|
| 1 | +from app import db |
| 2 | +from app.api import bp |
| 3 | +from app.api.errors import bad_request |
| 4 | +from app.api.auth import token_auth |
| 5 | +from flask import jsonify, request, url_for |
| 6 | +from app.models import User |
| 7 | + |
| 8 | +@bp.route('/users/<int:id>', methods=['GET']) |
| 9 | +@token_auth.login_required |
| 10 | +def get_user(id): |
| 11 | + return jsonify(User.query.get_or_404(id).to_dict()) |
| 12 | + |
| 13 | +@bp.route('/users', methods=['GET']) |
| 14 | +@token_auth.login_required |
| 15 | +def get_users(): |
| 16 | + page = request.args.get('page', 1, type=int) |
| 17 | + per_page = min(request.args.get('per_page', 10, type=int), 100) |
| 18 | + data = User.to_collection_dict(User.query, page, per_page, 'api.get_users') |
| 19 | + return jsonify(data) |
| 20 | + |
| 21 | +@bp.route('/users/<int:id>/followers', methods=['GET']) |
| 22 | +@token_auth.login_required |
| 23 | +def get_followers(id): |
| 24 | + user = User.query.get_or_404(id) |
| 25 | + page = request.args.get('page', 1, type=int) |
| 26 | + per_page = min(request.args.get('per_page', 10, type=int), 100) |
| 27 | + data = User.to_collection_dict(user.followers, page, per_page, |
| 28 | + 'api.get_followers', id=id) |
| 29 | + return jsonify(data) |
| 30 | + |
| 31 | +@bp.route('/users/<int:id>/followed', methods=['GET']) |
| 32 | +@token_auth.login_required |
| 33 | +def get_followed(id): |
| 34 | + user = User.query.get_or_404(id) |
| 35 | + page = request.args.get('page', 1, type=int) |
| 36 | + per_page = min(request.args.get('per_page', 10, type=int), 100) |
| 37 | + data = User.to_collection_dict(user.followed, page, per_page, |
| 38 | + 'api.get_followed', id=id) |
| 39 | + return jsonify(data) |
| 40 | + |
| 41 | +@bp.route('/users', methods=['POST']) |
| 42 | +def create_user(): |
| 43 | + data = request.get_json() or {} |
| 44 | + if 'username' not in data or 'email' not in data or 'password' not in data: |
| 45 | + return bad_request('must include username, email and password fields') |
| 46 | + if User.query.filter_by(username=data['username']).first(): |
| 47 | + return bad_request('please use a different username') |
| 48 | + if User.query.filter_by(email=data['email']).first(): |
| 49 | + return bad_request('please use a different email address') |
| 50 | + user = User() |
| 51 | + user.from_dict(data, new_user=True) |
| 52 | + db.session.add(user) |
| 53 | + db.session.commit() |
| 54 | + response = jsonify(user.to_dict()) |
| 55 | + response.status_code = 201 |
| 56 | + response.headers['Location'] = url_for('api.get_user', id=user.id) |
| 57 | + return response |
| 58 | + |
| 59 | +@bp.route('/users/<int:id>', methods=['PUT']) |
| 60 | +@token_auth.login_required |
| 61 | +def update_user(id): |
| 62 | + user = User.query.get_or_404(id) |
| 63 | + data = request.get_json() or {} |
| 64 | + if 'username' in data and data['username'] != user.username and \ |
| 65 | + User.query.filter_by(username=data['username']).first(): |
| 66 | + return bad_request('please use a different username') |
| 67 | + if 'email' in data and data['email'] != user.email and \ |
| 68 | + User.query.filter_by(email=data['email']).first(): |
| 69 | + return bad_request('please use a different email address') |
| 70 | + user.from_dict(data, new_user=False) |
| 71 | + db.session.commit() |
| 72 | + return jsonify(user.to_dict()) |
0 commit comments