/* jshint node: true */ var passport = require('passport'), Entities = require('html-entities').XmlEntities, entities = new Entities(), crypto = require('crypto'), _ = require('lodash'), util = require('./util'), upload = require('./upload'), config = require('../../config.json'), User = require('./schemas/User'), Documentation = require('./schemas/Documentation'); var api = { profile: { show: function(req, res){ User.findOne({ _id: req.user._id }, function(err, user){ res.json(err || user) }) }, update: function(req, res){ var data = util.cleanQuery(req.body) if (data.new_password && data.new_password.length) { if (! data.old_password || ! req.user.checkPassword(data.old_password)) { res.json({ error: { errors: { password: { message: "Old password is incorrect" } } } }) } var shasum = crypto.createHash('sha1') shasum.update(data.new_password) password = shasum.digest('hex'); req.user.password = password } delete data.old_password delete data.new_password delete data.isStaff data.updated_at = new Date () if (req.files.avatar) { upload.put("avatars", req.files.avatar, { acceptable: function(){ console.log("acceptable") }, unacceptable: function(err){ console.log("unacceptable") res.json({ error: { errors: { avatar: { message: "Problem saving avatar: " + err } } } }) }, success: function(url){ data.photo = url done() } }) } else { done() } function done () { _.extend( req.user, data ) req.user.save(function(err, msg) { err ? res.json({ status: "FAIL", error: err }) : res.json({ status: "OK", payload: req.user }) }) } } }, docs: { show: function(req, res){ Documentation.findOne({ name: req.query.name }, function(err, doc){ if (doc) { res.json(doc) } else { var name = util.sanitize(req.query.name) if (name == "new") { name = "" } res.json({ name: name, isNew: true }) } }) }, create: function(req, res){ var data = util.cleanQuery(req.body) data.name = util.sanitize(data.new_name) data.displayName = util.sanitize(data.displayName) delete data.new_name new Documentation(data).save(function(err, doc){ if (err || ! doc) { return res.json({ error: err }) } res.json(doc) }) }, update: function(req, res){ var data = util.cleanQuery(req.body) if (data.name == "new") { return api.docs.create(req, res) } Documentation.findOne({ name: data.name }, function(err, doc){ if (err || ! doc) { return res.json({ error: err }) } data.name = data.new_name delete data.new_name _.extend(doc, data) doc.save(function(err, doc){ if (err || ! doc) { return res.json({ error: err }) } res.json(doc) }) }) }, destroy: function(req, res){ var name = util.sanitize(req.body.name) if (! name || ! name.length) { res.json({ error: 404 }) return } Documentation.remove({ name: name }, function(err){ res.json({ status: "OK" }) }) } } } module.exports = api