
||||||
"""Change the order of a product type.
|
"""Change the order of a product type.
|
||||||
|
|
||||||
|
|||||||
187
counter/forms.py
187
counter/forms.py
@@ -1,26 +1,13 @@
|
|||||||
import json
|
|
||||||
import math
|
import math
|
||||||
import uuid
|
|
||||||
from datetime import date
|
|
||||||
|
|
||||||
from dateutil.relativedelta import relativedelta
|
|
||||||
from django import forms
|
from django import forms
|
||||||
from django.db.models import Exists, OuterRef, Q
|
from django.db.models import Q
|
||||||
from django.forms import BaseModelFormSet
|
|
||||||
from django.utils.timezone import now
|
|
||||||
from django.utils.translation import gettext_lazy as _
|
from django.utils.translation import gettext_lazy as _
|
||||||
from django_celery_beat.models import ClockedSchedule
|
|
||||||
from phonenumber_field.widgets import RegionalPhoneNumberWidget
|
from phonenumber_field.widgets import RegionalPhoneNumberWidget
|
||||||
|
|
||||||
from club.models import Club
|
|
||||||
from club.widgets.ajax_select import AutoCompleteSelectClub
|
from club.widgets.ajax_select import AutoCompleteSelectClub
|
||||||
from core.models import User
|
from core.models import User
|
||||||
from core.views.forms import (
|
from core.views.forms import NFCTextInput, SelectDate, SelectDateTime
|
||||||
FutureDateTimeField,
|
|
||||||
NFCTextInput,
|
|
||||||
SelectDate,
|
|
||||||
SelectDateTime,
|
|
||||||
)
|
|
||||||
from core.views.widgets.ajax_select import (
|
from core.views.widgets.ajax_select import (
|
||||||
AutoCompleteSelect,
|
AutoCompleteSelect,
|
||||||
AutoCompleteSelectMultipleGroup,
|
AutoCompleteSelectMultipleGroup,
|
||||||
@@ -32,14 +19,10 @@ from counter.models import (
|
|||||||
Counter,
|
Counter,
|
||||||
Customer,
|
Customer,
|
||||||
Eticket,
|
Eticket,
|
||||||
InvoiceCall,
|
|
||||||
Product,
|
Product,
|
||||||
Refilling,
|
Refilling,
|
||||||
ReturnableProduct,
|
ReturnableProduct,
|
||||||
ScheduledProductAction,
|
|
||||||
Selling,
|
|
||||||
StudentCard,
|
StudentCard,
|
||||||
get_product_actions,
|
|
||||||
)
|
)
|
||||||
from counter.widgets.ajax_select import (
|
from counter.widgets.ajax_select import (
|
||||||
AutoCompleteSelectMultipleCounter,
|
AutoCompleteSelectMultipleCounter,
|
||||||
@@ -175,101 +158,7 @@ class CounterEditForm(forms.ModelForm):
|
|||||||
}
|
}
|
||||||
|
|
||||||
|
|
||||||
class ScheduledProductActionForm(forms.ModelForm):
|
class ProductEditForm(forms.ModelForm):
|
||||||
"""Form for automatic product archiving.
|
|
||||||
|
|
||||||
The `save` method will update or create tasks using celery-beat.
|
|
||||||
"""
|
|
||||||
|
|
||||||
required_css_class = "required"
|
|
||||||
prefix = "scheduled"
|
|
||||||
|
|
||||||
class Meta:
|
|
||||||
model = ScheduledProductAction
|
|
||||||
fields = ["task"]
|
|
||||||
widgets = {"task": forms.RadioSelect(choices=get_product_actions)}
|
|
||||||
labels = {"task": _("Action")}
|
|
||||||
help_texts = {"task": ""}
|
|
||||||
|
|
||||||
trigger_at = FutureDateTimeField(
|
|
||||||
label=_("Date and time of action"), widget=SelectDateTime
|
|
||||||
)
|
|
||||||
counters = forms.ModelMultipleChoiceField(
|
|
||||||
label=_("New counters"),
|
|
||||||
help_text=_("The selected counters will replace the current ones"),
|
|
||||||
required=False,
|
|
||||||
widget=AutoCompleteSelectMultipleCounter,
|
|
||||||
queryset=Counter.objects.all(),
|
|
||||||
)
|
|
||||||
|
|
||||||
def __init__(self, *args, product: Product, **kwargs):
|
|
||||||
self.product = product
|
|
||||||
super().__init__(*args, **kwargs)
|
|
||||||
if not self.instance._state.adding:
|
|
||||||
self.fields["trigger_at"].initial = self.instance.clocked.clocked_time
|
|
||||||
self.fields["counters"].initial = json.loads(self.instance.kwargs).get(
|
|
||||||
"counters"
|
|
||||||
)
|
|
||||||
|
|
||||||
def clean(self):
|
|
||||||
if not self.changed_data or "trigger_at" in self.errors:
|
|
||||||
return super().clean()
|
|
||||||
if "trigger_at" in self.changed_data:
|
|
||||||
if not self.instance.clocked_id:
|
|
||||||
self.instance.clocked = ClockedSchedule(
|
|
||||||
clocked_time=self.cleaned_data["trigger_at"]
|
|
||||||
)
|
|
||||||
else:
|
|
||||||
self.instance.clocked.clocked_time = self.cleaned_data["trigger_at"]
|
|
||||||
self.instance.clocked.save()
|
|
||||||
task_kwargs = {"product_id": self.product.id}
|
|
||||||
if (
|
|
||||||
self.cleaned_data["task"] == "counter.tasks.change_counters"
|
|
||||||
and "counters" in self.changed_data
|
|
||||||
):
|
|
||||||
task_kwargs["counters"] = [c.id for c in self.cleaned_data["counters"]]
|
|
||||||
self.instance.product = self.product
|
|
||||||
self.instance.kwargs = json.dumps(task_kwargs)
|
|
||||||
self.instance.name = (
|
|
||||||
f"{self.cleaned_data['task']} - {self.product} - {uuid.uuid4()}"
|
|
||||||
)
|
|
||||||
return super().clean()
|
|
||||||
|
|
||||||
|
|
||||||
class BaseScheduledProductActionFormSet(BaseModelFormSet):
|
|
||||||
def __init__(self, *args, product: Product, **kwargs):
|
|
||||||
if product.id:
|
|
||||||
queryset = (
|
|
||||||
product.scheduled_actions.filter(
|
|
||||||
enabled=True, clocked__clocked_time__gt=now()
|
|
||||||
)
|
|
||||||
.order_by("clocked__clocked_time")
|
|
||||||
.select_related("clocked")
|
|
||||||
)
|
|
||||||
else:
|
|
||||||
queryset = ScheduledProductAction.objects.none()
|
|
||||||
form_kwargs = {"product": product}
|
|
||||||
super().__init__(*args, queryset=queryset, form_kwargs=form_kwargs, **kwargs)
|
|
||||||
|
|
||||||
def delete_existing(self, obj: ScheduledProductAction, commit: bool = True): # noqa FBT001
|
|
||||||
clocked = obj.clocked
|
|
||||||
super().delete_existing(obj, commit=commit)
|
|
||||||
if commit:
|
|
||||||
clocked.delete()
|
|
||||||
|
|
||||||
|
|
||||||
ScheduledProductActionFormSet = forms.modelformset_factory(
|
|
||||||
ScheduledProductAction,
|
|
||||||
ScheduledProductActionForm,
|
|
||||||
formset=BaseScheduledProductActionFormSet,
|
|
||||||
absolute_max=None,
|
|
||||||
can_delete=True,
|
|
||||||
can_delete_extra=False,
|
|
||||||
extra=2,
|
|
||||||
)
|
|
||||||
|
|
||||||
|
|
||||||
class ProductForm(forms.ModelForm):
|
|
||||||
error_css_class = "error"
|
error_css_class = "error"
|
||||||
required_css_class = "required"
|
required_css_class = "required"
|
||||||
|
|
||||||
@@ -310,21 +199,22 @@ class ProductForm(forms.ModelForm):
|
|||||||
queryset=Counter.objects.all(),
|
queryset=Counter.objects.all(),
|
||||||
)
|
)
|
||||||
|
|
||||||
def __init__(self, *args, instance=None, **kwargs):
|
def __init__(self, *args, **kwargs):
|
||||||
super().__init__(*args, instance=instance, **kwargs)
|
super().__init__(*args, **kwargs)
|
||||||
if self.instance.id:
|
if self.instance.id:
|
||||||
self.fields["counters"].initial = self.instance.counters.all()
|
self.fields["counters"].initial = self.instance.counters.all()
|
||||||
self.action_formset = ScheduledProductActionFormSet(
|
|
||||||
*args, product=self.instance, **kwargs
|
|
||||||
)
|
|
||||||
|
|
||||||
def is_valid(self):
|
|
||||||
return super().is_valid() and self.action_formset.is_valid()
|
|
||||||
|
|
||||||
def save(self, *args, **kwargs):
|
def save(self, *args, **kwargs):
|
||||||
ret = super().save(*args, **kwargs)
|
ret = super().save(*args, **kwargs)
|
||||||
self.instance.counters.set(self.cleaned_data["counters"])
|
if self.fields["counters"].initial:
|
||||||
self.action_formset.save()
|
# Remove the product from all counter it was added to
|
||||||
|
# It will then only be added to selected counters
|
||||||
|
for counter in self.fields["counters"].initial:
|
||||||
|
counter.products.remove(self.instance)
|
||||||
|
counter.save()
|
||||||
|
for counter in self.cleaned_data["counters"]:
|
||||||
|
counter.products.add(self.instance)
|
||||||
|
counter.save()
|
||||||
return ret
|
return ret
|
||||||
|
|
||||||
|
|
||||||
@@ -376,7 +266,7 @@ class CloseCustomerAccountForm(forms.Form):
|
|||||||
)
|
)
|
||||||
|
|
||||||
|
|
||||||
class BasketProductForm(forms.Form):
|
class ProductForm(forms.Form):
|
||||||
quantity = forms.IntegerField(min_value=1, required=True)
|
quantity = forms.IntegerField(min_value=1, required=True)
|
||||||
id = forms.IntegerField(min_value=0, required=True)
|
id = forms.IntegerField(min_value=0, required=True)
|
||||||
|
|
||||||
@@ -481,50 +371,5 @@ class BaseBasketForm(forms.BaseFormSet):
|
|||||||
|
|
||||||
|
|
||||||
BasketForm = forms.formset_factory(
|
BasketForm = forms.formset_factory(
|
||||||
BasketProductForm, formset=BaseBasketForm, absolute_max=None, min_num=1
|
ProductForm, formset=BaseBasketForm, absolute_max=None, min_num=1
|
||||||
)
|
)
|
||||||
|
|
||||||
|
|
||||||
class InvoiceCallForm(forms.Form):
|
|
||||||
def __init__(self, *args, month: date, **kwargs):
|
|
||||||
super().__init__(*args, **kwargs)
|
|
||||||
self.month = month
|
|
||||||
self.clubs = list(
|
|
||||||
Club.objects.filter(
|
|
||||||
Exists(
|
|
||||||
Selling.objects.filter(
|
|
||||||
club=OuterRef("pk"),
|
|
||||||
date__gte=month,
|
|
||||||
date__lte=month + relativedelta(months=1),
|
|
||||||
)
|
|
||||||
)
|
|
||||||
).annotate(
|
|
||||||
validated_invoice=Exists(
|
|
||||||
InvoiceCall.objects.filter(
|
|
||||||
club=OuterRef("pk"), month=month, is_validated=True
|
|
||||||
)
|
|
||||||
)
|
|
||||||
)
|
|
||||||
)
|
|
||||||
self.fields = {
|
|
||||||
str(club.id): forms.BooleanField(
|
|
||||||
required=False, initial=club.validated_invoice
|
|
||||||
)
|
|
||||||
for club in self.clubs
|
|
||||||
}
|
|
||||||
|
|
||||||
def save(self):
|
|
||||||
invoice_calls = [
|
|
||||||
InvoiceCall(
|
|
||||||
month=self.month,
|
|
||||||
club_id=club.id,
|
|
||||||
is_validated=self.cleaned_data.get(str(club.id), False),
|
|
||||||
)
|
|
||||||
for club in self.clubs
|
|
||||||
]
|
|
||||||
InvoiceCall.objects.bulk_create(
|
|
||||||
invoice_calls,
|
|
||||||
update_conflicts=True,
|
|
||||||
update_fields=["is_validated"],
|
|
||||||
unique_fields=["month", "club"],
|
|
||||||
)
|
|
||||||
|
|||||||
@@ -1,40 +0,0 @@
|
|||||||
# Generated by Django 5.2.3 on 2025-09-14 11:29
|
|
||||||
|
|
||||||
import django.db.models.deletion
|
|
||||||
from django.db import migrations, models
|
|
||||||
|
|
||||||
|
|
||||||
class Migration(migrations.Migration):
|
|
||||||
dependencies = [
|
|
||||||
("counter", "0031_alter_counter_options"),
|
|
||||||
("django_celery_beat", "0019_alter_periodictasks_options"),
|
|
||||||
]
|
|
||||||
|
|
||||||
operations = [
|
|
||||||
migrations.CreateModel(
|
|
||||||
name="ScheduledProductAction",
|
|
||||||
fields=[
|
|
||||||
(
|
|
||||||
"periodictask_ptr",
|
|
||||||
models.OneToOneField(
|
|
||||||
auto_created=True,
|
|
||||||
on_delete=django.db.models.deletion.CASCADE,
|
|
||||||
parent_link=True,
|
|
||||||
primary_key=True,
|
|
||||||
serialize=False,
|
|
||||||
to="django_celery_beat.periodictask",
|
|
||||||
),
|
|
||||||
),
|
|
||||||
(
|
|
||||||
"product",
|
|
||||||
models.ForeignKey(
|
|
||||||
on_delete=django.db.models.deletion.CASCADE,
|
|
||||||
related_name="scheduled_actions",
|
|
||||||
to="counter.product",
|
|
||||||
),
|
|
||||||
),
|
|
||||||
],
|
|
||||||
options={"verbose_name": "Product scheduled action"},
|
|
||||||
bases=("django_celery_beat.periodictask",),
|
|
||||||
),
|
|
||||||
]
|
|
||||||
@@ -1,51 +0,0 @@
|
|||||||
# Generated by Django 5.2.3 on 2025-10-15 21:54
|
|
||||||
|
|
||||||
import django.db.models.deletion
|
|
||||||
from django.db import migrations, models
|
|
||||||
|
|
||||||
import counter.models
|
|
||||||
|
|
||||||
|
|
||||||
class Migration(migrations.Migration):
|
|
||||||
dependencies = [
|
|
||||||
("club", "0014_alter_club_options_rename_unix_name_club_slug_name_and_more"),
|
|
||||||
("counter", "0032_scheduledproductaction"),
|
|
||||||
]
|
|
||||||
|
|
||||||
operations = [
|
|
||||||
migrations.CreateModel(
|
|
||||||
name="InvoiceCall",
|
|
||||||
fields=[
|
|
||||||
(
|
|
||||||
"id",
|
|
||||||
models.AutoField(
|
|
||||||
auto_created=True,
|
|
||||||
primary_key=True,
|
|
||||||
serialize=False,
|
|
||||||
verbose_name="ID",
|
|
||||||
),
|
|
||||||
),
|
|
||||||
(
|
|
||||||
"is_validated",
|
|
||||||
models.BooleanField(default=False, verbose_name="is validated"),
|
|
||||||
),
|
|
||||||
("month", counter.models.MonthField(verbose_name="invoice date")),
|
|
||||||
(
|
|
||||||
"club",
|
|
||||||
models.ForeignKey(
|
|
||||||
on_delete=django.db.models.deletion.CASCADE, to="club.club"
|
|
||||||
),
|
|
||||||
),
|
|
||||||
],
|
|
||||||
options={
|
|
||||||
"verbose_name": "Invoice call",
|
|
||||||
"verbose_name_plural": "Invoice calls",
|
|
||||||
"constraints": [
|
|
||||||
models.UniqueConstraint(
|
|
||||||
fields=("club", "month"),
|
|
||||||
name="counter_invoicecall_unique_club_month",
|
|
||||||
)
|
|
||||||
],
|
|
||||||
},
|
|
||||||
),
|
|
||||||
]
|
|
||||||
@@ -1,15 +0,0 @@
|
|||||||
# Generated by Django 5.2.3 on 2025-11-05 08:47
|
|
||||||
|
|
||||||
from django.db import migrations, models
|
|
||||||
|
|
||||||
|
|
||||||
class Migration(migrations.Migration):
|
|
||||||
dependencies = [("counter", "0033_invoicecall")]
|
|
||||||
|
|
||||||
operations = [
|
|
||||||
migrations.AlterField(
|
|
||||||
model_name="selling",
|
|
||||||
name="date",
|
|
||||||
field=models.DateTimeField(db_index=True, verbose_name="date"),
|
|
||||||
),
|
|
||||||
]
|
|
||||||
@@ -15,7 +15,6 @@
|
|||||||
from __future__ import annotations
|
from __future__ import annotations
|
||||||
|
|
||||||
import base64
|
import base64
|
||||||
import contextlib
|
|
||||||
import os
|
import os
|
||||||
import random
|
import random
|
||||||
import string
|
import string
|
||||||
@@ -35,7 +34,6 @@ from django.urls import reverse
|
|||||||
from django.utils import timezone
|
from django.utils import timezone
|
||||||
from django.utils.functional import cached_property
|
from django.utils.functional import cached_property
|
||||||
from django.utils.translation import gettext_lazy as _
|
from django.utils.translation import gettext_lazy as _
|
||||||
from django_celery_beat.models import PeriodicTask
|
|
||||||
from django_countries.fields import CountryField
|
from django_countries.fields import CountryField
|
||||||
from ordered_model.models import OrderedModel
|
from ordered_model.models import OrderedModel
|
||||||
from phonenumber_field.modelfields import PhoneNumberField
|
from phonenumber_field.modelfields import PhoneNumberField
|
||||||
@@ -86,7 +84,7 @@ class CustomerQuerySet(models.QuerySet):
|
|||||||
.annotate(res=Sum(F("unit_price") * F("quantity"), default=0))
|
.annotate(res=Sum(F("unit_price") * F("quantity"), default=0))
|
||||||
.values("res")
|
.values("res")
|
||||||
)
|
)
|
||||||
return self.update(amount=Coalesce(money_in - money_out, Decimal(0)))
|
return self.update(amount=Coalesce(money_in - money_out, Decimal("0")))
|
||||||
|
|
||||||
|
|
||||||
class Customer(models.Model):
|
class Customer(models.Model):
|
||||||
@@ -447,8 +445,7 @@ class Product(models.Model):
|
|||||||
buying_groups = list(self.buying_groups.all())
|
buying_groups = list(self.buying_groups.all())
|
||||||
if not buying_groups:
|
if not buying_groups:
|
||||||
return True
|
return True
|
||||||
res = any(user.is_in_group(pk=group.id) for group in buying_groups)
|
return any(user.is_in_group(pk=group.id) for group in buying_groups)
|
||||||
return res
|
|
||||||
|
|
||||||
@property
|
@property
|
||||||
def profit(self):
|
def profit(self):
|
||||||
@@ -482,7 +479,7 @@ class CounterQuerySet(models.QuerySet):
|
|||||||
return self.annotate(has_annotated_barman=Exists(subquery))
|
return self.annotate(has_annotated_barman=Exists(subquery))
|
||||||
|
|
||||||
def annotate_is_open(self) -> Self:
|
def annotate_is_open(self) -> Self:
|
||||||
"""Annotate the queryset with the `is_open` field.
|
"""Annotate tue queryset with the `is_open` field.
|
||||||
|
|
||||||
For each counter, if `is_open=True`, then the counter is currently opened.
|
For each counter, if `is_open=True`, then the counter is currently opened.
|
||||||
Else the counter is closed.
|
Else the counter is closed.
|
||||||
@@ -849,7 +846,7 @@ class Selling(models.Model):
|
|||||||
blank=False,
|
blank=False,
|
||||||
on_delete=models.SET_NULL,
|
on_delete=models.SET_NULL,
|
||||||
)
|
)
|
||||||
date = models.DateTimeField(_("date"), db_index=True)
|
date = models.DateTimeField(_("date"))
|
||||||
payment_method = models.CharField(
|
payment_method = models.CharField(
|
||||||
_("payment method"),
|
_("payment method"),
|
||||||
max_length=255,
|
max_length=255,
|
||||||
@@ -1360,85 +1357,3 @@ class ReturnableProductBalance(models.Model):
|
|||||||
f"return balance of {self.customer} "
|
f"return balance of {self.customer} "
|
||||||
f"for {self.returnable.product_id} : {self.balance}"
|
f"for {self.returnable.product_id} : {self.balance}"
|
||||||
)
|
)
|
||||||
|
|
||||||
|
|
||||||
def get_product_actions():
|
|
||||||
return [
|
|
||||||
("counter.tasks.archive_product", _("Archiving")),
|
|
||||||
("counter.tasks.change_counters", _("Counters change")),
|
|
||||||
]
|
|
||||||
|
|
||||||
|
|
||||||
class ScheduledProductAction(PeriodicTask):
|
|
||||||
"""Extension of celery-beat tasks dedicated to perform actions on Product."""
|
|
||||||
|
|
||||||
product = models.ForeignKey(
|
|
||||||
Product, related_name="scheduled_actions", on_delete=models.CASCADE
|
|
||||||
)
|
|
||||||
|
|
||||||
class Meta:
|
|
||||||
verbose_name = _("Product scheduled action")
|
|
||||||
|
|
||||||
def __init__(self, *args, **kwargs):
|
|
||||||
self._meta.get_field("task").choices = get_product_actions()
|
|
||||||
super().__init__(*args, **kwargs)
|
|
||||||
|
|
||||||
def full_clean(self, *args, **kwargs):
|
|
||||||
self.one_off = True # A product action should occur one time only
|
|
||||||
return super().full_clean(*args, **kwargs)
|
|
||||||
|
|
||||||
def clean_clocked(self):
|
|
||||||
if not self.clocked:
|
|
||||||
raise ValidationError(_("Product actions must declare a clocked schedule."))
|
|
||||||
|
|
||||||
def validate_unique(self, *args, **kwargs):
|
|
||||||
# The checks done in PeriodicTask.validate_unique aren't
|
|
||||||
# adapted in the case of scheduled product action,
|
|
||||||
# so we skip it and execute directly Model.validate_unique
|
|
||||||
return super(PeriodicTask, self).validate_unique(*args, **kwargs)
|
|
||||||
|
|
||||||
|
|
||||||
class MonthField(models.DateField):
|
|
||||||
description = _("Year + month field (day forced to 1)")
|
|
||||||
default_error_messages = {
|
|
||||||
"invalid": _(
|
|
||||||
"“%(value)s” value has an invalid date format. It must be "
|
|
||||||
"in YYYY-MM format."
|
|
||||||
),
|
|
||||||
"invalid_date": _(
|
|
||||||
"“%(value)s” value has the correct format (YYYY-MM) "
|
|
||||||
"but it is an invalid date."
|
|
||||||
),
|
|
||||||
}
|
|
||||||
|
|
||||||
def to_python(self, value):
|
|
||||||
if isinstance(value, str):
|
|
||||||
with contextlib.suppress(ValueError):
|
|
||||||
# If the string is given as YYYY-mm, try to parse it.
|
|
||||||
# If it fails, it means that the string may be in the form YYYY-mm-dd
|
|
||||||
# or in an invalid format.
|
|
||||||
# Whatever the case, we let Django deal with it
|
|
||||||
# and raise an error if needed
|
|
||||||
value = datetime.strptime(value, "%Y-%m")
|
|
||||||
value = super().to_python(value)
|
|
||||||
if value is None:
|
|
||||||
return None
|
|
||||||
return value.replace(day=1)
|
|
||||||
|
|
||||||
|
|
||||||
class InvoiceCall(models.Model):
|
|
||||||
is_validated = models.BooleanField(verbose_name=_("is validated"), default=False)
|
|
||||||
club = models.ForeignKey(Club, on_delete=models.CASCADE)
|
|
||||||
month = MonthField(verbose_name=_("invoice date"))
|
|
||||||
|
|
||||||
class Meta:
|
|
||||||
verbose_name = _("Invoice call")
|
|
||||||
verbose_name_plural = _("Invoice calls")
|
|
||||||
constraints = [
|
|
||||||
models.UniqueConstraint(
|
|
||||||
fields=["club", "month"], name="counter_invoicecall_unique_club_month"
|
|
||||||
)
|
|
||||||
]
|
|
||||||
|
|
||||||
def __str__(self):
|
|
||||||
return f"invoice call of {self.month} made by {self.club}"
|
|
||||||
|
|||||||
@@ -1,4 +1,3 @@
|
|||||||
from datetime import datetime
|
|
||||||
from typing import Annotated, Self
|
from typing import Annotated, Self
|
||||||
|
|
||||||
from annotated_types import MinLen
|
from annotated_types import MinLen
|
||||||
@@ -101,10 +100,3 @@ class ProductFilterSchema(FilterSchema):
|
|||||||
product_type: set[int] | None = Field(None, q="product_type__in")
|
product_type: set[int] | None = Field(None, q="product_type__in")
|
||||||
club: set[int] | None = Field(None, q="club__in")
|
club: set[int] | None = Field(None, q="club__in")
|
||||||
counter: set[int] | None = Field(None, q="counters__in")
|
counter: set[int] | None = Field(None, q="counters__in")
|
||||||
|
|
||||||
|
|
||||||
class SaleFilterSchema(FilterSchema):
|
|
||||||
before: datetime | None = Field(None, q="date__lt")
|
|
||||||
after: datetime | None = Field(None, q="date__gt")
|
|
||||||
counters: set[int] | None = Field(None, q="counter__in")
|
|
||||||
products: set[int] | None = Field(None, q="product__in")
|
|
||||||
|
|||||||
@@ -1,19 +0,0 @@
|
|||||||
# Create your tasks here
|
|
||||||
|
|
||||||
from celery import shared_task
|
|
||||||
|
|
||||||
from counter.models import Counter, Product
|
|
||||||
|
|
||||||
|
|
||||||
@shared_task
|
|
||||||
def archive_product(*, product_id: int, **kwargs):
|
|
||||||
product = Product.objects.get(id=product_id)
|
|
||||||
product.archived = True
|
|
||||||
product.save()
|
|
||||||
|
|
||||||
|
|
||||||
@shared_task
|
|
||||||
def change_counters(*, product_id: int, counters: list[int], **kwargs):
|
|
||||||
product = Product.objects.get(id=product_id)
|
|
||||||
counters = Counter.objects.filter(id__in=counters)
|
|
||||||
product.counters.set(counters)
|
|
||||||
@@ -4,49 +4,35 @@
|
|||||||
{% trans %}Invoices call{% endtrans %}
|
{% trans %}Invoices call{% endtrans %}
|
||||||
{% endblock %}
|
{% endblock %}
|
||||||
|
|
||||||
{% block notifications %}{# Notifications are moved below #}{% endblock %}
|
|
||||||
|
|
||||||
{% block content %}
|
{% block content %}
|
||||||
<h3>{% trans date=start_date|date("F Y") %}Invoices call for {{ date }}{% endtrans %}</h3>
|
<h3>{% trans date=start_date|date("F Y") %}Invoices call for {{ date }}{% endtrans %}</h3>
|
||||||
|
<p>{% trans %}Choose another month: {% endtrans %}</p>
|
||||||
<form method="get" action="">
|
<form method="get" action="">
|
||||||
<label for="id_form_other_month">{% trans %}Choose another month: {% endtrans %}</label>
|
<select name="month">
|
||||||
<select name="month" id="id_form_other_month">
|
|
||||||
{% for m in months %}
|
{% for m in months %}
|
||||||
<option value="{{ m|date("Y-m") }}">{{ m|date("Y-m") }}</option>
|
<option value="{{ m|date("Y-m") }}">{{ m|date("Y-m") }}</option>
|
||||||
{% endfor %}
|
{% endfor %}
|
||||||
</select>
|
</select>
|
||||||
<input type="submit" value="{% trans %}Go{% endtrans %}" />
|
<input type="submit" value="{% trans %}Go{% endtrans %}" />
|
||||||
</form>
|
</form>
|
||||||
|
|
||||||
<br>
|
<br>
|
||||||
<p>{% trans %}CB Payments{% endtrans %} : {{ sum_cb }} €</p>
|
<p>{% trans %}CB Payments{% endtrans %} : {{ sum_cb }} €</p>
|
||||||
<br>
|
<br>
|
||||||
|
<table>
|
||||||
{% include "core/base/notifications.jinja" %}
|
<thead>
|
||||||
|
<td>{% trans %}Club{% endtrans %}</td>
|
||||||
<form method="post" action="">
|
<td>{% trans %}Sum{% endtrans %}</td>
|
||||||
{% csrf_token %}
|
</thead>
|
||||||
<table>
|
<tbody>
|
||||||
<thead>
|
{% for i in sums %}
|
||||||
<tr>
|
<tr>
|
||||||
<td>{% trans %}Club{% endtrans %}</td>
|
<td>{{ i['club__name'] }}</td>
|
||||||
<td>{% trans %}Sum{% endtrans %}</td>
|
<td>{{ i['selling_sum'] }} €</td>
|
||||||
<td>{% trans %}Validated{% endtrans %}</td>
|
|
||||||
</tr>
|
</tr>
|
||||||
</thead>
|
{% endfor %}
|
||||||
<tbody>
|
</tbody>
|
||||||
{% for invoice in invoices %}
|
</table>
|
||||||
<tr>
|
|
||||||
<td>{{ invoice.club__name }}</td>
|
|
||||||
<td>{{ "%.2f"|format(invoice.selling_sum) }} €</td>
|
|
||||||
<td>
|
|
||||||
{{ form[invoice.club_id|string] }}
|
|
||||||
</td>
|
|
||||||
</tr>
|
|
||||||
{% endfor %}
|
|
||||||
</tbody>
|
|
||||||
</table>
|
|
||||||
<input type="hidden" name="month" value="{{ start_date|date('Y-m') }}">
|
|
||||||
<button type="submit">{% trans %}Save{% endtrans %}</button>
|
|
||||||
</form>
|
|
||||||
{% endblock %}
|
{% endblock %}
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|||||||
@@ -1,56 +0,0 @@
|
|||||||
{% extends "core/base.jinja" %}
|
|
||||||
|
|
||||||
{% block content %}
|
|
||||||
{% if object %}
|
|
||||||
<h2>{% trans name=object %}Edit product {{ name }}{% endtrans %}</h2>
|
|
||||||
{% else %}
|
|
||||||
<h2>{% trans %}Product creation{% endtrans %}</h2>
|
|
||||||
{% endif %}
|
|
||||||
<form method="post" enctype="multipart/form-data">
|
|
||||||
{% csrf_token %}
|
|
||||||
{{ form.as_p() }}
|
|
||||||
|
|
||||||
<br />
|
|
||||||
|
|
||||||
<h3>{% trans %}Automatic actions{% endtrans %}</h3>
|
|
||||||
|
|
||||||
<p class="margin-bottom">
|
|
||||||
<em>
|
|
||||||
{%- trans trimmed -%}
|
|
||||||
Automatic actions allows to schedule product changes
|
|
||||||
ahead of time.
|
|
||||||
{%- endtrans -%}
|
|
||||||
</em>
|
|
||||||
</p>
|
|
||||||
|
|
||||||
{{ form.action_formset.management_form }}
|
|
||||||
{%- for action_form in form.action_formset.forms -%}
|
|
||||||
<fieldset x-data="{action: '{{ action_form.task.initial }}'}">
|
|
||||||
{{ action_form.non_field_errors() }}
|
|
||||||
<div class="row gap-2x margin-bottom">
|
|
||||||
<div>
|
|
||||||
{{ action_form.task.errors }}
|
|
||||||
{{ action_form.task.label_tag() }}
|
|
||||||
{{ action_form.task|add_attr("x-model=action") }}
|
|
||||||
</div>
|
|
||||||
<div>{{ action_form.trigger_at.as_field_group() }}</div>
|
|
||||||
</div>
|
|
||||||
<div x-show="action==='counter.tasks.change_counters'" class="margin-bottom">
|
|
||||||
{{ action_form.counters.as_field_group() }}
|
|
||||||
</div>
|
|
||||||
{%- if action_form.DELETE -%}
|
|
||||||
<div class="row gap">
|
|
||||||
{{ action_form.DELETE.as_field_group() }}
|
|
||||||
</div>
|
|
||||||
{%- endif -%}
|
|
||||||
{%- for field in action_form.hidden_fields() -%}
|
|
||||||
{{ field }}
|
|
||||||
{%- endfor -%}
|
|
||||||
</fieldset>
|
|
||||||
{%- if not loop.last -%}
|
|
||||||
<hr class="margin-bottom">
|
|
||||||
{%- endif -%}
|
|
||||||
{%- endfor -%}
|
|
||||||
<p><input type="submit" value="{% trans %}Save{% endtrans %}" /></p>
|
|
||||||
</form>
|
|
||||||
{% endblock %}
|
|
||||||
@@ -1,116 +0,0 @@
|
|||||||
import json
|
|
||||||
from datetime import timedelta
|
|
||||||
|
|
||||||
import pytest
|
|
||||||
from django.conf import settings
|
|
||||||
from django.test import Client
|
|
||||||
from django.urls import reverse
|
|
||||||
from django.utils.timezone import now
|
|
||||||
from django_celery_beat.models import ClockedSchedule
|
|
||||||
from model_bakery import baker
|
|
||||||
|
|
||||||
from core.models import Group, User
|
|
||||||
from counter.baker_recipes import counter_recipe, product_recipe
|
|
||||||
from counter.forms import ScheduledProductActionForm, ScheduledProductActionFormSet
|
|
||||||
from counter.models import ScheduledProductAction
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
def test_edit_product(client: Client):
|
|
||||||
client.force_login(
|
|
||||||
baker.make(
|
|
||||||
User, groups=[Group.objects.get(id=settings.SITH_GROUP_COUNTER_ADMIN_ID)]
|
|
||||||
)
|
|
||||||
)
|
|
||||||
product = product_recipe.make()
|
|
||||||
url = reverse("counter:product_edit", kwargs={"product_id": product.id})
|
|
||||||
res = client.get(url)
|
|
||||||
assert res.status_code == 200
|
|
||||||
|
|
||||||
res = client.post(url, data={})
|
|
||||||
# This is actually a failure, but we just want to check that
|
|
||||||
# we don't have a 403 or a 500.
|
|
||||||
# The actual behaviour will be tested directly on the form.
|
|
||||||
assert res.status_code == 200
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
class TestProductActionForm:
|
|
||||||
def test_single_form_archive(self):
|
|
||||||
product = product_recipe.make()
|
|
||||||
trigger_at = now() + timedelta(minutes=10)
|
|
||||||
form = ScheduledProductActionForm(
|
|
||||||
product=product,
|
|
||||||
data={
|
|
||||||
"scheduled-task": "counter.tasks.archive_product",
|
|
||||||
"scheduled-trigger_at": trigger_at,
|
|
||||||
},
|
|
||||||
)
|
|
||||||
assert form.is_valid()
|
|
||||||
instance = form.save()
|
|
||||||
assert instance.clocked.clocked_time == trigger_at
|
|
||||||
assert instance.enabled is True
|
|
||||||
assert instance.one_off is True
|
|
||||||
assert instance.task == "counter.tasks.archive_product"
|
|
||||||
assert instance.kwargs == json.dumps({"product_id": product.id})
|
|
||||||
|
|
||||||
def test_single_form_change_counters(self):
|
|
||||||
product = product_recipe.make()
|
|
||||||
counter = counter_recipe.make()
|
|
||||||
trigger_at = now() + timedelta(minutes=10)
|
|
||||||
form = ScheduledProductActionForm(
|
|
||||||
product=product,
|
|
||||||
data={
|
|
||||||
"scheduled-task": "counter.tasks.change_counters",
|
|
||||||
"scheduled-trigger_at": trigger_at,
|
|
||||||
"scheduled-counters": [counter.id],
|
|
||||||
},
|
|
||||||
)
|
|
||||||
assert form.is_valid()
|
|
||||||
instance = form.save()
|
|
||||||
instance.refresh_from_db()
|
|
||||||
assert instance.clocked.clocked_time == trigger_at
|
|
||||||
assert instance.enabled is True
|
|
||||||
assert instance.one_off is True
|
|
||||||
assert instance.task == "counter.tasks.change_counters"
|
|
||||||
assert instance.kwargs == json.dumps(
|
|
||||||
{"product_id": product.id, "counters": [counter.id]}
|
|
||||||
)
|
|
||||||
|
|
||||||
def test_delete(self):
|
|
||||||
product = product_recipe.make()
|
|
||||||
clocked = baker.make(ClockedSchedule, clocked_time=now() + timedelta(minutes=2))
|
|
||||||
task = baker.make(
|
|
||||||
ScheduledProductAction,
|
|
||||||
product=product,
|
|
||||||
one_off=True,
|
|
||||||
clocked=clocked,
|
|
||||||
task="counter.tasks.archive_product",
|
|
||||||
)
|
|
||||||
formset = ScheduledProductActionFormSet(product=product)
|
|
||||||
formset.delete_existing(task)
|
|
||||||
assert not ScheduledProductAction.objects.filter(id=task.id).exists()
|
|
||||||
assert not ClockedSchedule.objects.filter(id=clocked.id).exists()
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
class TestProductActionFormSet:
|
|
||||||
def test_ok(self):
|
|
||||||
product = product_recipe.make()
|
|
||||||
counter = counter_recipe.make()
|
|
||||||
trigger_at = now() + timedelta(minutes=10)
|
|
||||||
formset = ScheduledProductActionFormSet(
|
|
||||||
product=product,
|
|
||||||
data={
|
|
||||||
"form-TOTAL_FORMS": "2",
|
|
||||||
"form-INITIAL_FORMS": "0",
|
|
||||||
"form-0-task": "counter.tasks.archive_product",
|
|
||||||
"form-0-trigger_at": trigger_at,
|
|
||||||
"form-1-task": "counter.tasks.change_counters",
|
|
||||||
"form-1-trigger_at": trigger_at,
|
|
||||||
"form-1-counters": [counter.id],
|
|
||||||
},
|
|
||||||
)
|
|
||||||
assert formset.is_valid()
|
|
||||||
formset.save()
|
|
||||||
assert ScheduledProductAction.objects.filter(product=product).count() == 2
|
|
||||||
@@ -355,7 +355,7 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
self.submit_basket(self.barmen, [BasketItem(self.beer.id, 1)])
|
self.submit_basket(self.barmen, [BasketItem(self.beer.id, 1)])
|
||||||
).status_code == 302
|
).status_code == 302
|
||||||
|
|
||||||
assert self.updated_amount(self.barmen) == Decimal(9)
|
assert self.updated_amount(self.barmen) == Decimal("9")
|
||||||
|
|
||||||
def test_click_tray_price(self):
|
def test_click_tray_price(self):
|
||||||
force_refill_user(self.customer, 20)
|
force_refill_user(self.customer, 20)
|
||||||
@@ -364,12 +364,12 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
# Not applying tray price
|
# Not applying tray price
|
||||||
res = self.submit_basket(self.customer, [BasketItem(self.beer_tap.id, 2)])
|
res = self.submit_basket(self.customer, [BasketItem(self.beer_tap.id, 2)])
|
||||||
assert res.status_code == 302
|
assert res.status_code == 302
|
||||||
assert self.updated_amount(self.customer) == Decimal(17)
|
assert self.updated_amount(self.customer) == Decimal("17")
|
||||||
|
|
||||||
# Applying tray price
|
# Applying tray price
|
||||||
res = self.submit_basket(self.customer, [BasketItem(self.beer_tap.id, 7)])
|
res = self.submit_basket(self.customer, [BasketItem(self.beer_tap.id, 7)])
|
||||||
assert res.status_code == 302
|
assert res.status_code == 302
|
||||||
assert self.updated_amount(self.customer) == Decimal(8)
|
assert self.updated_amount(self.customer) == Decimal("8")
|
||||||
|
|
||||||
def test_click_alcool_unauthorized(self):
|
def test_click_alcool_unauthorized(self):
|
||||||
self.login_in_bar()
|
self.login_in_bar()
|
||||||
@@ -381,13 +381,13 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
res = self.submit_basket(user, [BasketItem(self.snack.id, 2)])
|
res = self.submit_basket(user, [BasketItem(self.snack.id, 2)])
|
||||||
assert res.status_code == 302
|
assert res.status_code == 302
|
||||||
|
|
||||||
assert self.updated_amount(user) == Decimal(7)
|
assert self.updated_amount(user) == Decimal("7")
|
||||||
|
|
||||||
# Buy product without age limit
|
# Buy product without age limit
|
||||||
res = self.submit_basket(user, [BasketItem(self.beer.id, 2)])
|
res = self.submit_basket(user, [BasketItem(self.beer.id, 2)])
|
||||||
assert res.status_code == 200
|
assert res.status_code == 200
|
||||||
|
|
||||||
assert self.updated_amount(user) == Decimal(7)
|
assert self.updated_amount(user) == Decimal("7")
|
||||||
|
|
||||||
def test_click_unauthorized_customer(self):
|
def test_click_unauthorized_customer(self):
|
||||||
self.login_in_bar()
|
self.login_in_bar()
|
||||||
@@ -401,7 +401,7 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
assert resp.status_code == 302
|
assert resp.status_code == 302
|
||||||
assert resp.url == resolve_url(self.counter)
|
assert resp.url == resolve_url(self.counter)
|
||||||
|
|
||||||
assert self.updated_amount(user) == Decimal(10)
|
assert self.updated_amount(user) == Decimal("10")
|
||||||
|
|
||||||
def test_click_user_without_customer(self):
|
def test_click_user_without_customer(self):
|
||||||
self.login_in_bar()
|
self.login_in_bar()
|
||||||
@@ -418,7 +418,7 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
)
|
)
|
||||||
assert res.status_code == 302
|
assert res.status_code == 302
|
||||||
|
|
||||||
assert self.updated_amount(self.customer_old_can_buy) == Decimal(7)
|
assert self.updated_amount(self.customer_old_can_buy) == Decimal("7")
|
||||||
|
|
||||||
def test_click_wrong_counter(self):
|
def test_click_wrong_counter(self):
|
||||||
self.login_in_bar()
|
self.login_in_bar()
|
||||||
@@ -443,7 +443,7 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
)
|
)
|
||||||
assertRedirects(res, self.counter.get_absolute_url())
|
assertRedirects(res, self.counter.get_absolute_url())
|
||||||
|
|
||||||
assert self.updated_amount(self.customer) == Decimal(10)
|
assert self.updated_amount(self.customer) == Decimal("10")
|
||||||
|
|
||||||
def test_click_not_connected(self):
|
def test_click_not_connected(self):
|
||||||
force_refill_user(self.customer, 10)
|
force_refill_user(self.customer, 10)
|
||||||
@@ -455,7 +455,7 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
)
|
)
|
||||||
assert res.status_code == 403
|
assert res.status_code == 403
|
||||||
|
|
||||||
assert self.updated_amount(self.customer) == Decimal(10)
|
assert self.updated_amount(self.customer) == Decimal("10")
|
||||||
|
|
||||||
def test_click_product_not_in_counter(self):
|
def test_click_product_not_in_counter(self):
|
||||||
force_refill_user(self.customer, 10)
|
force_refill_user(self.customer, 10)
|
||||||
@@ -463,7 +463,7 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
|
|
||||||
res = self.submit_basket(self.customer, [BasketItem(self.stamps.id, 2)])
|
res = self.submit_basket(self.customer, [BasketItem(self.stamps.id, 2)])
|
||||||
assert res.status_code == 200
|
assert res.status_code == 200
|
||||||
assert self.updated_amount(self.customer) == Decimal(10)
|
assert self.updated_amount(self.customer) == Decimal("10")
|
||||||
|
|
||||||
def test_basket_empty(self):
|
def test_basket_empty(self):
|
||||||
force_refill_user(self.customer, 10)
|
force_refill_user(self.customer, 10)
|
||||||
@@ -477,7 +477,7 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
self.submit_basket(self.customer, basket),
|
self.submit_basket(self.customer, basket),
|
||||||
self.counter.get_absolute_url(),
|
self.counter.get_absolute_url(),
|
||||||
)
|
)
|
||||||
assert self.updated_amount(self.customer) == Decimal(10)
|
assert self.updated_amount(self.customer) == Decimal("10")
|
||||||
|
|
||||||
def test_click_product_invalid(self):
|
def test_click_product_invalid(self):
|
||||||
force_refill_user(self.customer, 10)
|
force_refill_user(self.customer, 10)
|
||||||
@@ -490,7 +490,7 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
BasketItem(self.beer.id, None),
|
BasketItem(self.beer.id, None),
|
||||||
]:
|
]:
|
||||||
assert self.submit_basket(self.customer, [item]).status_code == 200
|
assert self.submit_basket(self.customer, [item]).status_code == 200
|
||||||
assert self.updated_amount(self.customer) == Decimal(10)
|
assert self.updated_amount(self.customer) == Decimal("10")
|
||||||
|
|
||||||
def test_click_not_enough_money(self):
|
def test_click_not_enough_money(self):
|
||||||
force_refill_user(self.customer, 10)
|
force_refill_user(self.customer, 10)
|
||||||
@@ -501,7 +501,7 @@ class TestCounterClick(TestFullClickBase):
|
|||||||
)
|
)
|
||||||
assert res.status_code == 200
|
assert res.status_code == 200
|
||||||
|
|
||||||
assert self.updated_amount(self.customer) == Decimal(10)
|
assert self.updated_amount(self.customer) == Decimal("10")
|
||||||
|
|
||||||
def test_annotate_has_barman_queryset(self):
|
def test_annotate_has_barman_queryset(self):
|
||||||
"""Test if the custom queryset method `annotate_has_barman` works as intended."""
|
"""Test if the custom queryset method `annotate_has_barman` works as intended."""
|
||||||
|
|||||||
@@ -1,76 +0,0 @@
|
|||||||
from datetime import date, datetime
|
|
||||||
|
|
||||||
import pytest
|
|
||||||
from dateutil.relativedelta import relativedelta
|
|
||||||
from django.contrib.auth.models import Permission
|
|
||||||
from django.core.exceptions import ValidationError
|
|
||||||
from django.test import Client
|
|
||||||
from django.urls import reverse
|
|
||||||
from django.utils.timezone import localdate
|
|
||||||
from model_bakery import baker
|
|
||||||
from pytest_django.asserts import assertRedirects
|
|
||||||
|
|
||||||
from club.models import Club
|
|
||||||
from core.models import User
|
|
||||||
from counter.baker_recipes import sale_recipe
|
|
||||||
from counter.forms import InvoiceCallForm
|
|
||||||
from counter.models import Customer, InvoiceCall, Selling
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
@pytest.mark.parametrize(
|
|
||||||
"month", [date(2025, 10, 20), "2025-10", datetime(2025, 10, 15, 12, 30)]
|
|
||||||
)
|
|
||||||
def test_invoice_date_with_date(month: date | datetime | str):
|
|
||||||
club = baker.make(Club)
|
|
||||||
invoice = InvoiceCall.objects.create(club=club, month=month)
|
|
||||||
invoice.refresh_from_db()
|
|
||||||
assert not invoice.is_validated
|
|
||||||
assert invoice.month == date(2025, 10, 1)
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
def test_invoice_call_invalid_month_string():
|
|
||||||
club = baker.make(Club)
|
|
||||||
|
|
||||||
with pytest.raises(ValidationError):
|
|
||||||
InvoiceCall.objects.create(club=club, month="2025-13")
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
@pytest.mark.parametrize("query", [None, {"month": "2025-08"}])
|
|
||||||
def test_invoice_call_view(client: Client, query: dict | None):
|
|
||||||
user = baker.make(
|
|
||||||
User,
|
|
||||||
user_permissions=[
|
|
||||||
*Permission.objects.filter(
|
|
||||||
codename__in=["view_invoicecall", "change_invoicecall"]
|
|
||||||
)
|
|
||||||
],
|
|
||||||
)
|
|
||||||
client.force_login(user)
|
|
||||||
url = reverse("counter:invoices_call", query=query)
|
|
||||||
assert client.get(url).status_code == 200
|
|
||||||
assertRedirects(client.post(url), url)
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
|
||||||
def test_invoice_call_form():
|
|
||||||
Selling.objects.all().delete()
|
|
||||||
month = localdate() - relativedelta(months=1)
|
|
||||||
clubs = baker.make(Club, _quantity=2)
|
|
||||||
recipe = sale_recipe.extend(date=month, customer=baker.make(Customer, amount=10000))
|
|
||||||
recipe.make(club=clubs[0], quantity=2, unit_price=200)
|
|
||||||
recipe.make(club=clubs[0], quantity=3, unit_price=5)
|
|
||||||
recipe.make(club=clubs[1], quantity=20, unit_price=10)
|
|
||||||
form = InvoiceCallForm(
|
|
||||||
month=month, data={str(clubs[0].id): True, str(clubs[1].id): False}
|
|
||||||
)
|
|
||||||
assert form.is_valid()
|
|
||||||
form.save()
|
|
||||||
assert InvoiceCall.objects.filter(
|
|
||||||
club=clubs[0], month=month, is_validated=True
|
|
||||||
).exists()
|
|
||||||
assert InvoiceCall.objects.filter(
|
|
||||||
club=clubs[1], month=month, is_validated=False
|
|
||||||
).exists()
|
|
||||||
@@ -6,16 +6,14 @@ import pytest
|
|||||||
from django.conf import settings
|
from django.conf import settings
|
||||||
from django.core.cache import cache
|
from django.core.cache import cache
|
||||||
from django.core.files.uploadedfile import SimpleUploadedFile
|
from django.core.files.uploadedfile import SimpleUploadedFile
|
||||||
from django.test import Client, TestCase
|
from django.test import Client
|
||||||
from django.urls import reverse
|
from django.urls import reverse
|
||||||
from model_bakery import baker
|
from model_bakery import baker
|
||||||
from PIL import Image
|
from PIL import Image
|
||||||
from pytest_django.asserts import assertNumQueries, assertRedirects
|
from pytest_django.asserts import assertNumQueries
|
||||||
|
|
||||||
from club.models import Club
|
|
||||||
from core.baker_recipes import board_user, subscriber_user
|
from core.baker_recipes import board_user, subscriber_user
|
||||||
from core.models import Group, User
|
from core.models import Group, User
|
||||||
from counter.forms import ProductForm
|
|
||||||
from counter.models import Product, ProductType
|
from counter.models import Product, ProductType
|
||||||
|
|
||||||
|
|
||||||
@@ -86,49 +84,3 @@ def test_fetch_product_nb_queries(client: Client):
|
|||||||
# - 1 for the actual request
|
# - 1 for the actual request
|
||||||
# - 1 to prefetch the related buying_groups
|
# - 1 to prefetch the related buying_groups
|
||||||
client.get(reverse("api:search_products_detailed"))
|
client.get(reverse("api:search_products_detailed"))
|
||||||
|
|
||||||
|
|
||||||
class TestCreateProduct(TestCase):
|
|
||||||
@classmethod
|
|
||||||
def setUpTestData(cls):
|
|
||||||
cls.product_type = baker.make(ProductType)
|
|
||||||
cls.club = baker.make(Club)
|
|
||||||
cls.data = {
|
|
||||||
"name": "foo",
|
|
||||||
"description": "bar",
|
|
||||||
"product_type": cls.product_type.id,
|
|
||||||
"club": cls.club.id,
|
|
||||||
"code": "FOO",
|
|
||||||
"purchase_price": 1.0,
|
|
||||||
"selling_price": 1.0,
|
|
||||||
"special_selling_price": 1.0,
|
|
||||||
"limit_age": 0,
|
|
||||||
"form-TOTAL_FORMS": 0,
|
|
||||||
"form-INITIAL_FORMS": 0,
|
|
||||||
}
|
|
||||||
|
|
||||||
def test_form(self):
|
|
||||||
form = ProductForm(data=self.data)
|
|
||||||
assert form.is_valid()
|
|
||||||
instance = form.save()
|
|
||||||
assert instance.club == self.club
|
|
||||||
assert instance.product_type == self.product_type
|
|
||||||
assert instance.name == "foo"
|
|
||||||
assert instance.selling_price == 1.0
|
|
||||||
|
|
||||||
def test_view(self):
|
|
||||||
self.client.force_login(
|
|
||||||
baker.make(
|
|
||||||
User,
|
|
||||||
groups=[Group.objects.get(id=settings.SITH_GROUP_COUNTER_ADMIN_ID)],
|
|
||||||
)
|
|
||||||
)
|
|
||||||
url = reverse("counter:new_product")
|
|
||||||
response = self.client.get(url)
|
|
||||||
assert response.status_code == 200
|
|
||||||
response = self.client.post(url, data=self.data)
|
|
||||||
assertRedirects(response, reverse("counter:product_list"))
|
|
||||||
product = Product.objects.last()
|
|
||||||
assert product.name == "foo"
|
|
||||||
assert product.club == self.club
|
|
||||||
assert product.product_type == self.product_type
|
|
||||||
|
|||||||
@@ -3,9 +3,11 @@ from django.conf import settings
|
|||||||
from django.test import Client
|
from django.test import Client
|
||||||
from django.urls import reverse
|
from django.urls import reverse
|
||||||
from model_bakery import baker, seq
|
from model_bakery import baker, seq
|
||||||
|
from ninja_extra.testing import TestClient
|
||||||
|
|
||||||
from core.baker_recipes import board_user, subscriber_user
|
from core.baker_recipes import board_user, subscriber_user
|
||||||
from core.models import Group, User
|
from core.models import Group, User
|
||||||
|
from counter.api import ProductTypeController
|
||||||
from counter.models import ProductType
|
from counter.models import ProductType
|
||||||
|
|
||||||
|
|
||||||
@@ -17,43 +19,24 @@ def product_types(db) -> list[ProductType]:
|
|||||||
return baker.make(ProductType, _quantity=5, order=seq(0))
|
return baker.make(ProductType, _quantity=5, order=seq(0))
|
||||||
|
|
||||||
|
|
||||||
@pytest.fixture()
|
|
||||||
def counter_admin_client(db, client: Client) -> Client:
|
|
||||||
client.force_login(
|
|
||||||
baker.make(
|
|
||||||
User, groups=[Group.objects.get(id=settings.SITH_GROUP_COUNTER_ADMIN_ID)]
|
|
||||||
)
|
|
||||||
)
|
|
||||||
return client
|
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
@pytest.mark.django_db
|
||||||
def test_fetch_product_types(
|
def test_fetch_product_types(product_types: list[ProductType]):
|
||||||
counter_admin_client: Client, product_types: list[ProductType]
|
|
||||||
):
|
|
||||||
"""Test that the API returns the right products in the right order"""
|
"""Test that the API returns the right products in the right order"""
|
||||||
response = counter_admin_client.get(reverse("api:fetch_product_types"))
|
client = TestClient(ProductTypeController)
|
||||||
|
response = client.get("")
|
||||||
assert response.status_code == 200
|
assert response.status_code == 200
|
||||||
assert [i["id"] for i in response.json()] == [t.id for t in product_types]
|
assert [i["id"] for i in response.json()] == [t.id for t in product_types]
|
||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
@pytest.mark.django_db
|
||||||
def test_move_below_product_type(
|
def test_move_below_product_type(product_types: list[ProductType]):
|
||||||
counter_admin_client: Client, product_types: list[ProductType]
|
|
||||||
):
|
|
||||||
"""Test that moving a product below another works"""
|
"""Test that moving a product below another works"""
|
||||||
response = counter_admin_client.patch(
|
client = TestClient(ProductTypeController)
|
||||||
reverse(
|
response = client.patch(
|
||||||
"api:reorder_product_type",
|
f"/{product_types[-1].id}/move", query={"below": product_types[0].id}
|
||||||
kwargs={"type_id": product_types[-1].id},
|
|
||||||
query={"below": product_types[0].id},
|
|
||||||
),
|
|
||||||
)
|
)
|
||||||
assert response.status_code == 200
|
assert response.status_code == 200
|
||||||
new_order = [
|
new_order = [i["id"] for i in client.get("").json()]
|
||||||
i["id"]
|
|
||||||
for i in counter_admin_client.get(reverse("api:fetch_product_types")).json()
|
|
||||||
]
|
|
||||||
assert new_order == [
|
assert new_order == [
|
||||||
product_types[0].id,
|
product_types[0].id,
|
||||||
product_types[-1].id,
|
product_types[-1].id,
|
||||||
@@ -62,22 +45,14 @@ def test_move_below_product_type(
|
|||||||
|
|
||||||
|
|
||||||
@pytest.mark.django_db
|
@pytest.mark.django_db
|
||||||
def test_move_above_product_type(
|
def test_move_above_product_type(product_types: list[ProductType]):
|
||||||
counter_admin_client: Client, product_types: list[ProductType]
|
|
||||||
):
|
|
||||||
"""Test that moving a product above another works"""
|
"""Test that moving a product above another works"""
|
||||||
response = counter_admin_client.patch(
|
client = TestClient(ProductTypeController)
|
||||||
reverse(
|
response = client.patch(
|
||||||
"api:reorder_product_type",
|
f"/{product_types[1].id}/move", query={"above": product_types[0].id}
|
||||||
kwargs={"type_id": product_types[1].id},
|
|
||||||
query={"above": product_types[0].id},
|
|
||||||
),
|
|
||||||
)
|
)
|
||||||
assert response.status_code == 200
|
assert response.status_code == 200
|
||||||
new_order = [
|
new_order = [i["id"] for i in client.get("").json()]
|
||||||
i["id"]
|
|
||||||
for i in counter_admin_client.get(reverse("api:fetch_product_types")).json()
|
|
||||||
]
|
|
||||||
assert new_order == [
|
assert new_order == [
|
||||||
product_types[1].id,
|
product_types[1].id,
|
||||||
product_types[0].id,
|
product_types[0].id,
|
||||||
|
|||||||
@@ -32,7 +32,7 @@ from core.utils import get_semester_code, get_start_of_semester
|
|||||||
from counter.forms import (
|
from counter.forms import (
|
||||||
CloseCustomerAccountForm,
|
CloseCustomerAccountForm,
|
||||||
CounterEditForm,
|
CounterEditForm,
|
||||||
ProductForm,
|
ProductEditForm,
|
||||||
ReturnableProductForm,
|
ReturnableProductForm,
|
||||||
)
|
)
|
||||||
from counter.models import (
|
from counter.models import (
|
||||||
@@ -146,8 +146,8 @@ class ProductCreateView(CounterAdminTabsMixin, CounterAdminMixin, CreateView):
|
|||||||
"""A create view for the admins."""
|
"""A create view for the admins."""
|
||||||
|
|
||||||
model = Product
|
model = Product
|
||||||
form_class = ProductForm
|
form_class = ProductEditForm
|
||||||
template_name = "counter/product_form.jinja"
|
template_name = "core/create.jinja"
|
||||||
current_tab = "products"
|
current_tab = "products"
|
||||||
|
|
||||||
|
|
||||||
@@ -155,9 +155,9 @@ class ProductEditView(CounterAdminTabsMixin, CounterAdminMixin, UpdateView):
|
|||||||
"""An edit view for the admins."""
|
"""An edit view for the admins."""
|
||||||
|
|
||||||
model = Product
|
model = Product
|
||||||
form_class = ProductForm
|
form_class = ProductEditForm
|
||||||
pk_url_kwarg = "product_id"
|
pk_url_kwarg = "product_id"
|
||||||
template_name = "counter/product_form.jinja"
|
template_name = "core/edit.jinja"
|
||||||
current_tab = "products"
|
current_tab = "products"
|
||||||
|
|
||||||
|
|
||||||
|
|||||||
@@ -12,81 +12,77 @@
|
|||||||
# OR WITHIN THE LOCAL FILE "LICENSE"
|
# OR WITHIN THE LOCAL FILE "LICENSE"
|
||||||
#
|
#
|
||||||
#
|
#
|
||||||
from datetime import datetime
|
from datetime import datetime, timedelta
|
||||||
from urllib.parse import urlencode
|
from datetime import timezone as tz
|
||||||
|
|
||||||
from dateutil.relativedelta import relativedelta
|
from django.db.models import F
|
||||||
from django.contrib.auth.mixins import PermissionRequiredMixin
|
from django.utils import timezone
|
||||||
from django.contrib.messages.views import SuccessMessageMixin
|
from django.views.generic import TemplateView
|
||||||
from django.db.models import F, Sum
|
|
||||||
from django.utils.timezone import localdate, make_aware
|
|
||||||
from django.utils.translation import gettext_lazy as _
|
|
||||||
from django.views.generic import FormView
|
|
||||||
|
|
||||||
from counter.forms import InvoiceCallForm
|
from counter.fields import CurrencyField
|
||||||
from counter.models import Refilling, Selling
|
from counter.models import Refilling, Selling
|
||||||
from counter.views.mixins import CounterAdminTabsMixin
|
from counter.views.mixins import CounterAdminMixin, CounterAdminTabsMixin
|
||||||
|
|
||||||
|
|
||||||
class InvoiceCallView(
|
class InvoiceCallView(CounterAdminTabsMixin, CounterAdminMixin, TemplateView):
|
||||||
CounterAdminTabsMixin, PermissionRequiredMixin, SuccessMessageMixin, FormView
|
|
||||||
):
|
|
||||||
template_name = "counter/invoices_call.jinja"
|
template_name = "counter/invoices_call.jinja"
|
||||||
current_tab = "invoices_call"
|
current_tab = "invoices_call"
|
||||||
permission_required = ["counter.view_invoicecall", "counter.change_invoicecall"]
|
|
||||||
form_class = InvoiceCallForm
|
|
||||||
success_message = _("Invoice calls status has been updated.")
|
|
||||||
|
|
||||||
def get_month(self):
|
|
||||||
kwargs = self.request.GET or self.request.POST
|
|
||||||
if "month" in kwargs:
|
|
||||||
return make_aware(datetime.strptime(kwargs["month"], "%Y-%m"))
|
|
||||||
return localdate().replace(day=1) - relativedelta(months=1)
|
|
||||||
|
|
||||||
def get_form_kwargs(self):
|
|
||||||
return super().get_form_kwargs() | {"month": self.get_month()}
|
|
||||||
|
|
||||||
def form_valid(self, form):
|
|
||||||
form.save()
|
|
||||||
return super().form_valid(form)
|
|
||||||
|
|
||||||
def get_success_url(self):
|
|
||||||
# redirect to the month from which the request is originated
|
|
||||||
url = self.request.path
|
|
||||||
kwargs = self.request.GET or self.request.POST
|
|
||||||
if "month" in kwargs:
|
|
||||||
query = urlencode({"month": kwargs["month"]})
|
|
||||||
url += f"?{query}"
|
|
||||||
return url
|
|
||||||
|
|
||||||
def get_context_data(self, **kwargs):
|
def get_context_data(self, **kwargs):
|
||||||
"""Add sums to the context."""
|
"""Add sums to the context."""
|
||||||
kwargs = super().get_context_data(**kwargs)
|
kwargs = super().get_context_data(**kwargs)
|
||||||
kwargs["months"] = Selling.objects.datetimes("date", "month", order="DESC")
|
kwargs["months"] = Selling.objects.datetimes("date", "month", order="DESC")
|
||||||
start_date = self.get_month()
|
if "month" in self.request.GET:
|
||||||
end_date = start_date + relativedelta(months=1)
|
start_date = datetime.strptime(self.request.GET["month"], "%Y-%m")
|
||||||
|
else:
|
||||||
kwargs["sum_cb"] = Refilling.objects.filter(
|
start_date = datetime(
|
||||||
payment_method="CARD",
|
year=timezone.now().year,
|
||||||
is_validated=True,
|
month=(timezone.now().month + 10) % 12 + 1,
|
||||||
date__gte=start_date,
|
day=1,
|
||||||
date__lte=end_date,
|
|
||||||
).aggregate(res=Sum("amount", default=0))["res"]
|
|
||||||
kwargs["sum_cb"] += (
|
|
||||||
Selling.objects.filter(
|
|
||||||
payment_method="CARD",
|
|
||||||
is_validated=True,
|
|
||||||
date__gte=start_date,
|
|
||||||
date__lte=end_date,
|
|
||||||
)
|
)
|
||||||
.annotate(amount=F("unit_price") * F("quantity"))
|
start_date = start_date.replace(tzinfo=tz.utc)
|
||||||
.aggregate(res=Sum("amount", default=0))["res"]
|
end_date = (start_date + timedelta(days=32)).replace(
|
||||||
|
day=1, hour=0, minute=0, microsecond=0
|
||||||
|
)
|
||||||
|
from django.db.models import Case, Sum, When
|
||||||
|
|
||||||
|
kwargs["sum_cb"] = sum(
|
||||||
|
[
|
||||||
|
r.amount
|
||||||
|
for r in Refilling.objects.filter(
|
||||||
|
payment_method="CARD",
|
||||||
|
is_validated=True,
|
||||||
|
date__gte=start_date,
|
||||||
|
date__lte=end_date,
|
||||||
|
)
|
||||||
|
]
|
||||||
|
)
|
||||||
|
kwargs["sum_cb"] += sum(
|
||||||
|
[
|
||||||
|
s.quantity * s.unit_price
|
||||||
|
for s in Selling.objects.filter(
|
||||||
|
payment_method="CARD",
|
||||||
|
is_validated=True,
|
||||||
|
date__gte=start_date,
|
||||||
|
date__lte=end_date,
|
||||||
|
)
|
||||||
|
]
|
||||||
)
|
)
|
||||||
kwargs["start_date"] = start_date
|
kwargs["start_date"] = start_date
|
||||||
kwargs["invoices"] = (
|
kwargs["sums"] = (
|
||||||
Selling.objects.filter(date__gte=start_date, date__lt=end_date)
|
Selling.objects.values("club__name")
|
||||||
.values("club_id", "club__name")
|
.annotate(
|
||||||
.annotate(selling_sum=Sum(F("unit_price") * F("quantity")))
|
selling_sum=Sum(
|
||||||
|
Case(
|
||||||
|
When(
|
||||||
|
date__gte=start_date,
|
||||||
|
date__lt=end_date,
|
||||||
|
then=F("unit_price") * F("quantity"),
|
||||||
|
),
|
||||||
|
output_field=CurrencyField(),
|
||||||
|
)
|
||||||
|
)
|
||||||
|
)
|
||||||
.exclude(selling_sum=None)
|
.exclude(selling_sum=None)
|
||||||
.order_by("-selling_sum")
|
.order_by("-selling_sum")
|
||||||
)
|
)
|
||||||
|
|||||||
@@ -182,19 +182,29 @@ ainsi même que de l'héritage de templates.
|
|||||||
si on souhaite faire des modifications côté client,
|
si on souhaite faire des modifications côté client,
|
||||||
il faut utiliser du Javascript, rien ne change à ce niveau-là.
|
il faut utiliser du Javascript, rien ne change à ce niveau-là.
|
||||||
|
|
||||||
### Typescript
|
### jQuery
|
||||||
|
|
||||||
[Site officiel](https://www.typescriptlang.org/)
|
[Site officiel](https://jquery.com/)
|
||||||
|
|
||||||
Pour rendre le site interactif, nous n'utilisons
|
jQuery est une bibliothèque JavaScript
|
||||||
pas directement Javascript, mais Typescript.
|
libre et multiplateforme créée pour faciliter
|
||||||
Il s'agit d'un langage construit par-dessus Javascript,
|
l'écriture de scripts côté client
|
||||||
en ajoutant un typage statique et des éléments de sucre syntaxique.
|
dans le code HTML des pages web.
|
||||||
Grâce au système de type, le code est plus lisible,
|
La première version est lancée en janvier 2006 par John Resig.
|
||||||
à la fois par les humains et par l'IDE, et plus fiable.
|
|
||||||
|
|
||||||
Il faut parfois se battre un peu contre le système de types de Typescript,
|
C'est une vieille technologie et certains
|
||||||
mais globalement Typescript est une alternative largement préférable à Javascript.
|
feront remarquer à juste titre que le Javascript
|
||||||
|
moderne permet d'utiliser assez simplement
|
||||||
|
la majorité de ce que fournit jQuery
|
||||||
|
sans rien avoir à installer.
|
||||||
|
Cependant, de nombreuses dépendances du projet
|
||||||
|
utilisent encore jQuery qui est toujours
|
||||||
|
très implanté aujourd'hui.
|
||||||
|
Le sucre syntaxique qu'offre cette librairie
|
||||||
|
reste très agréable à utiliser et économise
|
||||||
|
parfois beaucoup de temps.
|
||||||
|
Ça fonctionne et ça fonctionne très bien.
|
||||||
|
C'est maintenu et pratique.
|
||||||
|
|
||||||
|
|
||||||
### AlpineJS
|
### AlpineJS
|
||||||
@@ -260,6 +270,17 @@ sur tous les navigateurs contrairement
|
|||||||
à un simple icône unicode qui s'affiche
|
à un simple icône unicode qui s'affiche
|
||||||
lui différemment selon la plate-forme.
|
lui différemment selon la plate-forme.
|
||||||
|
|
||||||
|
!!!note
|
||||||
|
|
||||||
|
C'est une dépendance capricieuse qui évolue très vite
|
||||||
|
et qu'il faut très souvent mettre à jour.
|
||||||
|
|
||||||
|
!!!warning
|
||||||
|
|
||||||
|
Il a été décidé de **ne pas utiliser**
|
||||||
|
de CDN puisque le site ralentissait régulièrement.
|
||||||
|
Il est préférable de fournir cette dépendance avec le site.
|
||||||
|
|
||||||
## Workflow
|
## Workflow
|
||||||
|
|
||||||
### Git
|
### Git
|
||||||
|
|||||||
@@ -1,4 +1,4 @@
|
|||||||
L'ORM de Django est puissant, très puissant, non pas parce qu'il
|
L'ORM de Django est puissant, très puissant, non par parce qu'il
|
||||||
est performant (après tout, ce n'est qu'une interface, le gros du boulot,
|
est performant (après tout, ce n'est qu'une interface, le gros du boulot,
|
||||||
c'est la db qui le fait), mais parce qu'il permet d'écrire
|
c'est la db qui le fait), mais parce qu'il permet d'écrire
|
||||||
de manière relativement simple un grand panel de requêtes.
|
de manière relativement simple un grand panel de requêtes.
|
||||||
|
|||||||
@@ -51,7 +51,7 @@ Pour accéder au fichier, il faut utiliser `static` comme pour le reste mais en
|
|||||||
Le bundler ne génère que des modules javascript.
|
Le bundler ne génère que des modules javascript.
|
||||||
Ajouter `type="module"` n'est pas optionnel !
|
Ajouter `type="module"` n'est pas optionnel !
|
||||||
|
|
||||||
### Les imports au sein des fichiers javascript bundlés
|
### Les imports au sein des fichiers des fichiers javascript bundlés
|
||||||
|
|
||||||
Pour importer au sein d'un fichier js bundlé, il faut préfixer ses imports de `#app:`.
|
Pour importer au sein d'un fichier js bundlé, il faut préfixer ses imports de `#app:`.
|
||||||
|
|
||||||
|
|||||||
@@ -36,4 +36,11 @@ SITH_SUBSCRIPTIONS = {
|
|||||||
}
|
}
|
||||||
```
|
```
|
||||||
|
|
||||||
Après ça, n'oubliez pas de gérer les traductions (cf. [ici](./translation.md))
|
Une fois ceci fait, il faut créer une nouvelle migration :
|
||||||
|
|
||||||
|
```bash
|
||||||
|
python ./manage.py makemigrations subscription
|
||||||
|
python ./manage.py migrate
|
||||||
|
```
|
||||||
|
|
||||||
|
N'oubliez pas non plus les traductions (cf. [ici](./translation.md))
|
||||||
|
|||||||
@@ -17,6 +17,7 @@
|
|||||||
- can_edit_prop
|
- can_edit_prop
|
||||||
- can_edit
|
- can_edit
|
||||||
- can_view
|
- can_view
|
||||||
|
- CanCreateMixin
|
||||||
- CanEditMixin
|
- CanEditMixin
|
||||||
- CanViewMixin
|
- CanViewMixin
|
||||||
- CanEditPropMixin
|
- CanEditPropMixin
|
||||||
|
|||||||
@@ -1,3 +1,4 @@
|
|||||||
|
|
||||||
Pour l'API, nous utilisons `django-ninja` et sa surcouche `django-ninja-extra`.
|
Pour l'API, nous utilisons `django-ninja` et sa surcouche `django-ninja-extra`.
|
||||||
Ce sont des librairies relativement simples et qui présentent
|
Ce sont des librairies relativement simples et qui présentent
|
||||||
l'immense avantage d'offrir des mécanismes de validation et de sérialisation
|
l'immense avantage d'offrir des mécanismes de validation et de sérialisation
|
||||||
@@ -48,9 +49,8 @@ Notre API offre deux moyens d'authentification :
|
|||||||
- par clef d'API
|
- par clef d'API
|
||||||
|
|
||||||
La plus grande partie des routes de l'API utilisent la méthode par cookie de session.
|
La plus grande partie des routes de l'API utilisent la méthode par cookie de session.
|
||||||
Cette dernière est donc activée par défaut.
|
|
||||||
|
|
||||||
Pour changer la méthode d'authentification,
|
Pour placer une route d'API derrière l'une de ces méthodes (ou bien les deux),
|
||||||
utilisez l'attribut `auth` et les classes `SessionAuth` et
|
utilisez l'attribut `auth` et les classes `SessionAuth` et
|
||||||
[`ApiKeyAuth`][api.auth.ApiKeyAuth].
|
[`ApiKeyAuth`][api.auth.ApiKeyAuth].
|
||||||
|
|
||||||
@@ -60,17 +60,13 @@ utilisez l'attribut `auth` et les classes `SessionAuth` et
|
|||||||
@api_controller("/foo")
|
@api_controller("/foo")
|
||||||
class FooController(ControllerBase):
|
class FooController(ControllerBase):
|
||||||
# Cette route sera accessible uniquement avec l'authentification
|
# Cette route sera accessible uniquement avec l'authentification
|
||||||
# par clef d'API
|
# par cookie de session
|
||||||
@route.get("", auth=[ApiKeyAuth()])
|
@route.get("", auth=[SessionAuth()])
|
||||||
def fetch_foo(self, club_id: int): ...
|
def fetch_foo(self, club_id: int): ...
|
||||||
|
|
||||||
# Celle-ci sera accessible avec les deux méthodes d'authentification
|
# Et celle-ci sera accessible peut importe la méthode d'authentification
|
||||||
@route.get("/bar", auth=[ApiKeyAuth(), SessionAuth()])
|
@route.get("/bar", auth=[SessionAuth(), ApiKeyAuth()])
|
||||||
def fetch_bar(self, club_id: int): ...
|
def fetch_bar(self, club_id: int): ...
|
||||||
|
|
||||||
# Et celle-ci sera accessible aussi aux utilisateurs non-connectés
|
|
||||||
@route.get("/public", auth=None)
|
|
||||||
def fetch_public(self, club_id: int): ...
|
|
||||||
```
|
```
|
||||||
|
|
||||||
### Permissions
|
### Permissions
|
||||||
@@ -83,7 +79,9 @@ par-dessus `django-ninja`, le système de permissions de django
|
|||||||
et notre propre système.
|
et notre propre système.
|
||||||
Cette dernière est documentée [ici](../perms.md).
|
Cette dernière est documentée [ici](../perms.md).
|
||||||
|
|
||||||
### Incompatibilité avec certaines permissions
|
### Limites des clefs d'API
|
||||||
|
|
||||||
|
#### Incompatibilité avec certaines permissions
|
||||||
|
|
||||||
Le système des clefs d'API est apparu très tard dans l'histoire du site
|
Le système des clefs d'API est apparu très tard dans l'histoire du site
|
||||||
(en P25, 10 ans après le début du développement).
|
(en P25, 10 ans après le début du développement).
|
||||||
@@ -114,33 +112,10 @@ Les principaux points de friction sont :
|
|||||||
- `IsLoggedInCounter`, qui utilise encore un autre système
|
- `IsLoggedInCounter`, qui utilise encore un autre système
|
||||||
d'authentification maison et qui n'est pas fait pour être utilisé en dehors du site.
|
d'authentification maison et qui n'est pas fait pour être utilisé en dehors du site.
|
||||||
|
|
||||||
### CSRF
|
#### Incompatibilité avec les tokens csrf
|
||||||
|
|
||||||
!!!info "A propos du csrf"
|
Le [CSRF (*cross-site request forgery*)](https://fr.wikipedia.org/wiki/Cross-site_request_forgery)
|
||||||
|
est un des multiples facteurs d'attaque sur le web.
|
||||||
Le [CSRF (*cross-site request forgery*)](https://fr.wikipedia.org/wiki/Cross-site_request_forgery)
|
|
||||||
est un vecteur d'attaque sur le web consistant
|
|
||||||
à soumettre des données au serveur à l'insu
|
|
||||||
de l'utilisateur, en profitant de sa session.
|
|
||||||
|
|
||||||
C'est une attaque qui peut se produire lorsque l'utilisateur
|
|
||||||
est authentifié par cookie de session.
|
|
||||||
En effet, les cookies sont joints automatiquement à
|
|
||||||
toutes les requêtes ;
|
|
||||||
en l'absence de protection contre le CSRF,
|
|
||||||
un attaquant parvenant à insérer un formulaire
|
|
||||||
dans la page de l'utilisateur serait en mesure
|
|
||||||
de faire presque n'importe quoi en son nom,
|
|
||||||
et ce sans même que l'utilisateur ni les administrateurs
|
|
||||||
ne s'en rendent compte avant qu'il ne soit largement trop tard !
|
|
||||||
|
|
||||||
Sur le CSRF et les moyens de s'en prémunir, voir :
|
|
||||||
|
|
||||||
- [https://owasp.org/www-community/attacks/csrf]()
|
|
||||||
- [https://security.stackexchange.com/questions/166724/should-i-use-csrf-protection-on-rest-api-endpoints]()
|
|
||||||
- [https://cheatsheetseries.owasp.org/cheatsheets/Cross-Site_Request_Forgery_Prevention_Cheat_Sheet.html]()
|
|
||||||
|
|
||||||
Le CSRF, c'est dangereux.
|
|
||||||
Heureusement, Django vient encore une fois à notre aide,
|
Heureusement, Django vient encore une fois à notre aide,
|
||||||
avec des mécanismes intégrés pour s'en protéger.
|
avec des mécanismes intégrés pour s'en protéger.
|
||||||
Ceux-ci incluent notamment un système de
|
Ceux-ci incluent notamment un système de
|
||||||
@@ -148,39 +123,16 @@ Ceux-ci incluent notamment un système de
|
|||||||
à fournir dans les requêtes POST/PUT/PATCH.
|
à fournir dans les requêtes POST/PUT/PATCH.
|
||||||
|
|
||||||
Ceux-ci sont bien adaptés au cycle requêtes/réponses
|
Ceux-ci sont bien adaptés au cycle requêtes/réponses
|
||||||
typiques de l'expérience utilisateur sur un navigateur,
|
typique de l'expérience utilisateur sur un navigateur,
|
||||||
où les requêtes POST sont toujours effectuées après une requête
|
où les requêtes POST sont toujours effectuées après une requête
|
||||||
GET au cours de laquelle on a pu récupérer un token csrf.
|
GET au cours de laquelle on a pu récupérer un token csrf.
|
||||||
Cependant, ils sont également gênants et moins utiles
|
Cependant, le flux des requêtes sur une API est bien différent ;
|
||||||
dans le cadre d'une API REST, étant donné
|
de ce fait, il est à attendre que les requêtes POST envoyées à l'API
|
||||||
que l'authentification cesse d'être implicite :
|
par un client externe n'aient pas de token CSRF et se retrouvent
|
||||||
la clef d'API doit être explicitement jointe aux headers,
|
donc bloquées.
|
||||||
pour chaque requête.
|
|
||||||
|
|
||||||
Pour ces raisons, la vérification CSRF ne prend place
|
Pour ces raisons, l'accès aux requêtes POST/PUT/PATCH de l'API
|
||||||
que pour la vérification de l'authentification
|
par un client externe ne marche pas.
|
||||||
par cookie de session.
|
|
||||||
|
|
||||||
!!!warning "L'ordre est important"
|
|
||||||
|
|
||||||
Si vous écrivez le code suivant, l'authentification par clef d'API
|
|
||||||
ne marchera plus :
|
|
||||||
|
|
||||||
```python
|
|
||||||
@api_controller("/foo")
|
|
||||||
class FooController(ControllerBase):
|
|
||||||
@route.post("/bar", auth=[SessionAuth(), ApiKeyAuth()])
|
|
||||||
def post_bar(self, club_id: int): ...
|
|
||||||
```
|
|
||||||
|
|
||||||
En effet, la vérification du cookie de session intègrera
|
|
||||||
toujours la vérification CSRF.
|
|
||||||
Or, un échec de cette dernière est traduit par django en un code HTTP 403
|
|
||||||
au lieu d'un HTTP 401.
|
|
||||||
L'authentification se retrouve alors court-circuitée,
|
|
||||||
faisant que la vérification de la clef d'API ne sera jamais appelée.
|
|
||||||
|
|
||||||
`SessionAuth` doit donc être déclaré **après** `ApiKeyAuth`.
|
|
||||||
|
|
||||||
## Créer un client et une clef d'API
|
## Créer un client et une clef d'API
|
||||||
|
|
||||||
@@ -219,3 +171,5 @@ qui en a besoin.
|
|||||||
Dites-lui bien de garder cette clef en lieu sûr !
|
Dites-lui bien de garder cette clef en lieu sûr !
|
||||||
Si la clef est perdue, il n'y a pas moyen de la récupérer,
|
Si la clef est perdue, il n'y a pas moyen de la récupérer,
|
||||||
vous devrez en recréer une.
|
vous devrez en recréer une.
|
||||||
|
|
||||||
|
|
||||||
|
|||||||
@@ -157,18 +157,16 @@ que sont VsCode et Sublime Text.
|
|||||||
Si vous avez réussi à terminer l'installation, vous n'avez donc pas de configuration
|
Si vous avez réussi à terminer l'installation, vous n'avez donc pas de configuration
|
||||||
supplémentaire à effectuer.
|
supplémentaire à effectuer.
|
||||||
|
|
||||||
Pour utiliser Biome, placez-vous à la racine du projet et lancez la commande suivante:
|
Pour utiliser Biome, placez-vous à la racine du projet et lancer la commande suivante:
|
||||||
|
|
||||||
```bash
|
```bash
|
||||||
npx @biomejs/biome check # Pour checker le code avec le linter et le formater
|
npx @biomejs/biome check # Pour checker le code avec le linter et le formater
|
||||||
npx @biomejs/biome check --write # Pour appliquer les changements
|
npx @biomejs/biome check --write # Pour appliquer les changemnts
|
||||||
```
|
```
|
||||||
|
|
||||||
Biome va alors faire son travail sur l'ensemble du projet puis vous dire
|
Biome va alors faire son travail sur l'ensemble du projet puis vous dire
|
||||||
si des documents ont été reformatés (si vous avez fait `npx @biomejs/biome format --write`)
|
si des documents ont été reformatés (si vous avez fait `npx @biomejs/biome format --write`)
|
||||||
ou bien s'il y a des erreurs à réparer
|
ou bien s'il y a des erreurs à réparer (si vous avez faire `npx @biomejs/biome lint`) ou les deux (si vous avez fait `npx @biomejs/biome check --write`).
|
||||||
(si vous avez fait `npx @biomejs/biome lint`)
|
|
||||||
ou les deux (si vous avez fait `npx @biomejs/biome check --write`).
|
|
||||||
|
|
||||||
Appeler Biome en ligne de commandes avant de pousser votre code sur Github
|
Appeler Biome en ligne de commandes avant de pousser votre code sur Github
|
||||||
est une technique qui marche très bien.
|
est une technique qui marche très bien.
|
||||||
|
|||||||
@@ -30,7 +30,7 @@ opérations, telles que la validation de formulaire.
|
|||||||
En effet, valider un formulaire demande beaucoup
|
En effet, valider un formulaire demande beaucoup
|
||||||
de travail de nettoyage des données et d'affichage
|
de travail de nettoyage des données et d'affichage
|
||||||
des messages d'erreur appropriés.
|
des messages d'erreur appropriés.
|
||||||
Or, tout ce travail existe déjà dans Django.
|
Or, tout ce travail existe déjà dans django.
|
||||||
|
|
||||||
On veut donc, dans ces cas-là, ne pas demander
|
On veut donc, dans ces cas-là, ne pas demander
|
||||||
toute une page HTML au serveur, mais uniquement
|
toute une page HTML au serveur, mais uniquement
|
||||||
@@ -84,7 +84,7 @@ Grâce à ça, on peut écrire des vues qui
|
|||||||
fonctionnent dans les deux contextes.
|
fonctionnent dans les deux contextes.
|
||||||
|
|
||||||
Par exemple, supposons que nous avons
|
Par exemple, supposons que nous avons
|
||||||
une `UpdateView` très simple, contenant
|
une `EditView` très simple, contenant
|
||||||
uniquement un formulaire.
|
uniquement un formulaire.
|
||||||
On peut écrire la vue et le template de la manière
|
On peut écrire la vue et le template de la manière
|
||||||
suivante :
|
suivante :
|
||||||
@@ -94,10 +94,8 @@ suivante :
|
|||||||
```python
|
```python
|
||||||
from django.views.generic import UpdateView
|
from django.views.generic import UpdateView
|
||||||
|
|
||||||
from core.views import AllowFragment
|
|
||||||
|
|
||||||
|
class FooUpdateView(UpdateView):
|
||||||
class FooUpdateView(AllowFragment, UpdateView):
|
|
||||||
model = Foo
|
model = Foo
|
||||||
fields = ["foo", "bar"]
|
fields = ["foo", "bar"]
|
||||||
pk_url_kwarg = "foo_id"
|
pk_url_kwarg = "foo_id"
|
||||||
@@ -134,7 +132,7 @@ Dans ces situations, pouvoir décomposer une vue
|
|||||||
en plusieurs vues de fragment permet de ne plus
|
en plusieurs vues de fragment permet de ne plus
|
||||||
raisonner en termes de condition, mais en termes
|
raisonner en termes de condition, mais en termes
|
||||||
de composition : on n'a pas un seul template
|
de composition : on n'a pas un seul template
|
||||||
qui peut changer selon les situations, on a plusieurs
|
qui peut changer les situations, on a plusieurs
|
||||||
templates que l'on injecte dans un template principal.
|
templates que l'on injecte dans un template principal.
|
||||||
|
|
||||||
Supposons, par exemple, que nous n'avons plus un,
|
Supposons, par exemple, que nous n'avons plus un,
|
||||||
@@ -240,10 +238,10 @@ qui se comportera alors comme une vue normale.
|
|||||||
|
|
||||||
#### La méthode `as_fragment`
|
#### La méthode `as_fragment`
|
||||||
|
|
||||||
Il est à noter que l'instanciation d'un fragment
|
Il est à noter que l'instantiation d'un fragment
|
||||||
se fait en deux étapes :
|
se fait en deux étapes :
|
||||||
|
|
||||||
- on commence par instancier la vue en tant que renderer.
|
- on commence par instantier la vue en tant que renderer.
|
||||||
- on appelle le renderer en lui-même
|
- on appelle le renderer en lui-même
|
||||||
|
|
||||||
Ce qui donne la syntaxe `Fragment.as_fragment()()`.
|
Ce qui donne la syntaxe `Fragment.as_fragment()()`.
|
||||||
|
|||||||
@@ -76,7 +76,7 @@ cd /mnt/<la_lettre_du_disque>/vos/fichiers/comme/dhab
|
|||||||
```bash
|
```bash
|
||||||
sudo pacman -Syu # on s'assure que les dépôts et le système sont à jour
|
sudo pacman -Syu # on s'assure que les dépôts et le système sont à jour
|
||||||
|
|
||||||
sudo pacman -S uv gcc git gettext pkgconf npm valkey
|
sudo pacman -S uv gcc git gettext pkgconf npm redis
|
||||||
```
|
```
|
||||||
|
|
||||||
=== "macOS"
|
=== "macOS"
|
||||||
|
|||||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user