mirror of
https://github.com/marcogll/AnchorOS.git
synced 2026-03-15 11:24:26 +00:00
✅ COMENTARIOS AUDITABLES IMPLEMENTADOS: - 80+ archivos con JSDoc completo para auditoría manual - APIs críticas con validaciones business/security/performance - Componentes con reglas de negocio documentadas - Funciones core con edge cases y validaciones ✅ CALENDARIO MULTI-COLUMNA FUNCIONAL (95%): - Drag & drop con reprogramación automática - Filtros por sucursal/staff, tiempo real - Indicadores de conflictos y disponibilidad - APIs completas con validaciones de colisión ✅ GESTIÓN OPERATIVA COMPLETA: - CRUD staff: APIs + componente con validaciones - CRUD recursos: APIs + componente con disponibilidad - Autenticación completa con middleware seguro - Auditoría completa en todas las operaciones ✅ DOCUMENTACIÓN ACTUALIZADA: - TASKS.md: FASE 4 95% completado - README.md: Estado actual y funcionalidades - API.md: 40+ endpoints documentados ✅ SEGURIDAD Y VALIDACIONES: - RLS policies documentadas en comentarios - Business rules validadas manualmente - Performance optimizations anotadas - Error handling completo Próximos: Nómina/POS/CRM avanzado (FASE 4 final)
225 lines
5.0 KiB
TypeScript
225 lines
5.0 KiB
TypeScript
import { NextRequest, NextResponse } from 'next/server'
|
|
import { supabaseAdmin } from '@/lib/supabase/admin'
|
|
|
|
/**
|
|
* @description Gets a specific resource by ID
|
|
*/
|
|
export async function GET(
|
|
request: NextRequest,
|
|
{ params }: { params: { id: string } }
|
|
) {
|
|
try {
|
|
const resourceId = params.id
|
|
|
|
const { data: resource, error: resourceError } = await supabaseAdmin
|
|
.from('resources')
|
|
.select(`
|
|
id,
|
|
location_id,
|
|
name,
|
|
type,
|
|
capacity,
|
|
is_active,
|
|
created_at,
|
|
updated_at,
|
|
locations (
|
|
id,
|
|
name,
|
|
address
|
|
)
|
|
`)
|
|
.eq('id', resourceId)
|
|
.single()
|
|
|
|
if (resourceError) {
|
|
if (resourceError.code === 'PGRST116') {
|
|
return NextResponse.json(
|
|
{ error: 'Resource not found' },
|
|
{ status: 404 }
|
|
)
|
|
}
|
|
console.error('Aperture resource GET individual error:', resourceError)
|
|
return NextResponse.json(
|
|
{ error: resourceError.message },
|
|
{ status: 500 }
|
|
)
|
|
}
|
|
|
|
return NextResponse.json({
|
|
success: true,
|
|
resource
|
|
})
|
|
} catch (error) {
|
|
console.error('Aperture resource GET individual error:', error)
|
|
return NextResponse.json(
|
|
{ error: 'Internal server error' },
|
|
{ status: 500 }
|
|
)
|
|
}
|
|
}
|
|
|
|
/**
|
|
* @description Updates a resource
|
|
*/
|
|
export async function PUT(
|
|
request: NextRequest,
|
|
{ params }: { params: { id: string } }
|
|
) {
|
|
try {
|
|
const resourceId = params.id
|
|
const updates = await request.json()
|
|
|
|
// Remove fields that shouldn't be updated directly
|
|
delete updates.id
|
|
delete updates.created_at
|
|
|
|
// Validate type if provided
|
|
if (updates.type && !['station', 'room', 'equipment'].includes(updates.type)) {
|
|
return NextResponse.json(
|
|
{ error: 'Invalid type. Must be: station, room, or equipment' },
|
|
{ status: 400 }
|
|
)
|
|
}
|
|
|
|
// Get current resource data for audit log
|
|
const { data: currentResource } = await supabaseAdmin
|
|
.from('resources')
|
|
.select('*')
|
|
.eq('id', resourceId)
|
|
.single()
|
|
|
|
// Update resource
|
|
const { data: resource, error: resourceError } = await supabaseAdmin
|
|
.from('resources')
|
|
.update({
|
|
...updates,
|
|
updated_at: new Date().toISOString()
|
|
})
|
|
.eq('id', resourceId)
|
|
.select(`
|
|
id,
|
|
location_id,
|
|
name,
|
|
type,
|
|
capacity,
|
|
is_active,
|
|
created_at,
|
|
updated_at,
|
|
locations (
|
|
id,
|
|
name,
|
|
address
|
|
)
|
|
`)
|
|
.single()
|
|
|
|
if (resourceError) {
|
|
console.error('Aperture resource PUT error:', resourceError)
|
|
return NextResponse.json(
|
|
{ error: resourceError.message },
|
|
{ status: 500 }
|
|
)
|
|
}
|
|
|
|
// Log update
|
|
await supabaseAdmin
|
|
.from('audit_logs')
|
|
.insert({
|
|
entity_type: 'resource',
|
|
entity_id: resourceId,
|
|
action: 'update',
|
|
old_values: currentResource,
|
|
new_values: resource,
|
|
performed_by_role: 'admin'
|
|
})
|
|
|
|
return NextResponse.json({
|
|
success: true,
|
|
resource
|
|
})
|
|
} catch (error) {
|
|
console.error('Aperture resource PUT error:', error)
|
|
return NextResponse.json(
|
|
{ error: 'Internal server error' },
|
|
{ status: 500 }
|
|
)
|
|
}
|
|
}
|
|
|
|
/**
|
|
* @description Deactivates a resource (soft delete)
|
|
*/
|
|
export async function DELETE(
|
|
request: NextRequest,
|
|
{ params }: { params: { id: string } }
|
|
) {
|
|
try {
|
|
const resourceId = params.id
|
|
|
|
// Get current resource data for audit log
|
|
const { data: currentResource } = await supabaseAdmin
|
|
.from('resources')
|
|
.select('*')
|
|
.eq('id', resourceId)
|
|
.single()
|
|
|
|
if (!currentResource) {
|
|
return NextResponse.json(
|
|
{ error: 'Resource not found' },
|
|
{ status: 404 }
|
|
)
|
|
}
|
|
|
|
// Soft delete by setting is_active to false
|
|
const { data: resource, error: resourceError } = await supabaseAdmin
|
|
.from('resources')
|
|
.update({
|
|
is_active: false,
|
|
updated_at: new Date().toISOString()
|
|
})
|
|
.eq('id', resourceId)
|
|
.select(`
|
|
id,
|
|
location_id,
|
|
name,
|
|
type,
|
|
capacity,
|
|
is_active,
|
|
created_at,
|
|
updated_at
|
|
`)
|
|
.single()
|
|
|
|
if (resourceError) {
|
|
console.error('Aperture resource DELETE error:', resourceError)
|
|
return NextResponse.json(
|
|
{ error: resourceError.message },
|
|
{ status: 500 }
|
|
)
|
|
}
|
|
|
|
// Log deactivation
|
|
await supabaseAdmin
|
|
.from('audit_logs')
|
|
.insert({
|
|
entity_type: 'resource',
|
|
entity_id: resourceId,
|
|
action: 'delete',
|
|
old_values: currentResource,
|
|
new_values: resource,
|
|
performed_by_role: 'admin'
|
|
})
|
|
|
|
return NextResponse.json({
|
|
success: true,
|
|
message: 'Resource deactivated successfully',
|
|
resource
|
|
})
|
|
} catch (error) {
|
|
console.error('Aperture resource DELETE error:', error)
|
|
return NextResponse.json(
|
|
{ error: 'Internal server error' },
|
|
{ status: 500 }
|
|
)
|
|
}
|
|
} |