RelationsService.ts 7.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212
  1. import { Inject, Service } from '@tsed/di';
  2. import axios from 'axios';
  3. import { addHours } from 'date-fns';
  4. import { REQUEST_TIMEOUT_FOR_PTOG, getSupportedGrowiActionsRegExp } from '@growi/slack';
  5. import { Relation, PermissionSettingsInterface } from '~/entities/relation';
  6. import { RelationRepository } from '~/repositories/relation';
  7. import loggerFactory from '~/utils/logger';
  8. const logger = loggerFactory('slackbot-proxy:services:RelationsService');
  9. type CheckPermissionForInteractionsResults = {
  10. allowedRelations:Relation[],
  11. disallowedGrowiUrls:Set<string>,
  12. commandName:string,
  13. rejectedResults:PromiseRejectedResult[]
  14. }
  15. type CheckEachRelationResult = {
  16. allowedRelation:Relation|null,
  17. disallowedGrowiUrl:string|null,
  18. eachRelationCommandName:string,
  19. }
  20. @Service()
  21. export class RelationsService {
  22. @Inject()
  23. relationRepository: RelationRepository;
  24. async resetAllExpiredAtCommands(): Promise<void> {
  25. await this.relationRepository.update({}, { expiredAtCommands: new Date('2000-01-01') });
  26. }
  27. private async getSupportedGrowiCommands(relation:Relation):Promise<any> {
  28. // generate API URL
  29. const url = new URL('/_api/v3/slack-integration/supported-commands', relation.growiUri);
  30. return axios.get(url.toString(), {
  31. headers: {
  32. 'x-growi-ptog-tokens': relation.tokenPtoG,
  33. },
  34. timeout: REQUEST_TIMEOUT_FOR_PTOG,
  35. });
  36. }
  37. private async syncSupportedGrowiCommands(relation:Relation): Promise<Relation> {
  38. const res = await this.getSupportedGrowiCommands(relation);
  39. const { permissionsForBroadcastUseCommands, permissionsForSingleUseCommands } = res.data.data;
  40. if (relation !== null) {
  41. relation.permissionsForBroadcastUseCommands = permissionsForBroadcastUseCommands;
  42. relation.permissionsForSingleUseCommands = permissionsForSingleUseCommands;
  43. relation.expiredAtCommands = addHours(new Date(), 48);
  44. return this.relationRepository.save(relation);
  45. }
  46. throw Error('No relation exists.');
  47. }
  48. private async syncRelation(relation: Relation): Promise<Relation> {
  49. // TODO use assert (relation != null)
  50. const isDataNull = relation.permissionsForBroadcastUseCommands == null || relation.permissionsForBroadcastUseCommands == null;
  51. const distanceMillisecondsToExpiredAt = relation.getDistanceInMillisecondsToExpiredAt(new Date());
  52. const isExpired = distanceMillisecondsToExpiredAt < 0;
  53. if (isDataNull || isExpired) {
  54. return this.syncSupportedGrowiCommands(relation);
  55. }
  56. // 24 hours
  57. const isLimitUnder24Hours = distanceMillisecondsToExpiredAt < 24 * 60 * 60 * 1000;
  58. if (isLimitUnder24Hours) {
  59. this.syncSupportedGrowiCommands(relation);
  60. }
  61. return relation;
  62. }
  63. private isPermitted(permissionSettings: PermissionSettingsInterface, growiCommandType: string, channelName: string): boolean {
  64. // TODO assert (permissionSettings != null)
  65. const permissionForCommand = permissionSettings[growiCommandType];
  66. if (permissionForCommand == null) {
  67. return false;
  68. }
  69. if (Array.isArray(permissionForCommand)) {
  70. return permissionForCommand.includes(channelName);
  71. }
  72. return permissionForCommand;
  73. }
  74. async isPermissionsForSingleUseCommands(relation: Relation, growiCommandType: string, channelName: string): Promise<boolean> {
  75. // TODO assert (relation != null)
  76. if (relation == null) {
  77. return false;
  78. }
  79. let relationToEval = relation;
  80. try {
  81. relationToEval = await this.syncRelation(relation);
  82. }
  83. catch (err) {
  84. logger.error('failed to sync', err);
  85. return false;
  86. }
  87. // TODO assert (relationToEval.permissionsForSingleUseCommands != null) because syncRelation success
  88. return this.isPermitted(relationToEval.permissionsForSingleUseCommands, growiCommandType, channelName);
  89. }
  90. async isPermissionsUseBroadcastCommands(relation: Relation, growiCommandType: string, channelName: string):Promise<boolean> {
  91. // TODO assert (relation != null)
  92. if (relation == null) {
  93. return false;
  94. }
  95. let relationToEval = relation;
  96. try {
  97. relationToEval = await this.syncRelation(relation);
  98. }
  99. catch (err) {
  100. logger.error('failed to sync', err);
  101. return false;
  102. }
  103. // TODO assert (relationToEval.permissionsForSingleUseCommands != null) because syncRelation success
  104. return this.isPermitted(relationToEval.permissionsForBroadcastUseCommands, growiCommandType, channelName);
  105. }
  106. async checkPermissionForInteractions(
  107. relations:Relation[], actionId:string, callbackId:string, channelName:string,
  108. ):Promise<CheckPermissionForInteractionsResults> {
  109. const allowedRelations:Relation[] = [];
  110. const disallowedGrowiUrls:Set<string> = new Set();
  111. let commandName = '';
  112. const results = await Promise.allSettled(relations.map((relation) => {
  113. const relationResult = this.checkEachRelation(relation, actionId, callbackId, channelName);
  114. const { allowedRelation, disallowedGrowiUrl, eachRelationCommandName } = relationResult;
  115. if (allowedRelation != null) {
  116. allowedRelations.push(allowedRelation);
  117. }
  118. if (disallowedGrowiUrl != null) {
  119. disallowedGrowiUrls.add(disallowedGrowiUrl);
  120. }
  121. commandName = eachRelationCommandName;
  122. return relationResult;
  123. }));
  124. // Pick up only a relation which status is "rejected" in results. Like bellow
  125. const rejectedResults: PromiseRejectedResult[] = results.filter((result): result is PromiseRejectedResult => result.status === 'rejected');
  126. return {
  127. allowedRelations, disallowedGrowiUrls, commandName, rejectedResults,
  128. };
  129. }
  130. checkEachRelation(relation:Relation, actionId:string, callbackId:string, channelName:string):CheckEachRelationResult {
  131. let allowedRelation:Relation|null = null;
  132. let disallowedGrowiUrl:string|null = null;
  133. let eachRelationCommandName = '';
  134. let permissionForInteractions:boolean|string[];
  135. const singleUse = Object.keys(relation.permissionsForSingleUseCommands);
  136. const broadCastUse = Object.keys(relation.permissionsForBroadcastUseCommands);
  137. [...singleUse, ...broadCastUse].forEach(async(tempCommandName) => {
  138. // ex. search OR search:handlerName
  139. const commandRegExp = getSupportedGrowiActionsRegExp(tempCommandName);
  140. // skip this forEach loop if the requested command is not in permissionsForBroadcastUseCommands and permissionsForSingleUseCommands
  141. if (!commandRegExp.test(actionId) && !commandRegExp.test(callbackId)) {
  142. return;
  143. }
  144. eachRelationCommandName = tempCommandName;
  145. // case: singleUse
  146. permissionForInteractions = relation.permissionsForSingleUseCommands[tempCommandName];
  147. // case: broadcastUse
  148. if (permissionForInteractions == null) {
  149. permissionForInteractions = relation.permissionsForBroadcastUseCommands[tempCommandName];
  150. }
  151. if (permissionForInteractions === true) {
  152. allowedRelation = relation;
  153. return;
  154. }
  155. // check permission at channel level
  156. if (Array.isArray(permissionForInteractions) && permissionForInteractions.includes(channelName)) {
  157. allowedRelation = relation;
  158. return;
  159. }
  160. disallowedGrowiUrl = relation.growiUri;
  161. });
  162. return { allowedRelation, disallowedGrowiUrl, eachRelationCommandName };
  163. }
  164. }