Add ownership checks and share functionality to story editor
This commit is contained in:
@@ -10,19 +10,23 @@ export async function GET(
|
||||
{ params }: { params: Promise<{ storySlug: string }> }
|
||||
) {
|
||||
try {
|
||||
const { userId } = await auth();
|
||||
const authResult = await auth();
|
||||
const { userId } = authResult;
|
||||
|
||||
if (!userId) {
|
||||
return NextResponse.json(
|
||||
{ error: "Authentication required" },
|
||||
{ status: 401 }
|
||||
);
|
||||
}
|
||||
console.log('API: auth result:', authResult);
|
||||
console.log('API: userId type:', typeof userId, 'value:', userId);
|
||||
console.log('API: timestamp:', new Date().toISOString());
|
||||
|
||||
const { storySlug: slug } = await params;
|
||||
|
||||
// Special case: if slug is "all", return user's stories for debugging
|
||||
if (slug === "all") {
|
||||
if (!userId) {
|
||||
return NextResponse.json(
|
||||
{ error: "Authentication required for this endpoint" },
|
||||
{ status: 401 }
|
||||
);
|
||||
}
|
||||
const userStories = await db.select().from(stories).where(eq(stories.userId, userId));
|
||||
return NextResponse.json({
|
||||
message: "User stories",
|
||||
@@ -47,14 +51,14 @@ export async function GET(
|
||||
}
|
||||
|
||||
// Check if the story belongs to the authenticated user
|
||||
if (result.story.userId !== userId) {
|
||||
return NextResponse.json(
|
||||
{ error: "Access denied" },
|
||||
{ status: 403 }
|
||||
);
|
||||
}
|
||||
const isOwner = userId ? result.story.userId === userId : false;
|
||||
|
||||
return NextResponse.json(result);
|
||||
// Return the story data with ownership information
|
||||
const responseData = {
|
||||
...result,
|
||||
isOwner,
|
||||
};
|
||||
return NextResponse.json(responseData);
|
||||
} catch (error) {
|
||||
console.error("Error fetching story:", error);
|
||||
return NextResponse.json(
|
||||
|
||||
@@ -28,6 +28,7 @@ interface StoryData {
|
||||
description?: string | null;
|
||||
style: string;
|
||||
userId?: string | null;
|
||||
isOwner?: boolean;
|
||||
}
|
||||
|
||||
export default function StoryEditorPage() {
|
||||
@@ -35,6 +36,7 @@ export default function StoryEditorPage() {
|
||||
const slug = params.storySlug as string;
|
||||
|
||||
const [story, setStory] = useState<StoryData | null>(null);
|
||||
const [isOwner, setIsOwner] = useState<boolean>(false);
|
||||
const [pages, setPages] = useState<PageData[]>([]);
|
||||
const [currentPage, setCurrentPage] = useState(0);
|
||||
const [showApiModal, setShowApiModal] = useState(false);
|
||||
@@ -57,9 +59,18 @@ export default function StoryEditorPage() {
|
||||
}
|
||||
|
||||
const result = await response.json();
|
||||
const { story: storyData, pages: pagesData } = result;
|
||||
console.log("Editor: full API response:", result);
|
||||
|
||||
const {
|
||||
story: storyData,
|
||||
pages: pagesData,
|
||||
isOwner: ownerStatus,
|
||||
} = result;
|
||||
|
||||
console.log("Editor: received story data:", storyData);
|
||||
|
||||
setStory(storyData);
|
||||
setIsOwner(ownerStatus ?? false); // Default to false if undefined
|
||||
setPages(
|
||||
pagesData.map((page: any) => ({
|
||||
id: page.pageNumber,
|
||||
@@ -157,9 +168,7 @@ export default function StoryEditorPage() {
|
||||
// Update the current page with the new image
|
||||
setPages((prevPages) =>
|
||||
prevPages.map((page, index) =>
|
||||
index === currentPage
|
||||
? { ...page, image: result.imageUrl }
|
||||
: page
|
||||
index === currentPage ? { ...page, image: result.imageUrl } : page
|
||||
)
|
||||
);
|
||||
|
||||
@@ -172,7 +181,8 @@ export default function StoryEditorPage() {
|
||||
console.error("Error redrawing page:", error);
|
||||
toast({
|
||||
title: "Failed to redraw page",
|
||||
description: error instanceof Error ? error.message : "Failed to redraw page",
|
||||
description:
|
||||
error instanceof Error ? error.message : "Failed to redraw page",
|
||||
variant: "destructive",
|
||||
duration: 4000,
|
||||
});
|
||||
@@ -247,9 +257,7 @@ export default function StoryEditorPage() {
|
||||
toast({
|
||||
title: "Failed to generate page",
|
||||
description:
|
||||
error instanceof Error
|
||||
? error.message
|
||||
: "Failed to generate page",
|
||||
error instanceof Error ? error.message : "Failed to generate page",
|
||||
variant: "destructive",
|
||||
duration: 4000,
|
||||
});
|
||||
@@ -274,7 +282,11 @@ export default function StoryEditorPage() {
|
||||
|
||||
return (
|
||||
<div className="h-screen flex flex-col bg-background">
|
||||
<EditorToolbar title={story.title} onContinueStory={handleAddPage} />
|
||||
<EditorToolbar
|
||||
title={story.title}
|
||||
onContinueStory={handleAddPage}
|
||||
isOwner={isOwner}
|
||||
/>
|
||||
|
||||
<div className="flex-1 flex overflow-hidden">
|
||||
<PageSidebar
|
||||
@@ -284,11 +296,13 @@ export default function StoryEditorPage() {
|
||||
onAddPage={handleAddPage}
|
||||
loadingPageId={loadingPageId}
|
||||
onApiKeyClick={handleApiKeyClick}
|
||||
isOwner={isOwner}
|
||||
/>
|
||||
<ComicCanvas
|
||||
page={pages[currentPage]}
|
||||
pageIndex={currentPage}
|
||||
isLoading={loadingPageId === currentPage}
|
||||
isOwner={isOwner}
|
||||
onInfoClick={() => setShowInfoSheet(true)}
|
||||
onRedrawClick={handleRedrawPage}
|
||||
onNextPage={() =>
|
||||
|
||||
Reference in New Issue
Block a user