ApproveSendCountRequest.js 6.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141
  1. const API = require("../../../lib/API")
  2. const db = require("../../../plugin/DataBase/db")
  3. const AccessControl = require("../../../lib/AccessControl")
  4. const { BaseStdResponse } = require("../../../BaseStdResponse")
  5. const EmailTemplate = require("../../../plugin/Email/emailTemplate")
  6. const { insertLedgerRecord } = require("../../../lib/Lepao/CountLedger")
  7. class ApproveSendCountRequest extends API {
  8. constructor() {
  9. super()
  10. this.setPath("/Admin/Goods/SendCountRequest/Approve")
  11. this.setMethod("POST")
  12. }
  13. async onRequest(req, res) {
  14. let { uuid, session, id } = req.body
  15. id = Number(id)
  16. if ([uuid, session, id].some(value => value === "" || value === null || value === undefined || Number.isNaN(id)))
  17. return res.json({ ...BaseStdResponse.MISSING_PARAMETER })
  18. if (!Number.isInteger(id) || id <= 0)
  19. return res.json({ ...BaseStdResponse.ERR, msg: "参数错误" })
  20. if (!await AccessControl.checkSession(uuid, session))
  21. return res.status(401).json({ ...BaseStdResponse.ACCESS_DENIED })
  22. let permission = await AccessControl.getPermission(uuid)
  23. if (!permission.includes("admin") && !permission.includes("service"))
  24. return res.json({ ...BaseStdResponse.PERMISSION_DENIED })
  25. const conn = await db.connect()
  26. try {
  27. await conn.beginTransaction()
  28. const [requestRows] = await conn.execute(
  29. `SELECT id, sender_uuid, receiver_user_id, count, status
  30. FROM lepao_send_count_request
  31. WHERE id = ?
  32. FOR UPDATE`,
  33. [id]
  34. )
  35. if (!requestRows || requestRows.length !== 1) {
  36. await conn.rollback()
  37. return res.json({ ...BaseStdResponse.MISSING_FILE, msg: "未找到赠送申请记录!" })
  38. }
  39. const request = requestRows[0]
  40. if (request.status !== "pending") {
  41. await conn.rollback()
  42. return res.json({ ...BaseStdResponse.ERR, msg: "该申请已审核,请刷新后重试!" })
  43. }
  44. const [receiverRows] = await conn.execute(
  45. "SELECT uuid, lepao_count FROM users WHERE id = ? FOR UPDATE",
  46. [request.receiver_user_id]
  47. )
  48. if (!receiverRows || receiverRows.length !== 1) {
  49. await conn.rollback()
  50. return res.json({ ...BaseStdResponse.ERR, msg: "接收用户不存在,审核通过失败!" })
  51. }
  52. const receiverUuid = receiverRows[0].uuid
  53. const beforeCount = Number(receiverRows[0].lepao_count || 0)
  54. const [incResult] = await conn.execute(
  55. "UPDATE users SET lepao_count = lepao_count + ? WHERE id = ?",
  56. [request.count, request.receiver_user_id]
  57. )
  58. if (!incResult || incResult.affectedRows !== 1) {
  59. await conn.rollback()
  60. return res.json({ ...BaseStdResponse.ERR, msg: "接收用户不存在,审核通过失败!" })
  61. }
  62. const [updateResult] = await conn.execute(
  63. `UPDATE lepao_send_count_request
  64. SET status = 'approved', reviewer_uuid = ?, reviewed_at = NOW(), reject_reason = NULL
  65. WHERE id = ?`,
  66. [uuid, id]
  67. )
  68. if (!updateResult || updateResult.affectedRows !== 1) {
  69. await conn.rollback()
  70. return res.json({ ...BaseStdResponse.ERR, msg: "更新审核状态失败,请稍后再试!" })
  71. }
  72. await insertLedgerRecord({
  73. executor: conn,
  74. userUuid: receiverUuid,
  75. delta: Number(request.count || 0),
  76. balanceBefore: beforeCount,
  77. balanceAfter: beforeCount + Number(request.count || 0),
  78. bizType: 'gift_receive',
  79. bizId: `send_request:${id}`,
  80. operatorUuid: uuid
  81. })
  82. await conn.commit()
  83. const requestId = request.id
  84. const reviewTime = new Date().getTime()
  85. // 非阻塞通知接收人,不影响审核结果
  86. Promise.resolve().then(async () => {
  87. try {
  88. const infoSql = `
  89. SELECT
  90. ru.email AS receiver_email,
  91. ru.username AS receiver_username,
  92. su.username AS sender_username
  93. FROM users ru
  94. LEFT JOIN users su ON su.uuid = ?
  95. WHERE ru.id = ?
  96. `
  97. const infoRows = await db.query(infoSql, [request.sender_uuid, request.receiver_user_id])
  98. if (!infoRows || infoRows.length !== 1 || !infoRows[0].receiver_email) {
  99. this.logger.warn(`[SendCountNotify][approve][requestId=${requestId}] 接收人邮箱为空或用户不存在,跳过通知`)
  100. return
  101. }
  102. await EmailTemplate.sendCountRequestApproved(infoRows[0].receiver_email, {
  103. requestId,
  104. senderUsername: infoRows[0].sender_username || "未知用户",
  105. count: request.count,
  106. reviewTime
  107. })
  108. } catch (mailErr) {
  109. this.logger.error(`[SendCountNotify][approve][requestId=${requestId}] 接收人通知发送失败:${mailErr.message || "未知错误"}`)
  110. }
  111. })
  112. return res.json({ ...BaseStdResponse.OK, msg: "审核通过成功" })
  113. } catch (err) {
  114. try { await conn.rollback() } catch (_) { }
  115. this.logger.error(`审核通过赠送申请失败!${err.message || "未知错误"}`)
  116. return res.json({ ...BaseStdResponse.ERR, msg: "审核通过失败,请稍后再试!" })
  117. } finally {
  118. conn.release()
  119. }
  120. }
  121. }
  122. module.exports.ApproveSendCountRequest = ApproveSendCountRequest