Code Coverage |
||||||||||
Lines |
Functions and Methods |
Classes and Traits |
||||||||
| Total | |
100.00% |
11 / 11 |
|
100.00% |
1 / 1 |
CRAP | |
100.00% |
1 / 1 |
| EditRoleEndpoint | |
100.00% |
11 / 11 |
|
100.00% |
1 / 1 |
3 | |
100.00% |
1 / 1 |
| handle | |
100.00% |
11 / 11 |
|
100.00% |
1 / 1 |
3 | |||
| 1 | <?php |
| 2 | |
| 3 | namespace Olz\Roles\Endpoints; |
| 4 | |
| 5 | use Olz\Api\OlzEditEntityTypedEndpoint; |
| 6 | use PhpTypeScriptApi\HttpError; |
| 7 | |
| 8 | /** |
| 9 | * @phpstan-import-type OlzRoleId from RoleEndpointTrait |
| 10 | * @phpstan-import-type OlzRoleData from RoleEndpointTrait |
| 11 | * |
| 12 | * @extends OlzEditEntityTypedEndpoint<OlzRoleId, OlzRoleData> |
| 13 | */ |
| 14 | class EditRoleEndpoint extends OlzEditEntityTypedEndpoint { |
| 15 | use RoleEndpointTrait; |
| 16 | |
| 17 | protected function handle(mixed $input): mixed { |
| 18 | $entity = $this->getEntityById($input['id']); |
| 19 | |
| 20 | $is_superior = $this->authUtils()->hasRoleEditPermission($input['id']); |
| 21 | $is_owner = $this->entityUtils()->canUpdateOlzEntity($entity, null, 'roles'); |
| 22 | if (!$is_superior && !$is_owner) { |
| 23 | throw new HttpError(403, "Kein Zugriff!"); |
| 24 | } |
| 25 | |
| 26 | $this->editUploads($entity); |
| 27 | |
| 28 | return [ |
| 29 | 'id' => $entity->getId() ?? 0, |
| 30 | 'meta' => $entity->getMetaData(), |
| 31 | 'data' => $this->getEntityData($entity), |
| 32 | ]; |
| 33 | } |
| 34 | } |