-
Notifications
You must be signed in to change notification settings - Fork 1
Expand file tree
/
Copy pathregister+api.ts
More file actions
72 lines (63 loc) · 1.83 KB
/
register+api.ts
File metadata and controls
72 lines (63 loc) · 1.83 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
import crypto from 'node:crypto';
import bcrypt from 'bcryptjs';
import { createSessionInsecure } from '../../../database/sessions';
import {
createUserInsecure,
getUserInsecure,
} from '../../../database/users';
import { ExpoApiResponse } from '../../../ExpoApiResponse';
import {
type User,
userSchemaRegister,
} from '../../../migrations/00002-createTableUsers';
import { createSerializedSessionTokenCookie } from '../../../util/cookies';
import { getCombinedErrorMessage } from '../../../util/validation';
export type RegisterResponseBodyPost =
| {
user: User;
}
| {
error: string;
};
export async function POST(
request: Request,
): Promise<ExpoApiResponse<RegisterResponseBodyPost>> {
const requestBody = await request.json();
const result = userSchemaRegister.safeParse(requestBody);
if (!result.success) {
return ExpoApiResponse.json(
{ error: getCombinedErrorMessage(result.error.issues) },
{ status: 400 },
);
}
if (await getUserInsecure(result.data.user.username)) {
return ExpoApiResponse.json(
{ error: 'Username already exists' },
{ status: 400 },
);
}
const passwordHash = await bcrypt.hash(result.data.user.password, 12);
const user = await createUserInsecure(result.data.user.username, passwordHash);
if (!user) {
return ExpoApiResponse.json(
{ error: 'Creating user failed' },
{ status: 500 },
);
}
const sessionToken = crypto.randomBytes(100).toString('base64');
const session = await createSessionInsecure(sessionToken, user.id);
if (!session) {
return ExpoApiResponse.json(
{ error: 'Session creation failed' },
{ status: 500 },
);
}
return ExpoApiResponse.json(
{ user },
{
headers: {
'Set-Cookie': createSerializedSessionTokenCookie(session.token),
},
},
);
}