Files
harheimertc/.output/server/chunks/routes/api/members.post.mjs

71 lines
1.9 KiB
JavaScript

import { d as defineEventHandler, g as getCookie, c as createError, r as readBody } from '../../nitro/nitro.mjs';
import { b as verifyToken, e as getUserById } from '../../_/auth.mjs';
import { s as saveMember } from '../../_/members.mjs';
import 'node:http';
import 'node:https';
import 'node:events';
import 'node:buffer';
import 'node:fs';
import 'node:path';
import 'node:crypto';
import 'node:url';
import 'bcryptjs';
import 'jsonwebtoken';
import 'fs';
import 'path';
import '../../_/encryption.mjs';
import 'crypto';
const members_post = defineEventHandler(async (event) => {
try {
const token = getCookie(event, "auth_token");
if (!token) {
throw createError({
statusCode: 401,
message: "Nicht authentifiziert."
});
}
const decoded = verifyToken(token);
if (!decoded) {
throw createError({
statusCode: 401,
message: "Ung\xFCltiges Token."
});
}
const user = await getUserById(decoded.id);
if (!user || user.role !== "admin" && user.role !== "vorstand") {
throw createError({
statusCode: 403,
message: "Keine Berechtigung zum Bearbeiten von Mitgliedern."
});
}
const body = await readBody(event);
const { id, firstName, lastName, email, phone, address, notes } = body;
if (!firstName || !lastName) {
throw createError({
statusCode: 400,
message: "Vorname und Nachname sind erforderlich."
});
}
await saveMember({
id: id || void 0,
firstName,
lastName,
email: email || "",
phone: phone || "",
address: address || "",
notes: notes || ""
});
return {
success: true,
message: "Mitglied erfolgreich gespeichert."
};
} catch (error) {
console.error("Fehler beim Speichern des Mitglieds:", error);
throw error;
}
});
export { members_post as default };
//# sourceMappingURL=members.post.mjs.map