* feat: add plugin system * fix db docker build * fix hammerhead readme, add strava subscription news to docs * fixes and sdk improvements * fix: reduce Meilisearch load, debounce federation sync (#1012) * optimize meili trail index * several fixes --------- Co-authored-by: Flomp <Flomp@users.noreply.github.com> * Bump svelte from 5.55.5 to 5.56.0 in /docs (#1032) Bumps [svelte](https://github.com/sveltejs/svelte/tree/HEAD/packages/svelte) from 5.55.5 to 5.56.0. - [Release notes](https://github.com/sveltejs/svelte/releases) - [Changelog](https://github.com/sveltejs/svelte/blob/main/packages/svelte/CHANGELOG.md) - [Commits](https://github.com/sveltejs/svelte/commits/svelte@5.56.0/packages/svelte) --- updated-dependencies: - dependency-name: svelte dependency-version: 5.56.0 dependency-type: direct:production ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Flomp <Flomp@users.noreply.github.com> * Release v0.19.2 (#1035) * chore: release v0.19.2 * add changelog --------- Co-authored-by: Flomp <26000991+Flomp@users.noreply.github.com> Co-authored-by: Christian Beutel <> * speed up plugin sync and several small fixes * concepts for security improvements and process stability * improve concept * security concept implemented * remove insecure TLS * worker concept implemented * fixes and cleanup * fixes * docu * mermaid, namings * WASM plugin host improvements, plugin logging * fix db migration * Improve plugin config and category mapping UI * fixes * further fixes * remove manual test sync * fix db migration and strava mapping * type added, UI improvements * fix plugin card toggle clickable area * optimize synch status card layout * plugin type 'trails' instead of 'integration' * session auth validation in UI * fix komoot date and waypoints * improve category mapping * fix send to hammerhead: trail name * plugin setup error handling improved * fix review findings * re-mapping added * rename remote_category --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: Flomp <Flomp@users.noreply.github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: Flomp <26000991+Flomp@users.noreply.github.com>
46 lines
1.1 KiB
Go
46 lines
1.1 KiB
Go
package util
|
|
|
|
import (
|
|
"github.com/pocketbase/dbx"
|
|
"github.com/pocketbase/pocketbase/core"
|
|
)
|
|
|
|
// TrailViewableByUser mirrors the trails view/read rule for custom backend
|
|
// routes that load a trail server-side and therefore bypass PocketBase's normal
|
|
// collection API permission checks.
|
|
func TrailViewableByUser(app core.App, trail *core.Record, userID string, shareToken string) bool {
|
|
if trail == nil || userID == "" {
|
|
return false
|
|
}
|
|
if trail.GetBool("public") {
|
|
return true
|
|
}
|
|
|
|
actor, err := app.FindFirstRecordByData("activitypub_actors", "user", userID)
|
|
if err != nil {
|
|
return false
|
|
}
|
|
if trail.GetString("author") == actor.Id {
|
|
return true
|
|
}
|
|
|
|
share, err := app.FindFirstRecordByFilter(
|
|
"trail_share",
|
|
"trail={:trail} && actor={:actor}",
|
|
dbx.Params{"trail": trail.Id, "actor": actor.Id},
|
|
)
|
|
if err == nil && share != nil {
|
|
return true
|
|
}
|
|
|
|
if shareToken == "" {
|
|
return false
|
|
}
|
|
linkShare, err := app.FindFirstRecordByFilter(
|
|
"trail_link_share",
|
|
"trail={:trail} && token={:token}",
|
|
dbx.Params{"trail": trail.Id, "token": shareToken},
|
|
)
|
|
return err == nil && linkShare != nil
|
|
}
|