Deploy on DigitalOcean App Platform (GitHub-source build) + consolidate audit-fixes
Deploy config: - .do/app.yaml: build the Dockerfile directly from GitHub (deploy_on_push) instead of a pre-built DOCR image; NEXT_PUBLIC_* set RUN_AND_BUILD_TIME with the propertymanagement.network domain so they bake into the client bundle; add custom domains block (apex + www); wire Sentry DSN (server + browser). Included pending work from the audit-fixes branch: - AI provider abstraction (OpenAI/Anthropic, admin-selectable; Anthropic default) - Per-landlord e-signature (DocuSign OAuth + Dropbox Sign) + migration 0010 - Outbound webhooks / Zapier integration - PayPal removal (Stripe-only billing) - Storage hardening (fail-loud when Spaces unconfigured), security fixes Verified: full production Docker build (same build-args as DO) passes clean. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
This commit is contained in:
co-authored by
Claude Opus 4.8
parent
917a06ee85
commit
5495b94924
+63
-1
@@ -1,9 +1,27 @@
|
||||
"use server"
|
||||
|
||||
import { revalidatePath } from "next/cache"
|
||||
import { and, eq } from "drizzle-orm"
|
||||
import { db } from "@/lib/db"
|
||||
import { leases } from "@/lib/db/schema"
|
||||
import { getSessionUser } from "@/lib/session"
|
||||
import { getAccountContext } from "@/lib/account"
|
||||
import { sendLeaseForSignature, getAdapter, type ESignProvider } from "@/lib/esign"
|
||||
import { keyBelongsToOwner } from "@/lib/storage"
|
||||
import {
|
||||
sendLeaseForSignature,
|
||||
getAdapter,
|
||||
saveEsignConnection,
|
||||
disconnectEsign,
|
||||
type ESignProvider,
|
||||
} from "@/lib/esign"
|
||||
|
||||
async function ownerGuard() {
|
||||
const user = await getSessionUser()
|
||||
if (!user) throw new Error("Unauthorized")
|
||||
const ctx = await getAccountContext(user.id)
|
||||
if (!ctx.isOwner) throw new Error("Only the account owner can manage integrations")
|
||||
return ctx
|
||||
}
|
||||
|
||||
export async function sendLeaseForSignatureAction(leaseId: string, provider: string) {
|
||||
const user = await getSessionUser()
|
||||
@@ -15,3 +33,47 @@ export async function sendLeaseForSignatureAction(leaseId: string, provider: str
|
||||
revalidatePath(`/leases/${leaseId}`)
|
||||
return { ok: true }
|
||||
}
|
||||
|
||||
/** Connect Dropbox Sign by validating and storing the landlord's API key. */
|
||||
export async function connectDropboxSign(apiKey: string) {
|
||||
const ctx = await ownerGuard()
|
||||
const adapter = getAdapter("dropbox_sign")
|
||||
if (!adapter) throw new Error("Unknown provider")
|
||||
const tokens = await adapter.connectApiKey(typeof apiKey === "string" ? apiKey : "")
|
||||
await saveEsignConnection(ctx.ownerId, "dropbox_sign", tokens)
|
||||
revalidatePath("/settings/integrations")
|
||||
return { ok: true, accountName: tokens.accountName }
|
||||
}
|
||||
|
||||
export async function disconnectEsignAction(provider: string) {
|
||||
const ctx = await ownerGuard()
|
||||
if (!getAdapter(provider)) throw new Error("Unknown provider")
|
||||
await disconnectEsign(ctx.ownerId, provider as ESignProvider)
|
||||
revalidatePath("/settings/integrations")
|
||||
return { ok: true }
|
||||
}
|
||||
|
||||
/**
|
||||
* Attach an already-uploaded document (via /api/upload) to a lease. Validates
|
||||
* the file belongs to the caller's namespace to prevent cross-tenant refs.
|
||||
*/
|
||||
export async function setLeaseDocument(leaseId: string, fileUrl: string) {
|
||||
const user = await getSessionUser()
|
||||
if (!user) throw new Error("Unauthorized")
|
||||
const ctx = await getAccountContext(user.id)
|
||||
if (!ctx.canWrite) throw new Error("You don't have permission to do that")
|
||||
|
||||
const prefix = "/api/files/"
|
||||
if (typeof fileUrl !== "string" || !fileUrl.startsWith(prefix)) throw new Error("Invalid document reference")
|
||||
if (!keyBelongsToOwner(fileUrl.slice(prefix.length), ctx.ownerId)) throw new Error("Invalid document reference")
|
||||
|
||||
const [row] = await db
|
||||
.update(leases)
|
||||
.set({ document_url: fileUrl })
|
||||
.where(and(eq(leases.id, leaseId), eq(leases.user_id, ctx.ownerId)))
|
||||
.returning({ id: leases.id })
|
||||
if (!row) throw new Error("Lease not found")
|
||||
|
||||
revalidatePath(`/leases/${leaseId}`)
|
||||
return { ok: true, url: fileUrl }
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user