38499-vm/backend/src/index.js
2026-02-17 01:22:15 +00:00

177 lines
4.5 KiB
JavaScript

const express = require('express');
const cors = require('cors');
const app = express();
const passport = require('passport');
const path = require('path');
const fs = require('fs');
const bodyParser = require('body-parser');
const db = require('./db/models');
const config = require('./config');
const swaggerUI = require('swagger-ui-express');
const swaggerJsDoc = require('swagger-jsdoc');
const authRoutes = require('./routes/auth');
const fileRoutes = require('./routes/file');
const searchRoutes = require('./routes/search');
const sqlRoutes = require('./routes/sql');
const pexelsRoutes = require('./routes/pexels');
const openaiRoutes = require('./routes/openai');
const usersRoutes = require('./routes/users');
const rolesRoutes = require('./routes/roles');
const permissionsRoutes = require('./routes/permissions');
const holiday_calendarsRoutes = require('./routes/holiday_calendars');
const holidaysRoutes = require('./routes/holidays');
const time_off_requestsRoutes = require('./routes/time_off_requests');
const pto_journal_entriesRoutes = require('./routes/pto_journal_entries');
const yearly_leave_summariesRoutes = require('./routes/yearly_leave_summaries');
const office_calendar_eventsRoutes = require('./routes/office_calendar_events');
const approval_tasksRoutes = require('./routes/approval_tasks');
const appSettingsRoutes = require('./routes/app_settings');
const checkLockout = require('./middlewares/lockout');
const getBaseUrl = (url) => {
if (!url) return '';
return url.endsWith('/api') ? url.slice(0, -4) : url;
};
const options = {
definition: {
openapi: "3.0.0",
info: {
version: "1.0.0",
title: "ET Vertical PTO",
description: "ET Vertical PTO Online REST API for Testing and Prototyping application. You can perform all major operations with your entities - create, delete and etc.",
},
servers: [
{
url: getBaseUrl(process.env.NEXT_PUBLIC_BACK_API) || config.swaggerUrl,
description: "Development server",
}
],
components: {
securitySchemes: {
bearerAuth: {
type: 'http',
scheme: 'bearer',
bearerFormat: 'JWT',
}
},
responses: {
UnauthorizedError: {
description: "Access token is missing or invalid"
}
}
},
security: [{
bearerAuth: []
}]
},
apis: ["./src/routes/*.js"],
};
const specs = swaggerJsDoc(options);
app.use('/api-docs', function (req, res, next) {
swaggerUI.host = getBaseUrl(process.env.NEXT_PUBLIC_BACK_API) || req.get('host');
next()
}, swaggerUI.serve, swaggerUI.setup(specs))
app.use(cors({origin: true}));
require('./auth/auth');
app.use(bodyParser.json());
// Auth middlewares
const auth = passport.authenticate('jwt', { session: false });
const authAndLockout = [auth, checkLockout];
app.use('/api/auth', authRoutes);
app.use('/api/file', fileRoutes);
app.use('/api/pexels', pexelsRoutes);
app.enable('trust proxy');
app.use('/api/users', authAndLockout, usersRoutes);
app.use('/api/roles', authAndLockout, rolesRoutes);
app.use('/api/permissions', authAndLockout, permissionsRoutes);
app.use('/api/holiday_calendars', authAndLockout, holiday_calendarsRoutes);
app.use('/api/holidays', authAndLockout, holidaysRoutes);
app.use('/api/time_off_requests', authAndLockout, time_off_requestsRoutes);
app.use('/api/pto_journal_entries', authAndLockout, pto_journal_entriesRoutes);
app.use('/api/yearly_leave_summaries', authAndLockout, yearly_leave_summariesRoutes);
app.use('/api/office_calendar_events', authAndLockout, office_calendar_eventsRoutes);
app.use('/api/approval_tasks', authAndLockout, approval_tasksRoutes);
// App Settings (Admin only basically, but handled in route).
// IMPORTANT: Do NOT apply lockout middleware here, otherwise admin can't unlock!
app.use('/api/app_settings', auth, appSettingsRoutes);
app.use(
'/api/openai',
authAndLockout,
openaiRoutes,
);
app.use(
'/api/ai',
authAndLockout,
openaiRoutes,
);
app.use(
'/api/search',
authAndLockout,
searchRoutes);
app.use(
'/api/sql',
authAndLockout,
sqlRoutes);
const publicDir = path.join(
__dirname,
'../public',
);
if (fs.existsSync(publicDir)) {
app.use('/', express.static(publicDir));
app.get('*', function(request, response) {
response.sendFile(
path.resolve(publicDir, 'index.html'),
);
});
}
const PORT = process.env.NODE_ENV === 'dev_stage' ? 3000 : 8080;
db.sequelize.sync().then(function () {
app.listen(PORT, () => {
console.log(`Listening on port ${PORT}`);
});
});
module.exports = app;