]>
Commit | Line | Data |
---|---|---|
41fb13c3 | 1 | import express from 'express' |
444c0a0e C |
2 | import { body } from 'express-validator' |
3 | import { isBulkRemoveCommentsOfScopeValid } from '@server/helpers/custom-validators/bulk' | |
4c7e60bc | 4 | import { HttpStatusCode, UserRight } from '@shared/models' |
444c0a0e C |
5 | import { BulkRemoveCommentsOfBody } from '@shared/models/bulk/bulk-remove-comments-of-body.model' |
6 | import { logger } from '../../helpers/logger' | |
10363c74 | 7 | import { areValidationErrors, doesAccountNameWithHostExist } from './shared' |
444c0a0e C |
8 | |
9 | const bulkRemoveCommentsOfValidator = [ | |
396f6f01 C |
10 | body('accountName') |
11 | .exists(), | |
444c0a0e | 12 | body('scope') |
396f6f01 | 13 | .custom(isBulkRemoveCommentsOfScopeValid), |
444c0a0e C |
14 | |
15 | async (req: express.Request, res: express.Response, next: express.NextFunction) => { | |
16 | logger.debug('Checking bulkRemoveCommentsOfValidator parameters', { parameters: req.body }) | |
17 | ||
18 | if (areValidationErrors(req, res)) return | |
19 | if (!await doesAccountNameWithHostExist(req.body.accountName, res)) return | |
20 | ||
21 | const user = res.locals.oauth.token.User | |
22 | const body = req.body as BulkRemoveCommentsOfBody | |
23 | ||
24 | if (body.scope === 'instance' && user.hasRight(UserRight.REMOVE_ANY_VIDEO_COMMENT) !== true) { | |
76148b27 RK |
25 | return res.fail({ |
26 | status: HttpStatusCode.FORBIDDEN_403, | |
27 | message: 'User cannot remove any comments of this instance.' | |
444c0a0e C |
28 | }) |
29 | } | |
30 | ||
31 | return next() | |
32 | } | |
33 | ] | |
34 | ||
35 | // --------------------------------------------------------------------------- | |
36 | ||
37 | export { | |
38 | bulkRemoveCommentsOfValidator | |
39 | } | |
40 | ||
41 | // --------------------------------------------------------------------------- |