Use the authentication method system for the demo login and the generated accounts. This makes it possible to toggle it off on production systems as these shouldn't have it enabled at all.
71 lines
1.8 KiB
TypeScript
71 lines
1.8 KiB
TypeScript
/*
|
|
SPDX-FileCopyrightText: © 2025 Hornwitser <code@hornwitser.no>
|
|
SPDX-License-Identifier: AGPL-3.0-or-later
|
|
*/
|
|
import { appendResponseHeader } from "h3";
|
|
import type { H3Event } from "h3";
|
|
import type { ApiAccount, ApiSession } from "~/shared/types/api";
|
|
|
|
const fetchSessionWithCookie = async (event?: H3Event) => {
|
|
// Client side
|
|
if (!event) {
|
|
return $fetch("/api/auth/session");
|
|
}
|
|
|
|
// Server side
|
|
const cookie = useRequestHeader("cookie");
|
|
const res = await $fetch.raw("/api/auth/session", {
|
|
headers: cookie ? { cookie } : undefined
|
|
});
|
|
for (const cookie of res.headers.getSetCookie()) {
|
|
appendResponseHeader(event, "set-cookie", cookie);
|
|
}
|
|
return res._data;
|
|
}
|
|
|
|
export const useSessionStore = defineStore("session", () => {
|
|
const state = {
|
|
account: ref<ApiAccount>(),
|
|
authenticationProvider: ref<string>(),
|
|
authenticationName: ref<string>(),
|
|
id: ref<number>(),
|
|
push: ref<boolean>(false),
|
|
};
|
|
|
|
const actions = {
|
|
async fetch(event?: H3Event) {
|
|
const session = await fetchSessionWithCookie(event)
|
|
actions.update(session);
|
|
},
|
|
update(session?: ApiSession) {
|
|
state.account.value = session?.account;
|
|
state.authenticationProvider.value = session?.authenticationProvider;
|
|
state.authenticationName.value = session?.authenticationName;
|
|
state.id.value = session?.id;
|
|
state.push.value = session?.push ?? false;
|
|
},
|
|
async logOut() {
|
|
try {
|
|
await $fetch.raw("/api/auth/session", {
|
|
method: "DELETE",
|
|
});
|
|
await actions.fetch();
|
|
|
|
} catch (err: any) {
|
|
alert(`Log out failed: ${err.statusCode} ${err.statusMessage}`);
|
|
}
|
|
},
|
|
};
|
|
|
|
appEventSource?.addEventListener("update", (event) => {
|
|
if (event.data.type !== "connected") {
|
|
return;
|
|
}
|
|
actions.update(event.data.session);
|
|
});
|
|
|
|
return {
|
|
...state,
|
|
...actions,
|
|
};
|
|
});
|