2022-05-02 17:19:37 +02:00
|
|
|
package server
|
|
|
|
|
|
|
|
import (
|
|
|
|
"fmt"
|
|
|
|
"net/http"
|
|
|
|
|
2022-05-14 16:52:08 +02:00
|
|
|
"codeberg.org/u1f320/pronouns.cc/backend/log"
|
2022-05-02 17:19:37 +02:00
|
|
|
"github.com/go-chi/render"
|
|
|
|
)
|
|
|
|
|
|
|
|
// WrapHandler wraps a modified http.HandlerFunc into a stdlib-compatible one.
|
|
|
|
// The inner HandlerFunc additionally returns an error.
|
|
|
|
func WrapHandler(hn func(w http.ResponseWriter, r *http.Request) error) http.HandlerFunc {
|
|
|
|
return func(w http.ResponseWriter, r *http.Request) {
|
|
|
|
err := hn(w, r)
|
|
|
|
if err != nil {
|
|
|
|
// if the function returned an API error, just render that verbatim
|
|
|
|
// we can assume that it also logged the error (if that was needed)
|
|
|
|
if apiErr, ok := err.(APIError); ok {
|
|
|
|
apiErr.prepare()
|
|
|
|
|
|
|
|
render.Status(r, apiErr.Status)
|
|
|
|
render.JSON(w, r, apiErr)
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
// otherwise, we log the error and return an internal server error message
|
|
|
|
log.Errorf("error in http handler: %v", err)
|
|
|
|
|
|
|
|
apiErr := APIError{Code: ErrInternalServerError}
|
|
|
|
apiErr.prepare()
|
|
|
|
|
|
|
|
render.Status(r, apiErr.Status)
|
|
|
|
render.JSON(w, r, apiErr)
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
// APIError is an object returned by the API when an error occurs.
|
|
|
|
// It implements the error interface and can be returned by handlers.
|
|
|
|
type APIError struct {
|
|
|
|
Code int `json:"code"`
|
|
|
|
Message string `json:"message,omitempty"`
|
2022-05-17 22:35:26 +02:00
|
|
|
Details string `json:"details,omitempty"`
|
2022-05-02 17:19:37 +02:00
|
|
|
|
2022-05-26 00:41:06 +02:00
|
|
|
RatelimitReset *int `json:"ratelimit_reset,omitempty"`
|
|
|
|
|
2022-05-17 22:35:26 +02:00
|
|
|
// Status is set as the HTTP status code.
|
2022-05-02 17:19:37 +02:00
|
|
|
Status int `json:"-"`
|
|
|
|
}
|
|
|
|
|
|
|
|
func (e APIError) Error() string {
|
2023-03-11 16:49:07 +01:00
|
|
|
if e.Message == "" {
|
|
|
|
e.Message = errCodeMessages[e.Code]
|
|
|
|
}
|
|
|
|
|
|
|
|
if e.Details != "" {
|
|
|
|
return fmt.Sprintf("%s (code: %d) (%s)", e.Message, e.Code, e.Details)
|
|
|
|
}
|
|
|
|
|
2022-05-02 17:19:37 +02:00
|
|
|
return fmt.Sprintf("%s (code: %d)", e.Message, e.Code)
|
|
|
|
}
|
|
|
|
|
|
|
|
func (e *APIError) prepare() {
|
|
|
|
if e.Status == 0 {
|
|
|
|
e.Status = errCodeStatuses[e.Code]
|
|
|
|
}
|
|
|
|
|
|
|
|
if e.Message == "" {
|
|
|
|
e.Message = errCodeMessages[e.Code]
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
// Error code constants
|
|
|
|
const (
|
2022-05-04 16:27:16 +02:00
|
|
|
ErrBadRequest = 400
|
|
|
|
ErrForbidden = 403
|
2022-05-17 22:35:26 +02:00
|
|
|
ErrNotFound = 404
|
|
|
|
ErrMethodNotAllowed = 405
|
2022-05-26 00:41:06 +02:00
|
|
|
ErrTooManyRequests = 429
|
2022-05-02 17:19:37 +02:00
|
|
|
ErrInternalServerError = 500 // catch-all code for unknown errors
|
2022-05-04 16:27:16 +02:00
|
|
|
|
|
|
|
// Login/authorize error codes
|
2022-11-18 15:27:52 +01:00
|
|
|
ErrInvalidState = 1001
|
|
|
|
ErrInvalidOAuthCode = 1002
|
|
|
|
ErrInvalidToken = 1003 // a token was supplied, but it is invalid
|
|
|
|
ErrInviteRequired = 1004
|
|
|
|
ErrInvalidTicket = 1005 // invalid signup ticket
|
|
|
|
ErrInvalidUsername = 1006 // invalid username (when signing up)
|
|
|
|
ErrUsernameTaken = 1007 // username taken (when signing up)
|
|
|
|
ErrInvitesDisabled = 1008 // invites are disabled (unneeded)
|
|
|
|
ErrInviteLimitReached = 1009 // invite limit reached (when creating invites)
|
|
|
|
ErrInviteAlreadyUsed = 1010 // invite already used (when signing up)
|
2023-03-08 10:32:18 +01:00
|
|
|
ErrDeletionPending = 1011 // own user deletion pending, returned with undo code
|
2022-05-04 16:27:16 +02:00
|
|
|
|
|
|
|
// User-related error codes
|
|
|
|
ErrUserNotFound = 2001
|
2022-09-20 13:02:48 +02:00
|
|
|
|
|
|
|
// Member-related error codes
|
|
|
|
ErrMemberNotFound = 3001
|
|
|
|
ErrMemberLimitReached = 3002
|
2022-11-20 21:09:29 +01:00
|
|
|
ErrMemberNameInUse = 3003
|
2022-11-21 17:01:51 +01:00
|
|
|
ErrNotOwnMember = 3004
|
2022-09-20 13:02:48 +02:00
|
|
|
|
|
|
|
// General request error codes
|
2023-03-08 10:32:18 +01:00
|
|
|
ErrRequestTooBig = 4001
|
|
|
|
ErrMissingPermissions = 4002
|
2022-05-02 17:19:37 +02:00
|
|
|
)
|
|
|
|
|
|
|
|
var errCodeMessages = map[int]string{
|
2022-05-04 16:27:16 +02:00
|
|
|
ErrBadRequest: "Bad request",
|
|
|
|
ErrForbidden: "Forbidden",
|
2022-05-02 17:19:37 +02:00
|
|
|
ErrInternalServerError: "Internal server error",
|
2022-05-17 22:35:26 +02:00
|
|
|
ErrNotFound: "Not found",
|
2022-05-26 00:41:06 +02:00
|
|
|
ErrTooManyRequests: "Rate limit reached",
|
2022-05-17 22:35:26 +02:00
|
|
|
ErrMethodNotAllowed: "Method not allowed",
|
2022-05-04 16:27:16 +02:00
|
|
|
|
2022-11-18 15:27:52 +01:00
|
|
|
ErrInvalidState: "Invalid OAuth state",
|
|
|
|
ErrInvalidOAuthCode: "Invalid OAuth code",
|
|
|
|
ErrInvalidToken: "Supplied token was invalid",
|
|
|
|
ErrInviteRequired: "A valid invite code is required",
|
|
|
|
ErrInvalidTicket: "Invalid signup ticket",
|
|
|
|
ErrInvalidUsername: "Invalid username",
|
|
|
|
ErrUsernameTaken: "Username is already taken",
|
|
|
|
ErrInvitesDisabled: "Invites are disabled",
|
|
|
|
ErrInviteLimitReached: "Your account has reached the invite limit",
|
|
|
|
ErrInviteAlreadyUsed: "That invite code has already been used",
|
2023-03-08 10:32:18 +01:00
|
|
|
ErrDeletionPending: "Your account is pending deletion",
|
2022-05-04 16:27:16 +02:00
|
|
|
|
|
|
|
ErrUserNotFound: "User not found",
|
2022-09-20 13:02:48 +02:00
|
|
|
|
|
|
|
ErrMemberNotFound: "Member not found",
|
|
|
|
ErrMemberLimitReached: "Member limit reached",
|
2022-11-20 21:09:29 +01:00
|
|
|
ErrMemberNameInUse: "Member name already in use",
|
2022-11-21 17:01:51 +01:00
|
|
|
ErrNotOwnMember: "Not your member",
|
2022-09-20 13:02:48 +02:00
|
|
|
|
2023-03-08 10:32:18 +01:00
|
|
|
ErrRequestTooBig: "Request too big (max 2 MB)",
|
|
|
|
ErrMissingPermissions: "Your account or current token is missing required permissions for this action",
|
2022-05-02 17:19:37 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
var errCodeStatuses = map[int]int{
|
2022-05-04 16:27:16 +02:00
|
|
|
ErrBadRequest: http.StatusBadRequest,
|
|
|
|
ErrForbidden: http.StatusForbidden,
|
2022-05-02 17:19:37 +02:00
|
|
|
ErrInternalServerError: http.StatusInternalServerError,
|
2022-05-17 22:35:26 +02:00
|
|
|
ErrNotFound: http.StatusNotFound,
|
2022-05-26 00:41:06 +02:00
|
|
|
ErrTooManyRequests: http.StatusTooManyRequests,
|
2022-05-17 22:35:26 +02:00
|
|
|
ErrMethodNotAllowed: http.StatusMethodNotAllowed,
|
2022-05-04 16:27:16 +02:00
|
|
|
|
2022-11-18 15:27:52 +01:00
|
|
|
ErrInvalidState: http.StatusBadRequest,
|
|
|
|
ErrInvalidOAuthCode: http.StatusForbidden,
|
|
|
|
ErrInvalidToken: http.StatusUnauthorized,
|
|
|
|
ErrInviteRequired: http.StatusBadRequest,
|
|
|
|
ErrInvalidTicket: http.StatusBadRequest,
|
|
|
|
ErrInvalidUsername: http.StatusBadRequest,
|
|
|
|
ErrUsernameTaken: http.StatusBadRequest,
|
|
|
|
ErrInvitesDisabled: http.StatusForbidden,
|
|
|
|
ErrInviteLimitReached: http.StatusForbidden,
|
|
|
|
ErrInviteAlreadyUsed: http.StatusBadRequest,
|
2023-03-08 10:32:18 +01:00
|
|
|
ErrDeletionPending: http.StatusBadRequest,
|
2022-05-04 16:27:16 +02:00
|
|
|
|
|
|
|
ErrUserNotFound: http.StatusNotFound,
|
2022-09-20 13:02:48 +02:00
|
|
|
|
|
|
|
ErrMemberNotFound: http.StatusNotFound,
|
|
|
|
ErrMemberLimitReached: http.StatusBadRequest,
|
2022-11-20 21:09:29 +01:00
|
|
|
ErrMemberNameInUse: http.StatusBadRequest,
|
2022-11-21 17:01:51 +01:00
|
|
|
ErrNotOwnMember: http.StatusForbidden,
|
2022-09-20 13:02:48 +02:00
|
|
|
|
2023-03-08 10:32:18 +01:00
|
|
|
ErrRequestTooBig: http.StatusBadRequest,
|
|
|
|
ErrMissingPermissions: http.StatusForbidden,
|
2022-05-02 17:19:37 +02:00
|
|
|
}
|