b6b345f245
- Refactor email verification and password reset utilities to use new email service. - Introduce email delivery queue and notification delivery model for better tracking. - Enhance file validation and storage services for improved security and ownership management. - Add cron job for cleaning inactive notifications with retention policy. - Update document worker to handle document generation and storage more efficiently. - Implement logging improvements in activity and log workers. - Create comprehensive documentation for new API endpoints and services. - Add unit tests for file validation and notification policies to ensure robustness.
64 lines
1.7 KiB
JavaScript
64 lines
1.7 KiB
JavaScript
/**
|
|
* Copyright (c) 2026 Niolla
|
|
* All rights reserved.
|
|
*
|
|
* This source code is proprietary and confidential.
|
|
* Unauthorized copying, modification, distribution, or use
|
|
* of this file, via any medium, is strictly prohibited.
|
|
*/
|
|
|
|
// app/routes/profile.routes.js
|
|
|
|
const express = require("express");
|
|
const router = express.Router();
|
|
const profileController = require("../controllers/profile.controller.js");
|
|
const authController = require("../controllers/auth.controller.js");
|
|
const { authenticate } = require("../middleware/auth.middleware");
|
|
|
|
const {
|
|
authorizedAccountType,
|
|
checkPermission,
|
|
} = require("../middleware/permission.middleware");
|
|
const PERMISSIONS = require("../constants/permissions");
|
|
const { sensitiveLimiter } = require("../middleware/rateLimit.middleware");
|
|
const validate = require("../middleware/validate.middleware");
|
|
const schemas = require("../validation/auth.schemas");
|
|
const { requireOwnership } = require("../middleware/permission.middleware");
|
|
|
|
router.post("/req-reset-password", sensitiveLimiter, validate(schemas.forgot), authController.forgotPassword);
|
|
|
|
router.post("/reset-password", sensitiveLimiter, validate(schemas.reset), authController.resetPassword);
|
|
|
|
router.post(
|
|
"/change-password",
|
|
authenticate,
|
|
validate(schemas.change),
|
|
authController.changePassword,
|
|
);
|
|
|
|
router.get(
|
|
"/me/avatar",
|
|
authenticate,
|
|
profileController.getProfileAvatar,
|
|
);
|
|
router.get(
|
|
"/me/background",
|
|
authenticate,
|
|
profileController.getProfileBackgroundImage,
|
|
);
|
|
router.get(
|
|
"/avatar/:userId",
|
|
authenticate,
|
|
requireOwnership("userId"),
|
|
profileController.getProfileAvatar,
|
|
);
|
|
|
|
router.get(
|
|
"/background/:userId",
|
|
authenticate,
|
|
requireOwnership("userId"),
|
|
profileController.getProfileBackgroundImage,
|
|
);
|
|
|
|
module.exports = router;
|