cloud-api/src/user/router.py

69 lines
2.6 KiB
Python
Raw Normal View History

2026-04-06 12:41:49 +01:00
"""
2026-05-28 14:55:44 +01:00
Router endpoints for the user module
2026-04-06 12:41:49 +01:00
Endpoints:
2026-05-28 14:55:44 +01:00
- [GET](/user/self/claims): [OIDC claims]: Returns all OIDC claims associated with the currently logged-in user.
- [GET](/user/self/db): [OIDC claims]: Returns details about the currently logged-in user from the hub db.
- [GET](/user/): [super admin]: Returns user(id) details.
- [DELETE](/user/): [super admin]: Removes a User(id) from the hub database.
2026-04-06 12:41:49 +01:00
"""
from fastapi import APIRouter
from starlette import status
2026-04-06 12:41:49 +01:00
from src.user.schemas import UserResponse, OIDCClaims, UserDeleteUserRequest
from src.user.dependencies import user_model_claims_dependency, user_model_query_dependency, user_model_body_dependency
2026-04-06 12:41:49 +01:00
from src.auth.dependencies import super_admin_dependency
2026-04-06 12:41:49 +01:00
from src.auth.service import claims_dependency
from src.database import db_dependency
router = APIRouter(
prefix="/user",
tags=["User"],
2026-04-06 12:41:49 +01:00
)
@router.get("/self/claims", response_model=OIDCClaims, status_code=status.HTTP_200_OK, responses={
status.HTTP_200_OK: {"description": "Successful retrieval from database"},
})
2026-04-06 12:41:49 +01:00
async def current_user_claims(user: claims_dependency):
"""
Returns the full OIDC claims associated with the currently logged-in user.
"""
user["allowed_origins"] = user.get("allowed-origins", [])
2026-04-06 12:41:49 +01:00
return user
@router.get("/self/db", response_model=UserResponse, status_code=status.HTTP_200_OK, responses={
status.HTTP_404_NOT_FOUND: {"description": "User not found"},
status.HTTP_200_OK: {"description": "Successful retrieval from database"},
})
async def current_user(user_model: user_model_claims_dependency):
"""
Returns the database details associated with the currently logged-in user.
"""
2026-04-06 12:41:49 +01:00
return user_model
@router.get("/", response_model=UserResponse, status_code=status.HTTP_200_OK, responses={
status.HTTP_404_NOT_FOUND: {"description": "User not found"},
status.HTTP_200_OK: {"description": "Successful retrieval from database"},
})
async def get_user_by_id(user_model: user_model_query_dependency, su: super_admin_dependency):
"""
Returns the database details associated with the provided user ID.
"""
2026-04-06 12:41:49 +01:00
return user_model
@router.delete("/", status_code=status.HTTP_204_NO_CONTENT, responses={
status.HTTP_204_NO_CONTENT: {"description": "User deleted"},
status.HTTP_404_NOT_FOUND: {"description": "User not found"},
})
async def delete_user_by_id(db: db_dependency, user_model: user_model_body_dependency, su: super_admin_dependency, request_model: UserDeleteUserRequest):
"""
Deletes the user with the provided ID from the database. This will not remove them from OIDC, and they will be automatically readded on next login.
"""
2026-04-06 12:41:49 +01:00
db.delete(user_model)
db.commit()