* Add more granular OAuth scopes * Add human-readable descriptions of the new scopes * Ensure new scopes look good on the app UI * Add tests * Group scopes in screen and color-code dangerous ones * Fix wrong extra scope
		
			
				
	
	
		
			66 lines
		
	
	
		
			2.3 KiB
		
	
	
	
		
			Ruby
		
	
	
	
	
	
			
		
		
	
	
			66 lines
		
	
	
		
			2.3 KiB
		
	
	
	
		
			Ruby
		
	
	
	
	
	
# frozen_string_literal: true
 | 
						|
 | 
						|
class Api::V1::AccountsController < Api::BaseController
 | 
						|
  before_action -> { authorize_if_got_token! :read, :'read:accounts' }, except: [:follow, :unfollow, :block, :unblock, :mute, :unmute]
 | 
						|
  before_action -> { doorkeeper_authorize! :follow, :'write:follows' }, only: [:follow, :unfollow]
 | 
						|
  before_action -> { doorkeeper_authorize! :follow, :'write:mutes' }, only: [:mute, :unmute]
 | 
						|
  before_action -> { doorkeeper_authorize! :follow, :'write:blocks' }, only: [:block, :unblock]
 | 
						|
 | 
						|
  before_action :require_user!, except: [:show]
 | 
						|
  before_action :set_account
 | 
						|
  before_action :check_account_suspension, only: [:show]
 | 
						|
 | 
						|
  respond_to :json
 | 
						|
 | 
						|
  def show
 | 
						|
    render json: @account, serializer: REST::AccountSerializer
 | 
						|
  end
 | 
						|
 | 
						|
  def follow
 | 
						|
    FollowService.new.call(current_user.account, @account.acct, reblogs: truthy_param?(:reblogs))
 | 
						|
 | 
						|
    options = @account.locked? ? {} : { following_map: { @account.id => { reblogs: truthy_param?(:reblogs) } }, requested_map: { @account.id => false } }
 | 
						|
 | 
						|
    render json: @account, serializer: REST::RelationshipSerializer, relationships: relationships(options)
 | 
						|
  end
 | 
						|
 | 
						|
  def block
 | 
						|
    BlockService.new.call(current_user.account, @account)
 | 
						|
    render json: @account, serializer: REST::RelationshipSerializer, relationships: relationships
 | 
						|
  end
 | 
						|
 | 
						|
  def mute
 | 
						|
    MuteService.new.call(current_user.account, @account, notifications: truthy_param?(:notifications))
 | 
						|
    render json: @account, serializer: REST::RelationshipSerializer, relationships: relationships
 | 
						|
  end
 | 
						|
 | 
						|
  def unfollow
 | 
						|
    UnfollowService.new.call(current_user.account, @account)
 | 
						|
    render json: @account, serializer: REST::RelationshipSerializer, relationships: relationships
 | 
						|
  end
 | 
						|
 | 
						|
  def unblock
 | 
						|
    UnblockService.new.call(current_user.account, @account)
 | 
						|
    render json: @account, serializer: REST::RelationshipSerializer, relationships: relationships
 | 
						|
  end
 | 
						|
 | 
						|
  def unmute
 | 
						|
    UnmuteService.new.call(current_user.account, @account)
 | 
						|
    render json: @account, serializer: REST::RelationshipSerializer, relationships: relationships
 | 
						|
  end
 | 
						|
 | 
						|
  private
 | 
						|
 | 
						|
  def set_account
 | 
						|
    @account = Account.find(params[:id])
 | 
						|
  end
 | 
						|
 | 
						|
  def relationships(**options)
 | 
						|
    AccountRelationshipsPresenter.new([@account.id], current_user.account_id, options)
 | 
						|
  end
 | 
						|
 | 
						|
  def check_account_suspension
 | 
						|
    gone if @account.suspended?
 | 
						|
  end
 | 
						|
end
 |