- Remove .prettierrc (dead config, Biome replaces Prettier) - Rename lighthouserc.json to lighthouserc.cjs with module.exports for ESM compat - Add logger.warn to empty catch blocks in auth, register, site-settings, prisma-cache, redis, security, rate-limit - Unify ActionResult type: action-helper.ts uses 'ok' consistent with safe-action-shared.ts - Add noUnusedLocals + noUnusedParameters to tsconfig + fix 25 pre-existing unused vars - Replace barrel export src/types/index.ts with direct @/types/common imports - Make trustHost conditional (development only) in auth.ts - Add pre-flight URL validation to update-Nitrov3.sh to catch image.library.url misconfigurations - Improve NITRO_IMAGE_LIBRARY_URL content validation in pre-flight & post-compute checks
100 lines
2.5 KiB
TypeScript
100 lines
2.5 KiB
TypeScript
"use server";
|
|
|
|
import { revalidatePath } from "next/cache";
|
|
import { redirect } from "next/navigation";
|
|
import { z } from "zod";
|
|
import { auth } from "@/lib/auth";
|
|
import { prisma } from "@/lib/prisma";
|
|
import { clientIp, rateLimit } from "@/lib/rate-limit";
|
|
import { moderateOrThrow } from "@/lib/services/moderation";
|
|
|
|
const shoutSchema = z.object({
|
|
message: z.string().min(1, "Message is required").max(255),
|
|
});
|
|
|
|
type ShoutOutcome = "posted" | "invalid" | "moderated" | "ratelimit" | "error";
|
|
|
|
function shoutsRedirect(outcome: ShoutOutcome): never {
|
|
if (outcome === "posted") redirect("/radio/shouts?posted=1");
|
|
redirect(`/radio/shouts?error=${outcome}`);
|
|
}
|
|
|
|
function isNextRedirect(e: unknown): boolean {
|
|
return (
|
|
!!e &&
|
|
typeof e === "object" &&
|
|
"digest" in e &&
|
|
typeof (e as { digest?: unknown }).digest === "string" &&
|
|
(e as { digest: string }).digest.startsWith("NEXT_REDIRECT")
|
|
);
|
|
}
|
|
|
|
/**
|
|
* Post a radio shout.
|
|
*
|
|
* The AUTHOR (userId) is re-read from the session via auth() and is never
|
|
* trusted from the submitted FormData, so a crafted form cannot impersonate
|
|
* another account. radio_shouts.user_id is an UNSIGNED BIGINT, so the Int
|
|
* session id is widened to BigInt for the insert.
|
|
*
|
|
* Errors redirect back with a machine-readable ?error= code; success redirects
|
|
* with ?posted=1.
|
|
*/
|
|
export async function postShout(formData: FormData): Promise<void> {
|
|
let outcome: ShoutOutcome = "error";
|
|
|
|
try {
|
|
const session = await auth();
|
|
const userId = Number(session?.user?.id);
|
|
if (!Number.isInteger(userId) || userId <= 0) {
|
|
redirect("/login");
|
|
}
|
|
|
|
await clientIp();
|
|
if (!(await rateLimit(`shout:${userId}`, 5, 30_000)).ok) {
|
|
outcome = "ratelimit";
|
|
} else {
|
|
const raw = {
|
|
message: String(formData.get("message") ?? "")
|
|
.normalize("NFC")
|
|
.trim()
|
|
.slice(0, 255),
|
|
};
|
|
|
|
const parsed = shoutSchema.safeParse(raw);
|
|
if (!parsed.success) {
|
|
outcome = "invalid";
|
|
} else {
|
|
const { message } = parsed.data;
|
|
|
|
let moderated = false;
|
|
try {
|
|
await moderateOrThrow(message);
|
|
} catch {
|
|
moderated = true;
|
|
outcome = "moderated";
|
|
}
|
|
|
|
if (!moderated) {
|
|
const now = new Date();
|
|
await prisma.radioShouts.create({
|
|
data: {
|
|
userId: BigInt(userId),
|
|
message,
|
|
createdAt: now,
|
|
updatedAt: now,
|
|
},
|
|
});
|
|
outcome = "posted";
|
|
}
|
|
}
|
|
}
|
|
} catch (e) {
|
|
if (isNextRedirect(e)) throw e;
|
|
outcome = "error";
|
|
}
|
|
|
|
revalidatePath("/radio/shouts");
|
|
shoutsRedirect(outcome);
|
|
}
|