blob: 730dc4f168de800113776d9ee6ef8eaea9d117f7 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
|
<?php
namespace JsonApi\Routes\Forum;
use Forum\Posting;
use JsonApi\Errors\AuthorizationFailedException;
use JsonApi\Errors\RecordNotFoundException;
use Psr\Http\Message\ServerRequestInterface as Request;
use Psr\Http\Message\ResponseInterface as Response;
use JsonApi\JsonApiController;
class PostingShow extends JsonApiController
{
protected $allowedIncludePaths = [
\JsonApi\Schemas\Forum\Posting::REL_DISCUSSION,
\JsonApi\Schemas\Forum\Posting::REL_AUTHOR,
\JsonApi\Schemas\Forum\Posting::REL_POSTING,
\JsonApi\Schemas\Forum\Posting::REL_OPENGRAPH_URLS,
\JsonApi\Schemas\Forum\Posting::REL_REACTIONS,
\JsonApi\Schemas\Forum\Posting::REL_REACTIONS_USER
];
public function __invoke(Request $request, Response $response, $args)
{
$posting = Posting::find($args['posting_id']);
if (!$posting) {
throw new RecordNotFoundException();
}
$range = get_object_by_range_id($posting->range_id);
if (!$range) {
throw new RecordNotFoundException();
}
$user = $this->getUser($request);
if (!Authority::canShowForum($user, $range)) {
throw new AuthorizationFailedException();
}
return $this->getContentResponse($posting);
}
}
|