Files
chadebebe/app/api/public/items/[id]/unclaim/route.ts

51 lines
2.0 KiB
TypeScript

import { NextRequest, NextResponse } from 'next/server';
import { and, eq } from 'drizzle-orm';
import { db, wishlistItems, wishlists, itemClaims } from '@/lib/db';
import { getGuestFromRequest, verifyAdminToken } from '@/lib/auth/tokens';
export async function POST(
request: NextRequest,
{ params }: { params: Promise<{ id: string }> }
) {
try {
const guest = await getGuestFromRequest(request);
const isAdmin = verifyAdminToken(request);
if (!guest && !isAdmin) {
return NextResponse.json({ error: 'Convite necessário' }, { status: 401 });
}
const { id } = await params;
const body = await request.json().catch(() => ({}));
const targetGuestId = isAdmin && typeof body?.guestId === 'string' ? body.guestId : guest?.id;
if (!targetGuestId) {
return NextResponse.json({ error: 'Missing guest' }, { status: 400 });
}
const itemRows = await db.select().from(wishlistItems).where(eq(wishlistItems.id, id)).limit(1);
if (itemRows.length === 0) return NextResponse.json({ error: 'Item not found' }, { status: 404 });
const wl = await db.select().from(wishlists).where(eq(wishlists.id, itemRows[0].wishlistId)).limit(1);
if (wl.length === 0) return NextResponse.json({ error: 'Wishlist not found' }, { status: 404 });
if (!wl[0].isPublic && !isAdmin) {
return NextResponse.json({ error: 'This wishlist is private' }, { status: 403 });
}
const result = await db
.delete(itemClaims)
.where(and(eq(itemClaims.itemId, id), eq(itemClaims.guestId, targetGuestId)))
.returning();
if (result.length === 0) {
return NextResponse.json({ error: 'Reserva não encontrada' }, { status: 404 });
}
await db.update(wishlistItems).set({ updatedAt: new Date() }).where(eq(wishlistItems.id, id));
return NextResponse.json({ success: true });
} catch (err) {
console.error('Error unclaiming item:', err);
return NextResponse.json({ error: 'Failed to unclaim item' }, { status: 500 });
}
}