authorize.go (2967B)
1 // GoToSocial 2 // Copyright (C) GoToSocial Authors admin@gotosocial.org 3 // SPDX-License-Identifier: AGPL-3.0-or-later 4 // 5 // This program is free software: you can redistribute it and/or modify 6 // it under the terms of the GNU Affero General Public License as published by 7 // the Free Software Foundation, either version 3 of the License, or 8 // (at your option) any later version. 9 // 10 // This program is distributed in the hope that it will be useful, 11 // but WITHOUT ANY WARRANTY; without even the implied warranty of 12 // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 13 // GNU Affero General Public License for more details. 14 // 15 // You should have received a copy of the GNU Affero General Public License 16 // along with this program. If not, see <http://www.gnu.org/licenses/>. 17 18 package followrequests 19 20 import ( 21 "errors" 22 "net/http" 23 24 "github.com/gin-gonic/gin" 25 apiutil "github.com/superseriousbusiness/gotosocial/internal/api/util" 26 "github.com/superseriousbusiness/gotosocial/internal/gtserror" 27 "github.com/superseriousbusiness/gotosocial/internal/oauth" 28 ) 29 30 // FollowRequestAuthorizePOSTHandler swagger:operation POST /api/v1/follow_requests/{account_id}/authorize authorizeFollowRequest 31 // 32 // Accept/authorize follow request from the given account ID. 33 // 34 // Accept a follow request and put the requesting account in your 'followers' list. 35 // 36 // --- 37 // tags: 38 // - follow_requests 39 // 40 // produces: 41 // - application/json 42 // 43 // parameters: 44 // - 45 // name: account_id 46 // type: string 47 // description: ID of the account requesting to follow you. 48 // in: path 49 // required: true 50 // 51 // security: 52 // - OAuth2 Bearer: 53 // - write:follows 54 // 55 // responses: 56 // '200': 57 // name: account relationship 58 // description: Your relationship to this account. 59 // schema: 60 // "$ref": "#/definitions/accountRelationship" 61 // '400': 62 // description: bad request 63 // '401': 64 // description: unauthorized 65 // '404': 66 // description: not found 67 // '406': 68 // description: not acceptable 69 // '500': 70 // description: internal server error 71 func (m *Module) FollowRequestAuthorizePOSTHandler(c *gin.Context) { 72 authed, err := oauth.Authed(c, true, true, true, true) 73 if err != nil { 74 apiutil.ErrorHandler(c, gtserror.NewErrorUnauthorized(err, err.Error()), m.processor.InstanceGetV1) 75 return 76 } 77 78 if _, err := apiutil.NegotiateAccept(c, apiutil.JSONAcceptHeaders...); err != nil { 79 apiutil.ErrorHandler(c, gtserror.NewErrorNotAcceptable(err, err.Error()), m.processor.InstanceGetV1) 80 return 81 } 82 83 originAccountID := c.Param(IDKey) 84 if originAccountID == "" { 85 err := errors.New("no account id specified") 86 apiutil.ErrorHandler(c, gtserror.NewErrorBadRequest(err, err.Error()), m.processor.InstanceGetV1) 87 return 88 } 89 90 relationship, errWithCode := m.processor.FollowRequestAccept(c.Request.Context(), authed, originAccountID) 91 if errWithCode != nil { 92 apiutil.ErrorHandler(c, errWithCode, m.processor.InstanceGetV1) 93 return 94 } 95 96 c.JSON(http.StatusOK, relationship) 97 }