This repository has been archived on 2022-08-14. You can view files and clone it, but cannot push or open issues or pull requests.
outline/server/models/User.js

118 lines
2.9 KiB
JavaScript
Raw Normal View History

// @flow
2016-04-29 05:25:37 +00:00
import crypto from 'crypto';
2016-09-12 00:47:22 +00:00
import bcrypt from 'bcrypt';
2017-10-20 06:30:31 +00:00
import uuid from 'uuid';
import JWT from 'jsonwebtoken';
2017-04-27 04:47:03 +00:00
import { DataTypes, sequelize, encryptedFields } from '../sequelize';
import { publicS3Endpoint, uploadToS3FromUrl } from '../utils/s3';
2017-12-19 04:47:48 +00:00
import { sendEmail } from '../mailer';
2016-04-29 05:25:37 +00:00
2016-09-12 00:47:22 +00:00
const BCRYPT_COST = process.env.NODE_ENV !== 'production' ? 4 : 12;
2017-04-27 04:47:03 +00:00
const User = sequelize.define(
'user',
{
id: {
type: DataTypes.UUID,
defaultValue: DataTypes.UUIDV4,
primaryKey: true,
2016-04-29 05:25:37 +00:00
},
email: { type: DataTypes.STRING },
username: { type: DataTypes.STRING },
2017-04-27 04:47:03 +00:00
name: DataTypes.STRING,
2017-10-19 07:49:22 +00:00
avatarUrl: { type: DataTypes.STRING, allowNull: true },
2017-04-27 04:47:03 +00:00
password: DataTypes.VIRTUAL,
passwordDigest: DataTypes.STRING,
isAdmin: DataTypes.BOOLEAN,
slackAccessToken: encryptedFields.vault('slackAccessToken'),
2018-05-29 03:31:53 +00:00
service: { type: DataTypes.STRING, allowNull: true, unique: true },
serviceId: { type: DataTypes.STRING, allowNull: true, unique: true },
2017-04-27 04:47:03 +00:00
slackData: DataTypes.JSONB,
jwtSecret: encryptedFields.vault('jwtSecret'),
2018-03-04 23:38:51 +00:00
suspendedAt: DataTypes.DATE,
suspendedById: DataTypes.UUID,
2017-04-27 04:47:03 +00:00
},
{
2018-03-04 23:38:51 +00:00
getterMethods: {
isSuspended() {
return !!this.suspendedAt;
},
},
2017-04-27 04:47:03 +00:00
indexes: [
{
fields: ['email'],
},
],
}
);
2016-04-29 05:25:37 +00:00
// Class methods
User.associate = models => {
User.hasMany(models.ApiKey, { as: 'apiKeys' });
User.hasMany(models.Document, { as: 'documents' });
User.hasMany(models.View, { as: 'views' });
};
// Instance methods
User.prototype.getJwtToken = function() {
return JWT.sign({ id: this.id }, this.jwtSecret);
};
User.prototype.verifyPassword = function(password) {
return new Promise((resolve, reject) => {
if (!this.passwordDigest) {
resolve(false);
return;
}
bcrypt.compare(password, this.passwordDigest, (err, ok) => {
if (err) {
reject(err);
return;
}
resolve(ok);
});
});
};
const uploadAvatar = async model => {
const endpoint = publicS3Endpoint();
if (model.avatarUrl && !model.avatarUrl.startsWith(endpoint)) {
const newUrl = await uploadToS3FromUrl(
model.avatarUrl,
`avatars/${model.id}/${uuid.v4()}`
);
if (newUrl) model.avatarUrl = newUrl;
}
2017-10-19 07:49:22 +00:00
};
2017-04-27 04:47:03 +00:00
const setRandomJwtSecret = model => {
2016-04-29 05:25:37 +00:00
model.jwtSecret = crypto.randomBytes(64).toString('hex');
};
const hashPassword = model => {
2016-09-12 00:47:22 +00:00
if (!model.password) {
return null;
}
return new Promise((resolve, reject) => {
bcrypt.hash(model.password, BCRYPT_COST, (err, digest) => {
if (err) {
reject(err);
return;
}
2016-04-29 05:25:37 +00:00
2016-09-12 00:47:22 +00:00
model.passwordDigest = digest;
resolve();
});
});
};
User.beforeCreate(hashPassword);
User.beforeUpdate(hashPassword);
User.beforeSave(uploadAvatar);
2016-04-29 05:25:37 +00:00
User.beforeCreate(setRandomJwtSecret);
2017-12-19 04:47:48 +00:00
User.afterCreate(user => sendEmail('welcome', user.email));
2016-04-29 05:25:37 +00:00
export default User;