From 2d145b026cfdf54a63bef0b9d6324b6785390307 Mon Sep 17 00:00:00 2001 From: Wes Bos Date: Fri, 14 Sep 2018 12:18:12 -0400 Subject: move finished folder --- .../FINISHED/backend/src/resolvers/Query.js | 69 ---------------------- 1 file changed, 69 deletions(-) delete mode 100644 stepped-solutions/FINISHED/backend/src/resolvers/Query.js (limited to 'stepped-solutions/FINISHED/backend/src/resolvers/Query.js') diff --git a/stepped-solutions/FINISHED/backend/src/resolvers/Query.js b/stepped-solutions/FINISHED/backend/src/resolvers/Query.js deleted file mode 100644 index 22a6414..0000000 --- a/stepped-solutions/FINISHED/backend/src/resolvers/Query.js +++ /dev/null @@ -1,69 +0,0 @@ -const { forwardTo } = require('prisma-binding'); -const { hasPermission } = require('../utils'); - -const Query = { - items: forwardTo('db'), - item: forwardTo('db'), - itemsConnection: forwardTo('db'), - me(parent, args, ctx, info) { - // check if there is a current user ID - if (!ctx.request.userId) { - return null; - } - return ctx.db.query.user( - { - where: { id: ctx.request.userId }, - }, - info - ); - }, - async users(parent, args, ctx, info) { - // 1. Check if they are logged in - if (!ctx.request.userId) { - throw new Error('You must be logged in!'); - } - console.log(ctx.request.userId); - // 2. Check if the user has the permissions to query all the users - hasPermission(ctx.request.user, ['ADMIN', 'PERMISSIONUPDATE']); - - // 2. if they do, query all the users! - return ctx.db.query.users({}, info); - }, - async order(parent, args, ctx, info) { - // 1. Make sure they are logged in - if (!ctx.request.userId) { - throw new Error('You arent logged in!'); - } - // 2. Query the current order - const order = await ctx.db.query.order( - { - where: { id: args.id }, - }, - info - ); - // 3. Check if the have the permissions to see this order - const ownsOrder = order.user.id === ctx.request.userId; - const hasPermissionToSeeOrder = ctx.request.user.permissions.includes('ADMIN'); - if (!ownsOrder || !hasPermission) { - throw new Error('You cant see this buddd'); - } - // 4. Return the order - return order; - }, - async orders(parent, args, ctx, info) { - const { userId } = ctx.request; - if (!userId) { - throw new Error('you must be signed in!'); - } - return ctx.db.query.orders( - { - where: { - user: { id: userId }, - }, - }, - info - ); - }, -}; - -module.exports = Query; -- cgit v1.3