b6b345f245
- Refactor email verification and password reset utilities to use new email service. - Introduce email delivery queue and notification delivery model for better tracking. - Enhance file validation and storage services for improved security and ownership management. - Add cron job for cleaning inactive notifications with retention policy. - Update document worker to handle document generation and storage more efficiently. - Implement logging improvements in activity and log workers. - Create comprehensive documentation for new API endpoints and services. - Add unit tests for file validation and notification policies to ensure robustness.
7 lines
417 B
JavaScript
7 lines
417 B
JavaScript
const { authenticate } = require("./auth.middleware");
|
|
const { ACCOUNT_TYPES } = require("../constants/accountTypes");
|
|
module.exports = (req, res, next) => authenticate(req, res, () => {
|
|
if ([ACCOUNT_TYPES.ADMIN, ACCOUNT_TYPES.SUPER_ADMIN].includes(req.user.accountType)) return next();
|
|
return res.status(403).json({ success: false, error: { code: "FORBIDDEN", message: "Administrative access required" } });
|
|
});
|