forked from makersacademy/chitter-challenge
-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathapp.rb
More file actions
188 lines (136 loc) · 4.35 KB
/
app.rb
File metadata and controls
188 lines (136 loc) · 4.35 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
# file: app.rb
require 'sinatra'
require "sinatra/reloader"
require 'bcrypt'
require_relative 'lib/database_connection'
require_relative 'lib/user_repository'
require_relative 'lib/peep_repository'
DatabaseConnection.connect
class Application < Sinatra::Base
enable :sessions
configure :development do
register Sinatra::Reloader
also_reload 'lib/user_repository'
also_reload 'lib/peep_repository'
end
# ------------- Homepage Route ----------------------------------------
get '/' do
if session[:user_id] != nil
# No user id in the session
# so the user is not logged in.
return redirect('/userpage')
end
peep_repo = PeepRepository.new
@user_repo = UserRepository.new
@peeps = peep_repo.all.sort_by! { |peep| peep.time }.reverse!
return erb(:index)
end
post '/' do
session[:user_id] = nil
return redirect('/')
end
# ------------- Sign Up Routes ----------------------------------------
get '/signup' do
return erb(:signup)
end
post '/signup' do
users = UserRepository.new
if users.all.any? { |user| user.email == params[:email] }
status 400
return "Email address already signed up."
end
if users.all.any? { |user| user.username == params[:username] }
status 400
return "Username already taken, please choose another."
end
if invalid_signup_params? || invalid_user_params?
status 400
return 'Invalid credentials, please try again.'
end
encrypted_password = BCrypt::Password.create(params[:password])
user = User.new
user.name = params[:name]
user.email = params[:email]
user.username = params[:username]
user.password = encrypted_password
users.create(user)
user = users.find_by_username(user.username)
session[:user_id] = user.id
redirect "/userpage"
end
# ------------- Peeps Routes ----------------------------------------
get '/peeps' do
peep_repo = PeepRepository.new
@user_repo = UserRepository.new
@peeps = peep_repo.all.sort_by! { |peep| peep.time }.reverse!
return erb(:peeps)
end
post '/peeps' do
if invalid_peep_params?
status 400
return 'Invalid peep, please try again.'
end
peep = Peep.new
peep_repo = PeepRepository.new
@user_repo = UserRepository.new
peep.content = params[:content]
peep.time = DateTime.now
peep.user_id = params[:user_id]
peep_repo.create(peep)
@peeps = peep_repo.all.sort_by! { |peep| peep.time }.reverse!
return erb(:peeps)
end
# ------------- User Page Routes ----------------------------------------
post '/userpage' do
if invalid_user_params?
status 400
return 'Invalid user details.'
end
user_repo = UserRepository.new
if user_repo.all.none? { |user| user.username == params[:username] }
status 400
return "Username does not exist, please try again."
end
username = params[:username]
entered_password = params[:password]
user = user_repo.find_by_username(username)
stored_password = BCrypt::Password.new(user.password)
if stored_password == entered_password
# Set the user ID in session
session[:user_id] = user.id
redirect "/userpage"
else
status 400
return 'Invalid user details.'
end
end
get '/userpage' do
if session[:user_id] == nil
# No user id in the session
# so the user is not logged in.
return redirect('/')
else
# The user is logged in, display
# their account page.
user_id = session[:user_id]
@user_repo = UserRepository.new
peep_repo = PeepRepository.new
@user = @user_repo.find(user_id)
@peeps = peep_repo.find_by_owner(@user.id).sort_by! { |peep| peep.time }.reverse!
@tagged_peeps = peep_repo.find_by_tagged_user(@user.id)
return erb(:userpage)
end
end
# ------------- helper methods ----------------------------------------
def invalid_user_params?
params[:username] == nil || params[:username].match?(/[^a-zA-Z0-9 ]/) ||
params[:password] == nil || params[:password] == ""
end
def invalid_peep_params?
params[:content] == nil || params[:content] == ""
end
def invalid_signup_params?
params[:name] == nil || params[:name].match?(/[^a-zA-Z0-9 ]/) ||
params[:email] == nil || !params[:email].match?(/[@]/)
end
end