Commit Graph
884 Commits
Author SHA1 Message Date
openhands 54f2bc5e0c Add clone source selection to Studio furni browser
Allow the admin Studio to browse and import furniture from custom retro
hotel sources, not just official Habbo furnidata.

- GET /api/admin/import/furni?source=<id> lists a clone source's
  furnidata (via getCloneList) and returns a per-item iconUrl from the
  source's iconBaseUrl so previews render correctly
- Studio client gets a source selector dropdown (official Habbo plus all
  configured clone_sources) that resets the selection and reloads the
  list when switched
- Single and batch imports now send sourceId so SWF/nitro/icon assets
  are fetched from the selected hotel's CDN
- Preview images prefer the source iconUrl with the existing fallback
  chain; header shows the active source name
2026-08-15 15:43:51 +02:00
openhands 5b09179404 Add all-in-one Studio merging furni import and catalog management
Add a full-viewport /admin/studio workspace that unifies the import and
catalog systems into a single automated flow:

- Furni library browser against official Habbo furnidata with search,
  type/status filters, live previews and pagination
- Catalog structure rail showing where imported furniture lands
- Detail drawer with automatic placement preview (category + price via
  classifyFurni/autoPriceFurni) and one-click import that downloads
  assets, converts SWF to nitro, writes items_base, updates
  FurnitureData.json and creates an auto-priced catalog entry
- Batch auto-import with SSE progress and RCON cache refresh
- Nitro editor integration and imported-item deletion

Extract pure auto-catalog helpers (CATEGORY_PAGE, CLASSNAME_RULES,
classifyFurni, autoPriceFurni) into a client-safe module shared by the
server pipeline and the Studio UI so the preview always matches what the
emulator import applies.
2026-08-15 15:34:07 +02:00
openhands e31f6d985c Add rollback/undo functionality for furniture imports
- Added LogsFurniImports table to track import history with rollback support
- Implemented rollbackFurniImport() service function to revert imports:
  - Removes items from items_base, catalog_items, FurnitureData.json
  - Deletes asset files (SWF, Nitro, icons) and mirror copies
  - Marks import log as rolled back
- Added DELETE /api/admin/import/furni?importId=X endpoint
- Added dry-run support for import validation (?dryrun=1)
- Added updateExisting option to update existing catalog entries
- All TypeScript/Biome checks pass, tests pass (806 passed, 1 pre-existing skip)
2026-08-14 19:42:01 +02:00
openhands 7ef5038a9e Add updateExisting option to furniture import
- Added updateExisting parameter to importSingleFurni and API routes
- When updateExisting=true, existing items are updated (catalog price/page) instead of failing
- Added catalogUpdated flag to ImportSingleResult
- Updates existing catalog entries (price, page) instead of skipping duplicates
2026-08-14 18:35:00 +02:00
openhands f89b8a6adf Fix FurnitureData.json spriteId conflict auto-repair
- Added spriteId conflict resolution to repairFurniData(): keeps first classname per id, removes conflicting entries
- Returns new removedIdConflicts count in repair result
- Updated audit event type and client UI to display removedIdConflicts
- Updated catalog-audit.ts event type and client state type
- When 'Repair FurnitureData.json' is checked, it now fixes id conflicts automatically
2026-08-14 18:23:00 +02:00
openhands 3b6ebe7bdc Fix audit client: send checkFurniDataIds in request body
- Added checkFurniDataIds to POST body so the 'Check FurnitureData.json for spriteId conflicts' checkbox actually works
- Added checkFurniDataIds to useCallback dependency array for correct React hook behavior
2026-08-14 18:06:24 +02:00
openhands 27a3652a79 Improve terms checkbox accessibility and clarity
- Added onKeyDown handler for keyboard accessibility (a11y)
- Added 'Required for account creation' note below checkbox
- Maintains existing onClick handler for mouse users
- All TypeScript and Biome checks pass
2026-08-14 17:21:35 +02:00
openhands 3d89e108f3 Fix terms acceptance enforcement in register
- Add termsAccepted to raw form data object
- Check if terms were accepted before DB insert
- Return error if terms not accepted
- All TypeScript and Biome checks pass
2026-08-14 17:10:40 +02:00
openhands 0f35bc8529 Add hCaptcha support alongside Turnstile and reCAPTCHA
- Add hcaptcha_site_key and hcaptcha to captcha_provider options in admin settings
- Update captcha.ts server-side verification for hCaptcha (new endpoint + secret key)
- Add hCaptcha widget rendering in register-form.tsx
- All TypeScript and Biome checks pass
2026-08-14 17:04:34 +02:00
openhands 1bca9657fa Remove age verification checkboxes, keep Turnstile CAPTCHA
- Remove age verification (18+) checkboxes from register form
- Terms checkbox remains
- Turnstile CAPTCHA stays further down in form
- All TypeScript and biome checks pass
2026-08-14 16:57:17 +02:00
openhands 361ff56d65 Fix register form: checkboxes side by side with a11y support, improved text visibility
- Terms and age verification checkboxes now side by side
- Added onKeyDown handlers for keyboard navigation (a11y)
- Improved text clarity with explicit var(--color-text-readable) usage
- All TypeScript and biome checks pass
2026-08-14 16:44:22 +02:00
openhands e76c530e4f Fix TypeScript errors and implement furniture import ID integrity with 18+ age verification
- Add termsAccepted and ageVerified columns to User table
- Update register schema with new boolean fields
- Fix register form age verification checkbox (th -> t)
- Fix furni-import spriteId declaration order
- Fix batch route variable naming (id -> spriteId)
- Fix catalog-audit import path and ensure correct types
- Hardened import with per-item id conflict checks
- Added audit option for FurnitureData.json spriteId conflicts
- Updated tagline to include Leeftijdsvereiste: 18+
2026-08-14 16:37:00 +02:00
openhands e5ec3c1f06 perf: optimize CMS queries, caching, and asset delivery
Database:
- Add missing indexes (users.credits, users_currency(type,amount),
  users_settings.respects_received, camera_web.timestamp,
  messenger_offline.user_id) via migrations 0020/0021
- Use partial .select() everywhere instead of SELECT * (tickets, users,
  rooms, audit logs, catalog tree, polls, radio, password reset)
- Add queryPrepared/queryPreparedOne (server-side prepared statements)
  and switch the login check to a prepared statement; drop dead
  cache options from the pool config
- Raise total_users/total_rooms COUNT(*) cache TTL to 5m

Caching:
- Consolidate the three cache helpers (cached, redisCache, cachedQuery)
  into a single memory-first implementation backed by Redis
- invalidateKey now clears the in-process cache as well as Redis
- Cache homepage sections, news list, and leaderboard tabs; share one
  news_list cache key between homepage and news archive
- siteSettings: in-process cache with TTL so repeated getters no longer
  pay a Redis round-trip per call
- Share a 10s poll cache across all radio SSE connections
- Normalize timestamps after cache reads (Redis JSON round-trip)

Assets:
- Enable AVIF/WebP via images.formats and remove unoptimized from news
  covers and the homepage hero (149KB jpg) with proper sizes/priority
- Support ?format=webp|avif|png in the /imaging proxy via sharp

Other:
- Fix pnpm supply-chain minimumReleaseAge failures by excluding the
  freshly-published packages (next 16.3.1, hookform resolvers 5.8.0,
  resend 6.20.0)
- Remove unused before/after fields from housekeeping AuditEntry
2026-08-14 11:20:37 +02:00
openhands 65e3915a5f feat: replace Redis with DragonflyDB
- Replace Redis server with DragonflyDB v1.40.1 (Redis protocol compatible)
- Stop redis-server service, enable dragonfly service on 127.0.0.1:6379
- Configure dragonfly in /etc/dragonfly/dragonfly.conf (bind 127.0.0.1, maxmemory 2gb)
- Update .env: remove REDIS_URL reference

Improve database reliability:
- Fix catalog-tree.ts: remove CAST(page_id AS CHAR) to enable index usage (122 rows vs 78k full scan)
- Fix catalog-repair.ts: replace sql.raw() string interpolation with parameterized sql queries using quoteIdentifier()
- Improve redis retry resilience: change retryStrategy to not give up after 3 attempts, enabling automatic reconnect after server restart

Update documentation:
- Update README: replace Redis references with DragonflyDB, add DragonflyDB setup section, update performance features list, update architecture diagram
- biome and typecheck pass clean
2026-08-12 14:34:29 +02:00
openhands c808c59fce fix: replace jsonc with jsonc-parser and cleanup build config 2026-08-11 16:53:03 +02:00
openhands e867b675fc fix: replace jsonc with jsonc-parser and cleanup build config 2026-08-11 16:50:10 +02:00
Simo 0bd2ac6707 fix: separate header avatar from username 2026-08-10 18:45:38 +02:00
Simo 06cd0cfe42 fix: use currency icons in public balances 2026-08-10 18:32:17 +02:00
Simo adc201bfb6 fix: standardize public avatar thumbnails 2026-08-10 18:30:25 +02:00
Simo bf24d9575a feat: add public avatar thumbnail contract 2026-08-10 18:24:51 +02:00
Simo 4a6fcd050e fix: preserve user figures in avatar imager 2026-08-09 21:48:43 +02:00
openhands 49185dd7a9 fix: remove explicit size:l from avatar URLs
- Now uses default size (m) which is omitted from URL
- Cleaner URLs without size parameter
2026-08-09 20:13:41 +02:00
openhands 0aef27efc4 fix: omit default params in avatar URL for cleaner URLs
- getAvatarUrl now omits direction=2, head_direction=3, size=m when they match defaults
- URL now matches: figure=xxx&effect=14&img_format=apng
2026-08-09 20:03:26 +02:00
openhands 3213126a12 fix: make getAvatarUrl auto-convert figure strings
- Update getAvatarUrl in imager.ts to use getNewFormatFigure for automatic conversion
- Update me/page.tsx to use avatarImageUrl (which also converts)
- This ensures all avatar URLs use the short epicnabbo.nl format
2026-08-09 19:57:22 +02:00
openhands 2f708bcf11 feat: filter figure parts (exclude shoes, waist, dedupe head)
- Default convertFigureString now excludes shoes (ha-), waist (wa-), and duplicate head
- Added ConvertFigureOptions to customize filtering
- Updated tests to reflect new defaults
2026-08-09 19:50:24 +02:00
openhands 7a2c0fd4d4 fix: resolve TypeScript and lint issues
- Fix proxy routes to use resolveImagerBase instead of removed resolveUpstreamBase
- Fix avatarImageUrl type signature to use AvatarOptions
- Run biome formatter
2026-08-09 19:42:02 +02:00
openhands fc7e6ca248 feat: switch avatar imager to epicnabbo.nl with figure conversion
- Update imager to use epicnabbo.nl by default with effect=14 and img_format=apng
- Add figure string converter (old Habbo format -> epicnabbo.nl short format)
- Update avatarImageUrl to auto-convert figure strings
- Update online-users-widget to use new avatarImageUrl
- Add tests for imager and figure conversion
2026-08-09 19:38:04 +02:00
openhands ca49c6b5a8 refactor: tighten nitro editor JSON typing with generic path helpers 2026-08-09 12:38:30 +02:00
openhands 6549ae1959 refactor: remove any types from nitro editor dialog 2026-08-09 12:27:13 +02:00
openhands 4993b75608 perf: self-host fonts, drop unused generated code and add swf tests
- Self-host Nunito and Pixelify Sans via next/font instead of Google Fonts CDN
  (removes render-blocking external stylesheets and preconnects)
- Remove stale mariadb entry from serverExternalPackages (app uses mysql2)
- Exclude unused src/generated Prisma client from typecheck and remove it
- Add unit tests for swf-parser, effectmap and figuremap (0% coverage -> 90%+)
2026-08-09 12:12:02 +02:00
openhands ae1393d3e3 refactor: clean up duplicate imports and dead code
- Merge type and value imports from the same module into single imports
- Remove dead import-badges action (flow uses /api/admin/import/badges)
- Remove unused babel-plugin-react-compiler devDependency
- Remove stray test.txt file
- Update knip config: track css imports, drop redundant ignore entries
- Update contract test to drop obsolete dead-action assertion
2026-08-09 11:51:26 +02:00
openhands 304cfb5be7 fix test expectation for accent foreground contrast 2026-08-08 21:49:24 +02:00
openhands 02abf8f88c export parseHex, relativeLuminance, softLightSurface for testing 2026-08-08 21:46:40 +02:00
openhands ebd2ff131c inport fix 2026-08-08 21:39:52 +02:00
openhands 6a67fb6e83 refactor: remove additional dead exports and unused actions
Remove buildFontUrl, measureText, uncached, invalidateCache, fetchJsonWithFlareSolver, upsertPermission, deletePermission, bulkImportPermissions, clearAllPermissions, bulkDeletePermissions, bulkDeletePhotos, userReplyTicket, closeTicketByUser. Update staff-smoke-contract test for bulkDeletePhotos removal.
2026-08-07 19:19:05 +02:00
openhands 24bf8eabb9 refactor: remove dead code and unused exports
Delete proxy-auth.ts, types/index.ts, staff-user.ts+test, local-imports.ts+test (only used by their own tests). Remove unused foundation exports: sanitizeFilename, canonicalizeFormValue, canonicalizeFormData, ConflictError, getRequestStore, getClientIp, elapsed. Remove stale TODO comments from rank-authority.ts and notice.ts. Fix biome lint warnings in catalog-repair.ts.
2026-08-07 18:55:02 +02:00
openhands 82e8448f26 test: add unit tests for pure logic modules
Add 22 test files covering imager, soundtracks, browser-headers, source-keys (figure/pet/effect), effect-source, plus catalog-translations, catalog-layouts, client-translation-files, translations-utils, and various admin/services/helpers modules. Total test count increases by 120+.
2026-08-07 18:53:59 +02:00
openhands 11e8b06bf8 feat: add missing translations across all locales
Add 692 translation keys across 21 locale files, covering admin actions, moderation, radio, catalog, and public UI strings.
2026-08-07 18:53:39 +02:00
openhands 51ef7602ca perf: migrate pages to Cache Components via root layout opt-out
Remove the per-route 'export const instant = false' opt-outs now that the root layout carries the single Cache Components opt-out. Child pages inherit the opt-out, so admin/mod/radio leaf pages that only access cached or DB data stay instant while runtime-dependent pages remain dynamic. Update the staff-smoke contract test to assert the root-layout contract.
2026-08-07 18:51:45 +02:00
openhands b25e7b00dd fix: improve clone all confirmation popup clarity 2026-08-06 21:00:37 +02:00
openhands 94ccd098d5 fix: clarify popup text and form fields in import UI - fix Italian copy in nitro editor, use shared CloneSource interface, make nitro/icon fields optional 2026-08-06 20:44:34 +02:00
openhands f792c276b7 test: add unit tests for furni import helpers and catalog cache
Added tests for:
- classifyFurni: prefix matching, type-based classification, fallback
- autoPriceFurni: CF_/rare_/default pricing rules
- resetCatalogPageCache: smoke test
2026-08-06 20:33:03 +02:00
openhands aee099339c perf: optimize import batch performance with caching + validation
Import speed improvements:
- In-memory catalog page ID cache (5min TTL) eliminates N+1 DB lookups
  when batch importing many items in the same category
- resetCatalogPageCache() exported and called after bulk re-organize
  operations (PUT route) to prevent stale page IDs
- Nitro file size validation (≥128 bytes) before DB commit — rejects
  corrupt/empty .nitro files that would break the client
- batchLookupByClassnames now uses Promise.all for parallel cache lookups
  instead of sequential awaits (10x faster for 50+ items)
- Auto-cleanup of corrupt nitro files on validation failure
2026-08-06 20:27:06 +02:00
openhands a1775fbf1e perf: enable source-specific asset downloads and make nitro/icon URLs optional
Import improvements:
- importSingleFurni now accepts sourceSwfBaseUrl, nitroBaseUrl, iconBaseUrl
  params to try source-specific asset downloads before falling back to
  the official Habbo CDN (images.habbo.com)
- Source-specific URL cascade:
  1. Try sourceSwfBaseUrl/hof_furni/{rev}/{name}.swf
  2. Try sourceNitroBaseUrl/{name}.nitro (pre-made nitro bundles)
  3. Fallback to images.habbo.com/dcr/hof_furni/{rev}/{name}.swf
- Same fallback chain for icon downloads
- Clone sources can now have empty nitroBaseUrl/iconBaseUrl (retro
  hotels without nitro support)
- Added VirtualCity source (verified SWF downloads via virtualc.nl/dcr)
- Added sourceSwfBaseUrl field to CloneSource interface
- Both batch and single import routes pass source params through
- Clone POST route accepts sourceSwfBaseUrl, makes nitro/icon optional
- Nitro fallback download tries .nitro files before SWF conversion
2026-08-06 20:19:54 +02:00
openhands 4c93dc38c6 feat: add verified retro sources, remove broken/duplicate sources
Added verified working retro hotel sources from VindRetros.nl:
- YabboHotel: 52,663 room + 707 wall items furnidata (no nitro/icons yet)
- Habblet City: full furnidata + nitro + icons (all working)

Removed offline/unreachable sources:
- Leet.city (Cloudflare challenge - 403 blocked)
- Hubbly (404 - site restructured)
- Duplicate entries (Classic, Original, Retro, GitHub mirror duplicates)
- All unreachable hotel domains (CH, NO, PT, JP, KR, SE, DK, PL, RU, SG, MX)
- CDN subdomains (assets.habbo.com, cdn.habbo.com - DNS unresolvable)

Final: 13 verified working sources with 200 status furnidata:
- 9 official Habbo hotels (COM, NL, DE, FR, ES, FI, BR, TR, IT)
- 3 retro sources (YabboHotel, Wibbo, Hubba.cc)
- 1 full retro source with nitro/icons (Habblet City)
2026-08-06 19:56:59 +02:00
openhands 7149fb146b fix: cleanup clone sources - remove offline sources, keep verified ones
Connectivity verification revealed:
- New hotels (CH, NO, PT, JP, KR, SE, DK, PL, RU, SG, MX) are unreachable
  (DNS/connection failures - hotel likely discontinued or region-locked)
- CDN subdomains (assets.habbo.com, cdn.habbo.com, nitro.habbo.com, etc.)
  return 000 (unresolvable) - not valid furnidata endpoints

Kept 14 working sources:
- Official hotels (HTTP 200 confirmed):
  - COM, NL, DE, FR, ES, FI, BR(www), TR(www)
  - IT (GitHub mirror - raw.githubusercontent.com)
- Retro sources (HTTP 200 for furnidata):
  - Wibbo, Hubba.cc (nitro.hubba.cc works)
  - Habblet City (all endpoints work)
  - Leet (now leet.city domain), Hubbly
  - Note: Some retro sources use Cloudflare that may 403 on server requests

Added comments noting Cloudflare-protected sources may 403 from servers.
2026-08-06 19:23:46 +02:00
openhands cfcb245c40 fix: remove broken/non-responsive sources, keep only verified working URLs
Connectivity check revealed 66 sources were broken/unresponsive:
- Many new hotels (CH, NO, PT, JP, KR, SE, DK, PL, RU, SG, MX) returned errors
- Retro/community sources (Essian, Hubbly, Sodaho, Nitro Dev, etc.) are offline
- Many CDN subdomains (nitro.habbo.com, archive.habbo.com, etc.) are unreachable

Kept 16 verified working sources with 200 status codes:
- Habbo IT (GitHub mirror)
- Habbo COM, NL, DE, FR, ES, FI, BR, TR
- Wibbo, Hubba.cc, Leet (retro sources with valid furnidata)
- Habbo Original, Classic, Retro variants (working backup URLs)

Reduced from 59 to 16 sources, removing all dead/non-responsive URLs.
2026-08-06 19:13:47 +02:00
openhands c2e48a8a0e feat: expand clone import presets with 45+ additional hotel sources
Added many more hotels and asset sources for import:
- Official Habbo hotels: CH, NO, PT, JP, KR, SE, DK, PL, RU, SG, MX
- Additional retro/hotmart-style sources with nitro/icon support
- Multiple CDN variants (Habbo Assets, Nitro CDN, Web, API, etc.)
- Alt-region variants for all existing hotels

Total sources expanded from 14 to 59 DEFAULT_SOURCES, providing
much wider coverage for furni/icon imports across different
Habbo hotels and retro communities.
2026-08-06 19:08:10 +02:00
openhands 1b817fe434 fix: resolve critical bugs and improve admin panel reliability
- Fix missing await in pets API route causing empty responses
- Fix updateSetting to use upsert pattern instead of update-only
- Create missing /api/admin/sounds/upload route (upload was broken)
- Wire bulk delete actions in catalog table
- Replace native confirm() with useConfirmDialog() across rooms and clone pages
- Add error logging to silent catch blocks in radio actions and audit route
- Add graceful degradation to devops health endpoint
- Add cache eviction to clone icon route to prevent memory leak
- Internationalize hardcoded Italian strings to English
- Remove placeholder created_at fields from prefix API responses
- Remove dead code and fix type errors in translations and import pages
- Standardize PERMS import path in analytics export route
2026-08-06 18:32:55 +02:00
openhands 8b7298657d fix: add missing import hub translation keys to all language files 2026-08-05 18:17:49 +02:00