Files
Zumri-Backend/app/routes/profile.routes.js
T
Sathira Sri Sathara b6b345f245 feat: Implement Phase 2 cross-cutting services with email and notification enhancements
- Refactor email verification and password reset utilities to use new email service.
- Introduce email delivery queue and notification delivery model for better tracking.
- Enhance file validation and storage services for improved security and ownership management.
- Add cron job for cleaning inactive notifications with retention policy.
- Update document worker to handle document generation and storage more efficiently.
- Implement logging improvements in activity and log workers.
- Create comprehensive documentation for new API endpoints and services.
- Add unit tests for file validation and notification policies to ensure robustness.
2026-09-03 14:22:34 +05:30

64 lines
1.7 KiB
JavaScript

/**
* Copyright (c) 2026 Niolla
* All rights reserved.
*
* This source code is proprietary and confidential.
* Unauthorized copying, modification, distribution, or use
* of this file, via any medium, is strictly prohibited.
*/
// app/routes/profile.routes.js
const express = require("express");
const router = express.Router();
const profileController = require("../controllers/profile.controller.js");
const authController = require("../controllers/auth.controller.js");
const { authenticate } = require("../middleware/auth.middleware");
const {
authorizedAccountType,
checkPermission,
} = require("../middleware/permission.middleware");
const PERMISSIONS = require("../constants/permissions");
const { sensitiveLimiter } = require("../middleware/rateLimit.middleware");
const validate = require("../middleware/validate.middleware");
const schemas = require("../validation/auth.schemas");
const { requireOwnership } = require("../middleware/permission.middleware");
router.post("/req-reset-password", sensitiveLimiter, validate(schemas.forgot), authController.forgotPassword);
router.post("/reset-password", sensitiveLimiter, validate(schemas.reset), authController.resetPassword);
router.post(
"/change-password",
authenticate,
validate(schemas.change),
authController.changePassword,
);
router.get(
"/me/avatar",
authenticate,
profileController.getProfileAvatar,
);
router.get(
"/me/background",
authenticate,
profileController.getProfileBackgroundImage,
);
router.get(
"/avatar/:userId",
authenticate,
requireOwnership("userId"),
profileController.getProfileAvatar,
);
router.get(
"/background/:userId",
authenticate,
requireOwnership("userId"),
profileController.getProfileBackgroundImage,
);
module.exports = router;