Settings pages: - Redesign layout to match Sendkit (max-w-4xl, space-y-12, Separator sections) - Merge Members page into Workspace settings with Table, invite Dialog, ConfirmDeleteModal - Add workspace logo upload/delete routes and controller methods - Translate all hardcoded strings in Workspace.vue modals Language system: - Drop languages table, replace language_id FK with locale string column on users - Create config/languages.php for available languages and default locale - Add Spanish (es) translations (13 files) - Simplify HandleInertiaRequests, ProfileController, RegisteredUserController Code quality: - Add declare(strict_types=1) to all PHP files - Fix MastodonPublisher using wrong attribute (filename -> original_filename) - Fix HasMediaTest for new has_photo/photo_url accessors - Fix PublishToSocialPlatformTest type error revealed by strict_types - Remove orphaned Language model from AppServiceProvider morph map - Update User TypeScript interface (has_photo, photo_url, locale) - Eager load media relation on workspaces to prevent N+1 - Add 8 new tests for workspace logo upload/delete - Update workspace settings test to assert members/invitations props All 710 tests passing.
78 lines
2 KiB
PHP
78 lines
2 KiB
PHP
<?php
|
|
|
|
declare(strict_types=1);
|
|
|
|
namespace App\Policies;
|
|
|
|
use App\Enums\UserWorkspace\Role as WorkspaceRole;
|
|
use App\Models\User;
|
|
use App\Models\Workspace;
|
|
|
|
class WorkspacePolicy
|
|
{
|
|
public function viewAny(User $user): bool
|
|
{
|
|
return true;
|
|
}
|
|
|
|
public function view(User $user, Workspace $workspace): bool
|
|
{
|
|
return $this->isOwner($user, $workspace) || $workspace->members->contains($user);
|
|
}
|
|
|
|
public function create(User $user): bool
|
|
{
|
|
return true;
|
|
}
|
|
|
|
public function update(User $user, Workspace $workspace): bool
|
|
{
|
|
return $this->isOwner($user, $workspace) || $this->isAdmin($user, $workspace);
|
|
}
|
|
|
|
public function delete(User $user, Workspace $workspace): bool
|
|
{
|
|
return $this->isOwner($user, $workspace);
|
|
}
|
|
|
|
public function restore(User $user, Workspace $workspace): bool
|
|
{
|
|
return $this->isOwner($user, $workspace);
|
|
}
|
|
|
|
public function forceDelete(User $user, Workspace $workspace): bool
|
|
{
|
|
return $this->isOwner($user, $workspace);
|
|
}
|
|
|
|
public function manageTeam(User $user, Workspace $workspace): bool
|
|
{
|
|
return $this->isOwner($user, $workspace) || $this->isAdmin($user, $workspace);
|
|
}
|
|
|
|
public function manageAccounts(User $user, Workspace $workspace): bool
|
|
{
|
|
return $this->isOwner($user, $workspace) || $this->isAdmin($user, $workspace);
|
|
}
|
|
|
|
public function createPost(User $user, Workspace $workspace): bool
|
|
{
|
|
return $this->isOwner($user, $workspace) || $workspace->members->contains($user);
|
|
}
|
|
|
|
private function isOwner(User $user, Workspace $workspace): bool
|
|
{
|
|
return $user->id === $workspace->user_id;
|
|
}
|
|
|
|
private function isAdmin(User $user, Workspace $workspace): bool
|
|
{
|
|
$member = $workspace->members()->where('user_id', $user->id)->first();
|
|
|
|
if (! $member) {
|
|
return false;
|
|
}
|
|
|
|
return $member->pivot->role === WorkspaceRole::Admin->value;
|
|
}
|
|
}
|