Files

103 lines
2.6 KiB
JavaScript
Raw Permalink Normal View History

2025-09-02 21:43:00 +10:00
import errs from "../lib/error.js";
import { castJsonIfNeed } from "../lib/helpers.js";
import auditLogModel from "../models/audit-log.js";
2020-02-19 15:55:06 +11:00
const internalAuditLog = {
/**
* All logs
*
* @param {Access} access
* @param {Array} [expand]
2025-09-10 23:59:00 +10:00
* @param {String} [searchQuery]
2020-02-19 15:55:06 +11:00
* @returns {Promise}
*/
2025-09-10 23:59:00 +10:00
getAll: async (access, expand, searchQuery) => {
await access.can("auditlog:list");
2020-02-19 15:55:06 +11:00
2025-09-10 23:59:00 +10:00
const query = auditLogModel
.query()
.orderBy("created_on", "DESC")
.orderBy("id", "DESC")
.limit(100)
.allowGraph("[user]");
2020-02-19 15:55:06 +11:00
2025-09-10 23:59:00 +10:00
// Query is used for searching
if (typeof searchQuery === "string" && searchQuery.length > 0) {
query.where(function () {
this.where(castJsonIfNeed("meta"), "like", `%${searchQuery}`);
});
}
2020-02-19 15:55:06 +11:00
2025-09-10 23:59:00 +10:00
if (typeof expand !== "undefined" && expand !== null) {
query.withGraphFetched(`[${expand.join(", ")}]`);
}
return await query;
2020-02-19 15:55:06 +11:00
},
2025-09-14 14:00:00 +10:00
/**
* @param {Access} access
* @param {Object} [data]
* @param {Integer} [data.id] Defaults to the token user
* @param {Array} [data.expand]
* @return {Promise}
*/
get: async (access, data) => {
await access.can("auditlog:list");
const query = auditLogModel
.query()
.andWhere("id", data.id)
.allowGraph("[user]")
.first();
if (typeof data.expand !== "undefined" && data.expand !== null) {
query.withGraphFetched(`[${data.expand.join(", ")}]`);
}
const row = await query;
if (!row?.id) {
throw new errs.ItemNotFoundError(data.id);
}
return row;
},
2020-02-19 15:55:06 +11:00
/**
* This method should not be publicly used, it doesn't check certain things. It will be assumed
* that permission to add to audit log is already considered, however the access token is used for
* default user id determination.
*
* @param {Access} access
* @param {Object} data
* @param {String} data.action
* @param {Number} [data.user_id]
* @param {Number} [data.object_id]
* @param {Number} [data.object_type]
* @param {Object} [data.meta]
* @returns {Promise}
*/
2025-09-10 23:59:00 +10:00
add: async (access, data) => {
if (typeof data.user_id === "undefined" || !data.user_id) {
data.user_id = access.token.getUserId(1);
}
if (typeof data.action === "undefined" || !data.action) {
throw new errs.InternalValidationError("Audit log entry must contain an Action");
}
2020-02-19 15:55:06 +11:00
2025-09-10 23:59:00 +10:00
// Make sure at least 1 of the IDs are set and action
return await auditLogModel.query().insert({
user_id: data.user_id,
action: data.action,
object_type: data.object_type || "",
object_id: data.object_id || 0,
meta: data.meta || {},
2020-02-19 15:55:06 +11:00
});
2025-09-02 21:43:00 +10:00
},
2020-02-19 15:55:06 +11:00
};
2025-09-02 21:43:00 +10:00
export default internalAuditLog;