🎉 init: 小龙的工作空间

This commit is contained in:
大海
2026-06-06 10:40:48 +08:00
commit a188ee1426
3201 changed files with 231817 additions and 0 deletions
+7
View File
@@ -0,0 +1,7 @@
node_modules/
dist/
data/
.env
*.db
*.db-journal
*.db-wal
+97
View File
@@ -0,0 +1,97 @@
# ShopApp — Backend API
> 一款支持商品浏览、购物车、在线支付和物流追踪的电商应用。
## Tech Stack
- **Runtime**: Node.js
- **Framework**: Fastify 5
- **Language**: TypeScript
- **Database**: SQLite (better-sqlite3)
- **Auth**: JWT + bcrypt
## Getting Started
```bash
# Install dependencies
npm install
# Development (hot reload)
npm run dev
# Build
npm run build
# Production start
npm run start
# Run tests
npm test
```
## Project Structure
```
src/
├── index.ts # Server entry point
├── db/
│ ├── schema.ts # SQLite schema
│ └── client.ts # Database client
├── routes/
│ ├── auth.ts # Auth routes (register/login/me)
│ └── *.ts # CRUD routes
├── services/
│ └── *.ts # Business logic
├── middleware/
│ └── auth.ts # JWT middleware
├── types/
│ └── index.ts # TypeScript types
└── __tests__/
└── *.test.ts # Tests
```
## API Endpoints
### Auth
- `POST /api/auth/register` — Register
- `POST /api/auth/login` — Login
- `GET /api/auth/me` — Current user (auth required)
### Resources
#### products
- `GET /api/products` — List all
- `GET /api/products/:id` — Get by ID
- `POST /api/products` — Create
- `PUT /api/products/:id` — Update
- `DELETE /api/products/:id` — Delete
#### orders
- `GET /api/orders` — List all
- `GET /api/orders/:id` — Get by ID
- `POST /api/orders` — Create
- `PUT /api/orders/:id` — Update
- `DELETE /api/orders/:id` — Delete
#### stocktaking
- `GET /api/stocktaking` — List all
- `GET /api/stocktaking/:id` — Get by ID
- `POST /api/stocktaking` — Create
- `PUT /api/stocktaking/:id` — Update
- `DELETE /api/stocktaking/:id` — Delete
#### suppliers
- `GET /api/suppliers` — List all
- `GET /api/suppliers/:id` — Get by ID
- `POST /api/suppliers` — Create
- `PUT /api/suppliers/:id` — Update
- `DELETE /api/suppliers/:id` — Delete
#### stock_alerts
- `GET /api/stock_alerts` — List all
- `GET /api/stock_alerts/:id` — Get by ID
- `POST /api/stock_alerts` — Create
- `PUT /api/stock_alerts/:id` — Update
- `DELETE /api/stock_alerts/:id` — Delete
### System
- `GET /api/health` — Health check
+27
View File
@@ -0,0 +1,27 @@
{
"name": "shopapp",
"version": "0.1.0",
"private": true,
"type": "module",
"scripts": {
"dev": "tsx watch src/index.ts",
"build": "tsc",
"start": "node dist/index.js",
"test": "node --import tsx --test src/__tests__/*.test.ts",
"test:watch": "node --import tsx --test --watch src/__tests__/*.test.ts"
},
"dependencies": {
"fastify": "^5.0.0",
"@fastify/cors": "^10.0.0",
"@fastify/jwt": "^9.0.0",
"sql.js": "^1.12.0",
"bcrypt": "^5.1.0"
},
"devDependencies": {
"@types/node": "^22.0.0",
"@types/bcrypt": "^5.0.0",
"typescript": "^5.6.0",
"tsx": "^4.0.0",
"pino-pretty": "^11.0.0"
}
}
@@ -0,0 +1,96 @@
// Auth routes test
import { describe, it, before, after } from "node:test";
import assert from "node:assert/strict";
import { buildApp } from "../index.js";
import type { FastifyInstance } from "fastify";
let app: FastifyInstance;
let token: string;
before(async () => {
process.env.JWT_SECRET = "test-secret";
process.env.DATABASE_URL = ":memory:";
app = await buildApp();
await app.ready();
});
after(async () => {
await app.close();
});
describe("POST /api/auth/register", () => {
it("registers a new user", async () => {
const res = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: "testuser", password: "password123" },
});
assert.equal(res.statusCode, 201);
const body = res.json();
assert.ok(body.token);
assert.equal(body.user.username, "testuser");
token = body.token;
});
it("rejects duplicate username", async () => {
const res = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: "testuser", password: "password123" },
});
assert.equal(res.statusCode, 409);
});
it("rejects short password", async () => {
const res = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: "user2", password: "123" },
});
assert.equal(res.statusCode, 400);
});
});
describe("POST /api/auth/login", () => {
it("logs in with correct credentials", async () => {
const res = await app.inject({
method: "POST",
url: "/api/auth/login",
payload: { username: "testuser", password: "password123" },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.ok(body.token);
token = body.token;
});
it("rejects wrong password", async () => {
const res = await app.inject({
method: "POST",
url: "/api/auth/login",
payload: { username: "testuser", password: "wrongpassword" },
});
assert.equal(res.statusCode, 401);
});
});
describe("GET /api/auth/me", () => {
it("returns current user with valid token", async () => {
const res = await app.inject({
method: "GET",
url: "/api/auth/me",
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.equal(body.data.username, "testuser");
});
it("rejects without token", async () => {
const res = await app.inject({
method: "GET",
url: "/api/auth/me",
});
assert.equal(res.statusCode, 401);
});
});
@@ -0,0 +1,124 @@
// Inventory CRUD test
import { describe, it, before, after } from "node:test";
import assert from "node:assert/strict";
import { buildApp } from "../index.js";
import type { FastifyInstance } from "fastify";
let app: FastifyInstance;
let token: string;
let createdId: string;
before(async () => {
process.env.JWT_SECRET = "test-secret";
process.env.DATABASE_URL = ":memory:";
app = await buildApp();
await app.ready();
// Register and login to get a token
const regRes = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: `test_${Date.now()}`, password: "password123" },
});
token = regRes.json().token;
});
after(async () => {
await app.close();
});
describe("GET /api/inventory", () => {
it("returns empty list", async () => {
const res = await app.inject({
method: "GET",
url: "/api/inventory",
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.ok(Array.isArray(body.data));
});
});
describe("POST /api/inventory", () => {
it("creates a inventory", async () => {
const res = await app.inject({
method: "POST",
url: "/api/inventory",
headers: { authorization: `Bearer ${token}` },
payload: {
"userId": "00000000-0000-0000-0000-000000000001",
"productId": "00000000-0000-0000-0000-000000000001",
"quantity": 1,
"warehouse": "sample-warehouse",
"minStock": 1,
"maxStock": 1
},
});
assert.equal(res.statusCode, 201);
const body = res.json();
assert.ok(body.data.id);
createdId = body.data.id;
});
});
describe("GET /api/inventory/:id", () => {
it("returns the created inventory", async () => {
const res = await app.inject({
method: "GET",
url: `/api/inventory/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.equal(body.data.id, createdId);
});
it("returns 404 for nonexistent id", async () => {
const res = await app.inject({
method: "GET",
url: `/api/inventory/nonexistent`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
describe("PUT /api/inventory/:id", () => {
it("updates the inventory", async () => {
const res = await app.inject({
method: "PUT",
url: `/api/inventory/${createdId}`,
headers: { authorization: `Bearer ${token}` },
payload: {
"userId": "00000000-0000-0000-0000-000000000001",
"productId": "00000000-0000-0000-0000-000000000001",
"quantity": 1,
"warehouse": "sample-warehouse",
"minStock": 1,
"maxStock": 1
},
});
assert.equal(res.statusCode, 200);
});
});
describe("DELETE /api/inventory/:id", () => {
it("deletes the inventory", async () => {
const res = await app.inject({
method: "DELETE",
url: `/api/inventory/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 204);
});
it("returns 404 after delete", async () => {
const res = await app.inject({
method: "GET",
url: `/api/inventory/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
@@ -0,0 +1,122 @@
// Logistic CRUD test
import { describe, it, before, after } from "node:test";
import assert from "node:assert/strict";
import { buildApp } from "../index.js";
import type { FastifyInstance } from "fastify";
let app: FastifyInstance;
let token: string;
let createdId: string;
before(async () => {
process.env.JWT_SECRET = "test-secret";
process.env.DATABASE_URL = ":memory:";
app = await buildApp();
await app.ready();
// Register and login to get a token
const regRes = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: `test_${Date.now()}`, password: "password123" },
});
token = regRes.json().token;
});
after(async () => {
await app.close();
});
describe("GET /api/logistics", () => {
it("returns empty list", async () => {
const res = await app.inject({
method: "GET",
url: "/api/logistics",
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.ok(Array.isArray(body.data));
});
});
describe("POST /api/logistics", () => {
it("creates a logistic", async () => {
const res = await app.inject({
method: "POST",
url: "/api/logistics",
headers: { authorization: `Bearer ${token}` },
payload: {
"orderId": "00000000-0000-0000-0000-000000000001",
"carrier": "sample-carrier",
"trackingNumber": "sample-trackingnumber",
"status": "sample-status",
"events": "sample-events"
},
});
assert.equal(res.statusCode, 201);
const body = res.json();
assert.ok(body.data.id);
createdId = body.data.id;
});
});
describe("GET /api/logistics/:id", () => {
it("returns the created logistic", async () => {
const res = await app.inject({
method: "GET",
url: `/api/logistics/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.equal(body.data.id, createdId);
});
it("returns 404 for nonexistent id", async () => {
const res = await app.inject({
method: "GET",
url: `/api/logistics/nonexistent`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
describe("PUT /api/logistics/:id", () => {
it("updates the logistic", async () => {
const res = await app.inject({
method: "PUT",
url: `/api/logistics/${createdId}`,
headers: { authorization: `Bearer ${token}` },
payload: {
"orderId": "00000000-0000-0000-0000-000000000001",
"carrier": "sample-carrier",
"trackingNumber": "sample-trackingnumber",
"status": "sample-status",
"events": "sample-events"
},
});
assert.equal(res.statusCode, 200);
});
});
describe("DELETE /api/logistics/:id", () => {
it("deletes the logistic", async () => {
const res = await app.inject({
method: "DELETE",
url: `/api/logistics/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 204);
});
it("returns 404 after delete", async () => {
const res = await app.inject({
method: "GET",
url: `/api/logistics/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
@@ -0,0 +1,120 @@
// OrderItem CRUD test
import { describe, it, before, after } from "node:test";
import assert from "node:assert/strict";
import { buildApp } from "../index.js";
import type { FastifyInstance } from "fastify";
let app: FastifyInstance;
let token: string;
let createdId: string;
before(async () => {
process.env.JWT_SECRET = "test-secret";
process.env.DATABASE_URL = ":memory:";
app = await buildApp();
await app.ready();
// Register and login to get a token
const regRes = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: `test_${Date.now()}`, password: "password123" },
});
token = regRes.json().token;
});
after(async () => {
await app.close();
});
describe("GET /api/order_items", () => {
it("returns empty list", async () => {
const res = await app.inject({
method: "GET",
url: "/api/order_items",
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.ok(Array.isArray(body.data));
});
});
describe("POST /api/order_items", () => {
it("creates a order_item", async () => {
const res = await app.inject({
method: "POST",
url: "/api/order_items",
headers: { authorization: `Bearer ${token}` },
payload: {
"orderId": "00000000-0000-0000-0000-000000000001",
"productId": "00000000-0000-0000-0000-000000000001",
"quantity": 1,
"unitPrice": 1
},
});
assert.equal(res.statusCode, 201);
const body = res.json();
assert.ok(body.data.id);
createdId = body.data.id;
});
});
describe("GET /api/order_items/:id", () => {
it("returns the created order_item", async () => {
const res = await app.inject({
method: "GET",
url: `/api/order_items/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.equal(body.data.id, createdId);
});
it("returns 404 for nonexistent id", async () => {
const res = await app.inject({
method: "GET",
url: `/api/order_items/nonexistent`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
describe("PUT /api/order_items/:id", () => {
it("updates the order_item", async () => {
const res = await app.inject({
method: "PUT",
url: `/api/order_items/${createdId}`,
headers: { authorization: `Bearer ${token}` },
payload: {
"orderId": "00000000-0000-0000-0000-000000000001",
"productId": "00000000-0000-0000-0000-000000000001",
"quantity": 1,
"unitPrice": 1
},
});
assert.equal(res.statusCode, 200);
});
});
describe("DELETE /api/order_items/:id", () => {
it("deletes the order_item", async () => {
const res = await app.inject({
method: "DELETE",
url: `/api/order_items/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 204);
});
it("returns 404 after delete", async () => {
const res = await app.inject({
method: "GET",
url: `/api/order_items/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
@@ -0,0 +1,119 @@
// Order CRUD test
import { describe, it, before, after } from "node:test";
import assert from "node:assert/strict";
import { buildApp } from "../index.js";
import type { FastifyInstance } from "fastify";
let app: FastifyInstance;
let token: string;
let createdId: string;
let payload: Record<string, unknown>;
before(async () => {
process.env.JWT_SECRET = "test-secret";
process.env.DATABASE_URL = ":memory:";
app = await buildApp();
await app.ready();
// Register and login to get a token
const regRes = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: `test_${Date.now()}`, password: "password123" },
});
token = regRes.json().token;
// Resolve user FK references with the registered user's real ID
payload = {
"userId": regRes.json().user.id,
"status": "sample-status",
"totalAmount": 1,
"addressId": "sample-addressid"
};
});
after(async () => {
await app.close();
});
describe("GET /api/orders", () => {
it("returns empty list", async () => {
const res = await app.inject({
method: "GET",
url: "/api/orders",
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.ok(Array.isArray(body.data));
});
});
describe("POST /api/orders", () => {
it("creates a order", async () => {
const res = await app.inject({
method: "POST",
url: "/api/orders",
headers: { authorization: `Bearer ${token}` },
payload,
});
assert.equal(res.statusCode, 201);
const body = res.json();
assert.ok(body.data.id);
createdId = body.data.id;
});
});
describe("GET /api/orders/:id", () => {
it("returns the created order", async () => {
const res = await app.inject({
method: "GET",
url: `/api/orders/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.equal(body.data.id, createdId);
});
it("returns 404 for nonexistent id", async () => {
const res = await app.inject({
method: "GET",
url: `/api/orders/nonexistent`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
describe("PUT /api/orders/:id", () => {
it("updates the order", async () => {
const res = await app.inject({
method: "PUT",
url: `/api/orders/${createdId}`,
headers: { authorization: `Bearer ${token}` },
payload,
});
assert.equal(res.statusCode, 200);
});
});
describe("DELETE /api/orders/:id", () => {
it("deletes the order", async () => {
const res = await app.inject({
method: "DELETE",
url: `/api/orders/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 204);
});
it("returns 404 after delete", async () => {
const res = await app.inject({
method: "GET",
url: `/api/orders/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
@@ -0,0 +1,121 @@
// Product CRUD test
import { describe, it, before, after } from "node:test";
import assert from "node:assert/strict";
import { buildApp } from "../index.js";
import type { FastifyInstance } from "fastify";
let app: FastifyInstance;
let token: string;
let createdId: string;
let payload: Record<string, unknown>;
before(async () => {
process.env.JWT_SECRET = "test-secret";
process.env.DATABASE_URL = ":memory:";
app = await buildApp();
await app.ready();
// Register and login to get a token
const regRes = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: `test_${Date.now()}`, password: "password123" },
});
token = regRes.json().token;
// Resolve user FK references with the registered user's real ID
payload = {
"userId": regRes.json().user.id,
"title": "sample-title",
"description": "sample-description",
"price": 1,
"stock": 1,
"images": "sample-images"
};
});
after(async () => {
await app.close();
});
describe("GET /api/products", () => {
it("returns empty list", async () => {
const res = await app.inject({
method: "GET",
url: "/api/products",
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.ok(Array.isArray(body.data));
});
});
describe("POST /api/products", () => {
it("creates a product", async () => {
const res = await app.inject({
method: "POST",
url: "/api/products",
headers: { authorization: `Bearer ${token}` },
payload,
});
assert.equal(res.statusCode, 201);
const body = res.json();
assert.ok(body.data.id);
createdId = body.data.id;
});
});
describe("GET /api/products/:id", () => {
it("returns the created product", async () => {
const res = await app.inject({
method: "GET",
url: `/api/products/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.equal(body.data.id, createdId);
});
it("returns 404 for nonexistent id", async () => {
const res = await app.inject({
method: "GET",
url: `/api/products/nonexistent`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
describe("PUT /api/products/:id", () => {
it("updates the product", async () => {
const res = await app.inject({
method: "PUT",
url: `/api/products/${createdId}`,
headers: { authorization: `Bearer ${token}` },
payload,
});
assert.equal(res.statusCode, 200);
});
});
describe("DELETE /api/products/:id", () => {
it("deletes the product", async () => {
const res = await app.inject({
method: "DELETE",
url: `/api/products/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 204);
});
it("returns 404 after delete", async () => {
const res = await app.inject({
method: "GET",
url: `/api/products/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
@@ -0,0 +1,119 @@
// StockAlerts CRUD test
import { describe, it, before, after } from "node:test";
import assert from "node:assert/strict";
import { buildApp } from "../index.js";
import type { FastifyInstance } from "fastify";
let app: FastifyInstance;
let token: string;
let createdId: string;
let payload: Record<string, unknown>;
before(async () => {
process.env.JWT_SECRET = "test-secret";
process.env.DATABASE_URL = ":memory:";
app = await buildApp();
await app.ready();
// Register and login to get a token
const regRes = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: `test_${Date.now()}`, password: "password123" },
});
token = regRes.json().token;
// Resolve user FK references with the registered user's real ID
payload = {
"userId": regRes.json().user.id,
"productName": "sample-productname",
"currentQty": 1,
"threshold": 1
};
});
after(async () => {
await app.close();
});
describe("GET /api/stock_alerts", () => {
it("returns empty list", async () => {
const res = await app.inject({
method: "GET",
url: "/api/stock_alerts",
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.ok(Array.isArray(body.data));
});
});
describe("POST /api/stock_alerts", () => {
it("creates a stock_alert", async () => {
const res = await app.inject({
method: "POST",
url: "/api/stock_alerts",
headers: { authorization: `Bearer ${token}` },
payload,
});
assert.equal(res.statusCode, 201);
const body = res.json();
assert.ok(body.data.id);
createdId = body.data.id;
});
});
describe("GET /api/stock_alerts/:id", () => {
it("returns the created stock_alert", async () => {
const res = await app.inject({
method: "GET",
url: `/api/stock_alerts/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.equal(body.data.id, createdId);
});
it("returns 404 for nonexistent id", async () => {
const res = await app.inject({
method: "GET",
url: `/api/stock_alerts/nonexistent`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
describe("PUT /api/stock_alerts/:id", () => {
it("updates the stock_alert", async () => {
const res = await app.inject({
method: "PUT",
url: `/api/stock_alerts/${createdId}`,
headers: { authorization: `Bearer ${token}` },
payload,
});
assert.equal(res.statusCode, 200);
});
});
describe("DELETE /api/stock_alerts/:id", () => {
it("deletes the stock_alert", async () => {
const res = await app.inject({
method: "DELETE",
url: `/api/stock_alerts/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 204);
});
it("returns 404 after delete", async () => {
const res = await app.inject({
method: "GET",
url: `/api/stock_alerts/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
@@ -0,0 +1,121 @@
// Stocktaking CRUD test
import { describe, it, before, after } from "node:test";
import assert from "node:assert/strict";
import { buildApp } from "../index.js";
import type { FastifyInstance } from "fastify";
let app: FastifyInstance;
let token: string;
let createdId: string;
let payload: Record<string, unknown>;
before(async () => {
process.env.JWT_SECRET = "test-secret";
process.env.DATABASE_URL = ":memory:";
app = await buildApp();
await app.ready();
// Register and login to get a token
const regRes = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: `test_${Date.now()}`, password: "password123" },
});
token = regRes.json().token;
// Resolve user FK references with the registered user's real ID
payload = {
"userId": regRes.json().user.id,
"warehouse": "sample-warehouse",
"productName": "sample-productname",
"expectedQty": 1,
"actualQty": 1,
"diff": 1
};
});
after(async () => {
await app.close();
});
describe("GET /api/stocktaking", () => {
it("returns empty list", async () => {
const res = await app.inject({
method: "GET",
url: "/api/stocktaking",
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.ok(Array.isArray(body.data));
});
});
describe("POST /api/stocktaking", () => {
it("creates a stocktaking", async () => {
const res = await app.inject({
method: "POST",
url: "/api/stocktaking",
headers: { authorization: `Bearer ${token}` },
payload,
});
assert.equal(res.statusCode, 201);
const body = res.json();
assert.ok(body.data.id);
createdId = body.data.id;
});
});
describe("GET /api/stocktaking/:id", () => {
it("returns the created stocktaking", async () => {
const res = await app.inject({
method: "GET",
url: `/api/stocktaking/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.equal(body.data.id, createdId);
});
it("returns 404 for nonexistent id", async () => {
const res = await app.inject({
method: "GET",
url: `/api/stocktaking/nonexistent`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
describe("PUT /api/stocktaking/:id", () => {
it("updates the stocktaking", async () => {
const res = await app.inject({
method: "PUT",
url: `/api/stocktaking/${createdId}`,
headers: { authorization: `Bearer ${token}` },
payload,
});
assert.equal(res.statusCode, 200);
});
});
describe("DELETE /api/stocktaking/:id", () => {
it("deletes the stocktaking", async () => {
const res = await app.inject({
method: "DELETE",
url: `/api/stocktaking/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 204);
});
it("returns 404 after delete", async () => {
const res = await app.inject({
method: "GET",
url: `/api/stocktaking/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
@@ -0,0 +1,121 @@
// Suppliers CRUD test
import { describe, it, before, after } from "node:test";
import assert from "node:assert/strict";
import { buildApp } from "../index.js";
import type { FastifyInstance } from "fastify";
let app: FastifyInstance;
let token: string;
let createdId: string;
let payload: Record<string, unknown>;
before(async () => {
process.env.JWT_SECRET = "test-secret";
process.env.DATABASE_URL = ":memory:";
app = await buildApp();
await app.ready();
// Register and login to get a token
const regRes = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: `test_${Date.now()}`, password: "password123" },
});
token = regRes.json().token;
// Resolve user FK references with the registered user's real ID
payload = {
"userId": regRes.json().user.id,
"name": "sample-name",
"contact": "sample-contact",
"phone": "sample-phone",
"email": "sample-email",
"address": "sample-address"
};
});
after(async () => {
await app.close();
});
describe("GET /api/suppliers", () => {
it("returns empty list", async () => {
const res = await app.inject({
method: "GET",
url: "/api/suppliers",
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.ok(Array.isArray(body.data));
});
});
describe("POST /api/suppliers", () => {
it("creates a supplier", async () => {
const res = await app.inject({
method: "POST",
url: "/api/suppliers",
headers: { authorization: `Bearer ${token}` },
payload,
});
assert.equal(res.statusCode, 201);
const body = res.json();
assert.ok(body.data.id);
createdId = body.data.id;
});
});
describe("GET /api/suppliers/:id", () => {
it("returns the created supplier", async () => {
const res = await app.inject({
method: "GET",
url: `/api/suppliers/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.equal(body.data.id, createdId);
});
it("returns 404 for nonexistent id", async () => {
const res = await app.inject({
method: "GET",
url: `/api/suppliers/nonexistent`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
describe("PUT /api/suppliers/:id", () => {
it("updates the supplier", async () => {
const res = await app.inject({
method: "PUT",
url: `/api/suppliers/${createdId}`,
headers: { authorization: `Bearer ${token}` },
payload,
});
assert.equal(res.statusCode, 200);
});
});
describe("DELETE /api/suppliers/:id", () => {
it("deletes the supplier", async () => {
const res = await app.inject({
method: "DELETE",
url: `/api/suppliers/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 204);
});
it("returns 404 after delete", async () => {
const res = await app.inject({
method: "GET",
url: `/api/suppliers/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
@@ -0,0 +1,118 @@
// User CRUD test
import { describe, it, before, after } from "node:test";
import assert from "node:assert/strict";
import { buildApp } from "../index.js";
import type { FastifyInstance } from "fastify";
let app: FastifyInstance;
let token: string;
let createdId: string;
before(async () => {
process.env.JWT_SECRET = "test-secret";
process.env.DATABASE_URL = ":memory:";
app = await buildApp();
await app.ready();
// Register and login to get a token
const regRes = await app.inject({
method: "POST",
url: "/api/auth/register",
payload: { username: `test_${Date.now()}`, password: "password123" },
});
token = regRes.json().token;
});
after(async () => {
await app.close();
});
describe("GET /api/users", () => {
it("returns empty list", async () => {
const res = await app.inject({
method: "GET",
url: "/api/users",
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.ok(Array.isArray(body.data));
});
});
describe("POST /api/users", () => {
it("creates a user", async () => {
const res = await app.inject({
method: "POST",
url: "/api/users",
headers: { authorization: `Bearer ${token}` },
payload: {
"phone": "sample-phone",
"nickname": "sample-nickname",
"avatarUrl": "sample-avatarurl"
},
});
assert.equal(res.statusCode, 201);
const body = res.json();
assert.ok(body.data.id);
createdId = body.data.id;
});
});
describe("GET /api/users/:id", () => {
it("returns the created user", async () => {
const res = await app.inject({
method: "GET",
url: `/api/users/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 200);
const body = res.json();
assert.equal(body.data.id, createdId);
});
it("returns 404 for nonexistent id", async () => {
const res = await app.inject({
method: "GET",
url: `/api/users/nonexistent`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
describe("PUT /api/users/:id", () => {
it("updates the user", async () => {
const res = await app.inject({
method: "PUT",
url: `/api/users/${createdId}`,
headers: { authorization: `Bearer ${token}` },
payload: {
"phone": "sample-phone",
"nickname": "sample-nickname",
"avatarUrl": "sample-avatarurl"
},
});
assert.equal(res.statusCode, 200);
});
});
describe("DELETE /api/users/:id", () => {
it("deletes the user", async () => {
const res = await app.inject({
method: "DELETE",
url: `/api/users/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 204);
});
it("returns 404 after delete", async () => {
const res = await app.inject({
method: "GET",
url: `/api/users/${createdId}`,
headers: { authorization: `Bearer ${token}` },
});
assert.equal(res.statusCode, 404);
});
});
@@ -0,0 +1,93 @@
// SQLite database client (sql.js — pure WASM, no native deps)
import initSqlJs, { type Database, type BindParams } from "sql.js";
import { createTables } from "./schema.js";
let db: Database | null = null;
let initPromise: Promise<Database> | null = null;
/** Initialize the database (call once at startup). */
export async function initDb(dbPath?: string): Promise<Database> {
if (db) return db;
if (initPromise) return initPromise;
initPromise = (async () => {
const SQL = await initSqlJs();
const path = dbPath || process.env.DATABASE_URL || ":memory:";
// Try to load existing database from file
let buffer: ArrayLike<number> | undefined;
if (path !== ":memory:") {
try {
const fs = await import("node:fs/promises");
const data = await fs.readFile(path);
buffer = new Uint8Array(data);
} catch {
// File doesn't exist yet — start fresh
}
}
db = new SQL.Database(buffer);
db.run("PRAGMA foreign_keys = ON");
createTables(db);
return db;
})();
return initPromise;
}
/** Get the initialized database (must call initDb first). */
export function getDb(): Database {
if (!db) throw new Error("Database not initialized. Call initDb() first.");
return db;
}
/** Save database to disk. */
export async function saveDb(dbPath?: string): Promise<void> {
if (!db) return;
const path = dbPath || process.env.DATABASE_URL || "./data/app.db";
if (path === ":memory:") return;
const fs = await import("node:fs/promises");
const { dirname } = await import("node:path");
await fs.mkdir(dirname(path), { recursive: true });
const data = db.export();
await fs.writeFile(path, Buffer.from(data));
}
export async function closeDb(): Promise<void> {
if (db) {
await saveDb();
db.close();
db = null;
initPromise = null;
}
}
// Helper: run a query and return all rows as objects
export function queryAll<T = Record<string, unknown>>(sql: string, params: BindParams = []): T[] {
const d = getDb();
const stmt = d.prepare(sql);
if (params) stmt.bind(params);
const results: T[] = [];
while (stmt.step()) {
const row = stmt.getAsObject();
results.push(row as unknown as T);
}
stmt.free();
return results;
}
// Helper: run a query and return the first row
export function queryOne<T = Record<string, unknown>>(sql: string, params: BindParams = []): T | undefined {
const rows = queryAll<T>(sql, params);
return rows[0];
}
// Helper: run a mutation and return { changes, lastInsertRowid }
export function execute(sql: string, params: BindParams = []): { changes: number; lastInsertRowid: number } {
const d = getDb();
d.run(sql, params);
return {
changes: d.getRowsModified(),
lastInsertRowid: 0,
};
}
@@ -0,0 +1,17 @@
// Auto-generated SQLite schema
import type { Database } from "sql.js";
export function createTables(db: Database): void {
const statements = [
"CREATE TABLE IF NOT EXISTS users (\n id TEXT PRIMARY KEY DEFAULT (lower(hex(randomblob(16)))),\n username TEXT NOT NULL UNIQUE,\n password_hash TEXT NOT NULL,\n nickname TEXT,\n role TEXT DEFAULT 'user',\n phone TEXT,\n avatar_url TEXT,\n created_at TEXT,\n updated_at TEXT\n);",
"CREATE TABLE IF NOT EXISTS products (\n id TEXT PRIMARY KEY DEFAULT (lower(hex(randomblob(16)))),\n user_id TEXT NOT NULL REFERENCES users(id),\n title TEXT NOT NULL,\n description TEXT,\n price REAL,\n stock INTEGER DEFAULT '0',\n images TEXT DEFAULT '[]',\n created_at TEXT,\n updated_at TEXT\n);",
"CREATE TABLE IF NOT EXISTS orders (\n id TEXT PRIMARY KEY DEFAULT (lower(hex(randomblob(16)))),\n user_id TEXT NOT NULL REFERENCES users(id),\n status TEXT DEFAULT 'pending',\n total_amount REAL,\n address_id TEXT REFERENCES addresses(id),\n created_at TEXT,\n updated_at TEXT\n);",
"CREATE TABLE IF NOT EXISTS stocktaking (\n id TEXT PRIMARY KEY DEFAULT (lower(hex(randomblob(16)))),\n user_id TEXT REFERENCES users(id),\n warehouse TEXT,\n product_name TEXT,\n expected_qty INTEGER,\n actual_qty INTEGER,\n diff INTEGER,\n stocktaken_at TEXT,\n created_at TEXT,\n updated_at TEXT\n);",
"CREATE TABLE IF NOT EXISTS suppliers (\n id TEXT PRIMARY KEY DEFAULT (lower(hex(randomblob(16)))),\n user_id TEXT REFERENCES users(id),\n name TEXT NOT NULL,\n contact TEXT,\n phone TEXT,\n email TEXT,\n address TEXT,\n created_at TEXT,\n updated_at TEXT\n);",
"CREATE TABLE IF NOT EXISTS stock_alerts (\n id TEXT PRIMARY KEY DEFAULT (lower(hex(randomblob(16)))),\n user_id TEXT REFERENCES users(id),\n product_name TEXT NOT NULL,\n current_qty INTEGER,\n threshold INTEGER,\n alerted_at TEXT,\n created_at TEXT,\n updated_at TEXT\n);"
];
for (const sql of statements) {
const trimmed = sql.trim();
if (trimmed) db.run(trimmed);
}
}
+73
View File
@@ -0,0 +1,73 @@
// ShopApp — Fastify Backend Server
import Fastify from "fastify";
import cors from "@fastify/cors";
import fjwt from "@fastify/jwt";
import { initDb, closeDb } from "./db/client.js";
import { authRoutes } from "./routes/auth.js";
import { productsRoutes } from "./routes/products.js";
import { ordersRoutes } from "./routes/orders.js";
import { stocktakingRoutes } from "./routes/stocktaking.js";
import { suppliersRoutes } from "./routes/suppliers.js";
import { stock_alertsRoutes } from "./routes/stock_alerts.js";
const JWT_SECRET = process.env.JWT_SECRET || "change-me-in-production-92d89416";
export async function buildApp() {
const app = Fastify({
logger: {
level: process.env.LOG_LEVEL || "info",
transport: process.env.NODE_ENV !== "production"
? { target: "pino-pretty", options: { colorize: true } }
: undefined,
},
});
// Init database
await initDb();
// Plugins
await app.register(cors, {
origin: process.env.CORS_ORIGIN || "*",
methods: ["GET", "POST", "PUT", "DELETE", "PATCH", "OPTIONS"],
});
await app.register(fjwt, { secret: JWT_SECRET });
// Routes
await app.register(authRoutes, { prefix: "/api/auth" });
await app.register(productsRoutes, { prefix: "/api/products" });
await app.register(ordersRoutes, { prefix: "/api/orders" });
await app.register(stocktakingRoutes, { prefix: "/api/stocktaking" });
await app.register(suppliersRoutes, { prefix: "/api/suppliers" });
await app.register(stock_alertsRoutes, { prefix: "/api/stock_alerts" });
// Health check
app.get("/api/health", async () => ({ status: "ok", timestamp: new Date().toISOString() }));
// Graceful shutdown
app.addHook("onClose", async () => {
closeDb();
});
return app;
}
// Start server if called directly (not when imported by tests)
const port = parseInt(process.env.PORT || "3001", 10);
const host = process.env.HOST || "0.0.0.0";
async function main() {
const app = await buildApp();
try {
await app.listen({ port, host });
} catch (err) {
app.log.error(err);
process.exit(1);
}
}
// Guard: only run when executed directly, not when imported
const isMain = process.argv[1] && (import.meta.url === `file://${process.argv[1]}` || import.meta.url.endsWith(process.argv[1]) || process.argv[1].endsWith("/src/index.ts") || process.argv[1].endsWith("/src/index.js"));
if (isMain) {
main();
}
@@ -0,0 +1,41 @@
// JWT Authentication Middleware
import type { FastifyRequest, FastifyReply } from "fastify";
import type { JwtPayload } from "../types/index.js";
/**
* Verify JWT token and attach user to request.
*/
export async function authenticate(request: FastifyRequest, reply: FastifyReply): Promise<void> {
try {
await request.jwtVerify();
} catch (err) {
reply.status(401).send({ error: "Unauthorized", message: "Invalid or expired token", statusCode: 401 });
}
}
/** Helper to get typed user from request (after authenticate). */
export function getUser(request: FastifyRequest): JwtPayload {
return request.user as unknown as JwtPayload;
}
/**
* Require admin role.
* Must be used after authenticate.
*/
export async function requireAdmin(request: FastifyRequest, reply: FastifyReply): Promise<void> {
const user = request.user as unknown as JwtPayload | undefined;
if (!user || user.role !== "admin") {
reply.status(403).send({ error: "Forbidden", message: "Admin access required", statusCode: 403 });
}
}
/**
* Optional auth: attach user if token present, but don't fail if missing.
*/
export async function optionalAuth(request: FastifyRequest): Promise<void> {
try {
await request.jwtVerify();
} catch {
// No token or invalid — continue without user
}
}
@@ -0,0 +1,121 @@
// Authentication routes
import type { FastifyInstance } from "fastify";
import bcrypt from "bcrypt";
import { queryOne, execute } from "../db/client.js";
import { authenticate } from "../middleware/auth.js";
import type { User, RegisterInput, LoginInput, AuthResponse } from "../types/index.js";
const SALT_ROUNDS = 10;
export async function authRoutes(app: FastifyInstance): Promise<void> {
// POST /api/auth/register
app.post<{ Body: RegisterInput }>("/register", async (request, reply) => {
const { username, password, nickname } = request.body;
if (!username || !password) {
return reply.status(400).send({
error: "Bad Request",
message: "Username and password are required",
statusCode: 400,
});
}
if (password.length < 6) {
return reply.status(400).send({
error: "Bad Request",
message: "Password must be at least 6 characters",
statusCode: 400,
});
}
const existing = queryOne("SELECT id FROM users WHERE username = ?", [username]);
if (existing) {
return reply.status(409).send({
error: "Conflict",
message: "Username already exists",
statusCode: 409,
});
}
const id = crypto.randomUUID();
const passwordHash = await bcrypt.hash(password, SALT_ROUNDS);
const now = new Date().toISOString();
execute(
"INSERT INTO users (id, username, password_hash, nickname, created_at, updated_at) VALUES (?, ?, ?, ?, ?, ?)",
[id, username, passwordHash, nickname || username, now, now]
);
const user = queryOne<User>(
"SELECT id, username, nickname, role, created_at, updated_at FROM users WHERE id = ?",
[id]
);
if (!user) {
return reply.status(500).send({ error: "Internal Error", message: "Failed to create user", statusCode: 500 });
}
const token = app.jwt.sign({ userId: id, username, role: user.role });
return reply.status(201).send({ token, user } satisfies AuthResponse);
});
// POST /api/auth/login
app.post<{ Body: LoginInput }>("/login", async (request, reply) => {
const { username, password } = request.body;
if (!username || !password) {
return reply.status(400).send({
error: "Bad Request",
message: "Username and password are required",
statusCode: 400,
});
}
const user = queryOne<User & { password_hash: string }>(
"SELECT * FROM users WHERE username = ?",
[username]
);
if (!user) {
return reply.status(401).send({
error: "Unauthorized",
message: "Invalid username or password",
statusCode: 401,
});
}
const valid = await bcrypt.compare(password, user.password_hash);
if (!valid) {
return reply.status(401).send({
error: "Unauthorized",
message: "Invalid username or password",
statusCode: 401,
});
}
const token = app.jwt.sign({ userId: user.id, username: user.username, role: user.role });
const { password_hash, ...safeUser } = user;
return { token, user: safeUser } satisfies AuthResponse;
});
// GET /api/auth/me — current user info
app.get("/me", { onRequest: [authenticate] }, async (request, reply) => {
const jwtUser = request.user as unknown as { userId: string };
const user = queryOne<User>(
"SELECT id, username, nickname, role, created_at, updated_at FROM users WHERE id = ?",
[jwtUser.userId]
);
if (!user) {
return reply.status(404).send({
error: "Not Found",
message: "User not found",
statusCode: 404,
});
}
return { data: user };
});
}
@@ -0,0 +1,51 @@
// Auto-generated Inventory routes
import type { FastifyInstance } from "fastify";
import { authenticate } from "../middleware/auth.js";
import { InventoryService } from "../services/inventory.js";
import type { CreateInventoryInput, UpdateInventoryInput } from "../types/index.js";
const service = new InventoryService();
export async function inventoryRoutes(app: FastifyInstance): Promise<void> {
// All routes require authentication
app.addHook("onRequest", authenticate);
// GET /api/inventory — list
app.get("/", async (request, reply) => {
const items = service.list();
return { data: items };
});
// GET /api/inventory/:id — get by id
app.get<{ Params: { id: string } }>("/:id", async (request, reply) => {
const item = service.getById(request.params.id);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Inventory not found", statusCode: 404 });
}
return { data: item };
});
// POST /api/inventory — create
app.post<{ Body: CreateInventoryInput }>("/", async (request, reply) => {
const item = service.create(request.body);
return reply.status(201).send({ data: item });
});
// PUT /api/inventory/:id — update
app.put<{ Params: { id: string }; Body: UpdateInventoryInput }>("/:id", async (request, reply) => {
const item = service.update(request.params.id, request.body);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Inventory not found", statusCode: 404 });
}
return { data: item };
});
// DELETE /api/inventory/:id — delete
app.delete<{ Params: { id: string } }>("/:id", async (request, reply) => {
const deleted = service.delete(request.params.id);
if (!deleted) {
return reply.status(404).send({ error: "Not Found", message: "Inventory not found", statusCode: 404 });
}
return reply.status(204).send();
});
}
@@ -0,0 +1,51 @@
// Auto-generated Logistic routes
import type { FastifyInstance } from "fastify";
import { authenticate } from "../middleware/auth.js";
import { LogisticService } from "../services/logistic.js";
import type { CreateLogisticInput, UpdateLogisticInput } from "../types/index.js";
const service = new LogisticService();
export async function logisticsRoutes(app: FastifyInstance): Promise<void> {
// All routes require authentication
app.addHook("onRequest", authenticate);
// GET /api/logistics — list
app.get("/", async (request, reply) => {
const items = service.list();
return { data: items };
});
// GET /api/logistics/:id — get by id
app.get<{ Params: { id: string } }>("/:id", async (request, reply) => {
const item = service.getById(request.params.id);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Logistic not found", statusCode: 404 });
}
return { data: item };
});
// POST /api/logistics — create
app.post<{ Body: CreateLogisticInput }>("/", async (request, reply) => {
const item = service.create(request.body);
return reply.status(201).send({ data: item });
});
// PUT /api/logistics/:id — update
app.put<{ Params: { id: string }; Body: UpdateLogisticInput }>("/:id", async (request, reply) => {
const item = service.update(request.params.id, request.body);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Logistic not found", statusCode: 404 });
}
return { data: item };
});
// DELETE /api/logistics/:id — delete
app.delete<{ Params: { id: string } }>("/:id", async (request, reply) => {
const deleted = service.delete(request.params.id);
if (!deleted) {
return reply.status(404).send({ error: "Not Found", message: "Logistic not found", statusCode: 404 });
}
return reply.status(204).send();
});
}
@@ -0,0 +1,51 @@
// Auto-generated OrderItem routes
import type { FastifyInstance } from "fastify";
import { authenticate } from "../middleware/auth.js";
import { OrderItemService } from "../services/order_item.js";
import type { CreateOrderItemInput, UpdateOrderItemInput } from "../types/index.js";
const service = new OrderItemService();
export async function order_itemsRoutes(app: FastifyInstance): Promise<void> {
// All routes require authentication
app.addHook("onRequest", authenticate);
// GET /api/order_items — list
app.get("/", async (request, reply) => {
const items = service.list();
return { data: items };
});
// GET /api/order_items/:id — get by id
app.get<{ Params: { id: string } }>("/:id", async (request, reply) => {
const item = service.getById(request.params.id);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "OrderItem not found", statusCode: 404 });
}
return { data: item };
});
// POST /api/order_items — create
app.post<{ Body: CreateOrderItemInput }>("/", async (request, reply) => {
const item = service.create(request.body);
return reply.status(201).send({ data: item });
});
// PUT /api/order_items/:id — update
app.put<{ Params: { id: string }; Body: UpdateOrderItemInput }>("/:id", async (request, reply) => {
const item = service.update(request.params.id, request.body);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "OrderItem not found", statusCode: 404 });
}
return { data: item };
});
// DELETE /api/order_items/:id — delete
app.delete<{ Params: { id: string } }>("/:id", async (request, reply) => {
const deleted = service.delete(request.params.id);
if (!deleted) {
return reply.status(404).send({ error: "Not Found", message: "OrderItem not found", statusCode: 404 });
}
return reply.status(204).send();
});
}
@@ -0,0 +1,51 @@
// Auto-generated Order routes
import type { FastifyInstance } from "fastify";
import { authenticate } from "../middleware/auth.js";
import { OrderService } from "../services/order.js";
import type { CreateOrderInput, UpdateOrderInput } from "../types/index.js";
const service = new OrderService();
export async function ordersRoutes(app: FastifyInstance): Promise<void> {
// All routes require authentication
app.addHook("onRequest", authenticate);
// GET /api/orders — list
app.get("/", async (request, reply) => {
const items = service.list();
return { data: items };
});
// GET /api/orders/:id — get by id
app.get<{ Params: { id: string } }>("/:id", async (request, reply) => {
const item = service.getById(request.params.id);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Order not found", statusCode: 404 });
}
return { data: item };
});
// POST /api/orders — create
app.post<{ Body: CreateOrderInput }>("/", async (request, reply) => {
const item = service.create(request.body);
return reply.status(201).send({ data: item });
});
// PUT /api/orders/:id — update
app.put<{ Params: { id: string }; Body: UpdateOrderInput }>("/:id", async (request, reply) => {
const item = service.update(request.params.id, request.body);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Order not found", statusCode: 404 });
}
return { data: item };
});
// DELETE /api/orders/:id — delete
app.delete<{ Params: { id: string } }>("/:id", async (request, reply) => {
const deleted = service.delete(request.params.id);
if (!deleted) {
return reply.status(404).send({ error: "Not Found", message: "Order not found", statusCode: 404 });
}
return reply.status(204).send();
});
}
@@ -0,0 +1,51 @@
// Auto-generated Product routes
import type { FastifyInstance } from "fastify";
import { authenticate } from "../middleware/auth.js";
import { ProductService } from "../services/product.js";
import type { CreateProductInput, UpdateProductInput } from "../types/index.js";
const service = new ProductService();
export async function productsRoutes(app: FastifyInstance): Promise<void> {
// All routes require authentication
app.addHook("onRequest", authenticate);
// GET /api/products — list
app.get("/", async (request, reply) => {
const items = service.list();
return { data: items };
});
// GET /api/products/:id — get by id
app.get<{ Params: { id: string } }>("/:id", async (request, reply) => {
const item = service.getById(request.params.id);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Product not found", statusCode: 404 });
}
return { data: item };
});
// POST /api/products — create
app.post<{ Body: CreateProductInput }>("/", async (request, reply) => {
const item = service.create(request.body);
return reply.status(201).send({ data: item });
});
// PUT /api/products/:id — update
app.put<{ Params: { id: string }; Body: UpdateProductInput }>("/:id", async (request, reply) => {
const item = service.update(request.params.id, request.body);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Product not found", statusCode: 404 });
}
return { data: item };
});
// DELETE /api/products/:id — delete
app.delete<{ Params: { id: string } }>("/:id", async (request, reply) => {
const deleted = service.delete(request.params.id);
if (!deleted) {
return reply.status(404).send({ error: "Not Found", message: "Product not found", statusCode: 404 });
}
return reply.status(204).send();
});
}
@@ -0,0 +1,51 @@
// Auto-generated StockAlerts routes
import type { FastifyInstance } from "fastify";
import { authenticate } from "../middleware/auth.js";
import { StockAlertsService } from "../services/stock_alert.js";
import type { CreateStockAlertsInput, UpdateStockAlertsInput } from "../types/index.js";
const service = new StockAlertsService();
export async function stock_alertsRoutes(app: FastifyInstance): Promise<void> {
// All routes require authentication
app.addHook("onRequest", authenticate);
// GET /api/stock_alerts — list
app.get("/", async (request, reply) => {
const items = service.list();
return { data: items };
});
// GET /api/stock_alerts/:id — get by id
app.get<{ Params: { id: string } }>("/:id", async (request, reply) => {
const item = service.getById(request.params.id);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "StockAlerts not found", statusCode: 404 });
}
return { data: item };
});
// POST /api/stock_alerts — create
app.post<{ Body: CreateStockAlertsInput }>("/", async (request, reply) => {
const item = service.create(request.body);
return reply.status(201).send({ data: item });
});
// PUT /api/stock_alerts/:id — update
app.put<{ Params: { id: string }; Body: UpdateStockAlertsInput }>("/:id", async (request, reply) => {
const item = service.update(request.params.id, request.body);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "StockAlerts not found", statusCode: 404 });
}
return { data: item };
});
// DELETE /api/stock_alerts/:id — delete
app.delete<{ Params: { id: string } }>("/:id", async (request, reply) => {
const deleted = service.delete(request.params.id);
if (!deleted) {
return reply.status(404).send({ error: "Not Found", message: "StockAlerts not found", statusCode: 404 });
}
return reply.status(204).send();
});
}
@@ -0,0 +1,51 @@
// Auto-generated Stocktaking routes
import type { FastifyInstance } from "fastify";
import { authenticate } from "../middleware/auth.js";
import { StocktakingService } from "../services/stocktaking.js";
import type { CreateStocktakingInput, UpdateStocktakingInput } from "../types/index.js";
const service = new StocktakingService();
export async function stocktakingRoutes(app: FastifyInstance): Promise<void> {
// All routes require authentication
app.addHook("onRequest", authenticate);
// GET /api/stocktaking — list
app.get("/", async (request, reply) => {
const items = service.list();
return { data: items };
});
// GET /api/stocktaking/:id — get by id
app.get<{ Params: { id: string } }>("/:id", async (request, reply) => {
const item = service.getById(request.params.id);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Stocktaking not found", statusCode: 404 });
}
return { data: item };
});
// POST /api/stocktaking — create
app.post<{ Body: CreateStocktakingInput }>("/", async (request, reply) => {
const item = service.create(request.body);
return reply.status(201).send({ data: item });
});
// PUT /api/stocktaking/:id — update
app.put<{ Params: { id: string }; Body: UpdateStocktakingInput }>("/:id", async (request, reply) => {
const item = service.update(request.params.id, request.body);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Stocktaking not found", statusCode: 404 });
}
return { data: item };
});
// DELETE /api/stocktaking/:id — delete
app.delete<{ Params: { id: string } }>("/:id", async (request, reply) => {
const deleted = service.delete(request.params.id);
if (!deleted) {
return reply.status(404).send({ error: "Not Found", message: "Stocktaking not found", statusCode: 404 });
}
return reply.status(204).send();
});
}
@@ -0,0 +1,51 @@
// Auto-generated Suppliers routes
import type { FastifyInstance } from "fastify";
import { authenticate } from "../middleware/auth.js";
import { SuppliersService } from "../services/supplier.js";
import type { CreateSuppliersInput, UpdateSuppliersInput } from "../types/index.js";
const service = new SuppliersService();
export async function suppliersRoutes(app: FastifyInstance): Promise<void> {
// All routes require authentication
app.addHook("onRequest", authenticate);
// GET /api/suppliers — list
app.get("/", async (request, reply) => {
const items = service.list();
return { data: items };
});
// GET /api/suppliers/:id — get by id
app.get<{ Params: { id: string } }>("/:id", async (request, reply) => {
const item = service.getById(request.params.id);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Suppliers not found", statusCode: 404 });
}
return { data: item };
});
// POST /api/suppliers — create
app.post<{ Body: CreateSuppliersInput }>("/", async (request, reply) => {
const item = service.create(request.body);
return reply.status(201).send({ data: item });
});
// PUT /api/suppliers/:id — update
app.put<{ Params: { id: string }; Body: UpdateSuppliersInput }>("/:id", async (request, reply) => {
const item = service.update(request.params.id, request.body);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "Suppliers not found", statusCode: 404 });
}
return { data: item };
});
// DELETE /api/suppliers/:id — delete
app.delete<{ Params: { id: string } }>("/:id", async (request, reply) => {
const deleted = service.delete(request.params.id);
if (!deleted) {
return reply.status(404).send({ error: "Not Found", message: "Suppliers not found", statusCode: 404 });
}
return reply.status(204).send();
});
}
@@ -0,0 +1,51 @@
// Auto-generated User routes
import type { FastifyInstance } from "fastify";
import { authenticate } from "../middleware/auth.js";
import { UserService } from "../services/user.js";
import type { CreateUserInput, UpdateUserInput } from "../types/index.js";
const service = new UserService();
export async function usersRoutes(app: FastifyInstance): Promise<void> {
// All routes require authentication
app.addHook("onRequest", authenticate);
// GET /api/users — list
app.get("/", async (request, reply) => {
const items = service.list();
return { data: items };
});
// GET /api/users/:id — get by id
app.get<{ Params: { id: string } }>("/:id", async (request, reply) => {
const item = service.getById(request.params.id);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "User not found", statusCode: 404 });
}
return { data: item };
});
// POST /api/users — create
app.post<{ Body: CreateUserInput }>("/", async (request, reply) => {
const item = service.create(request.body);
return reply.status(201).send({ data: item });
});
// PUT /api/users/:id — update
app.put<{ Params: { id: string }; Body: UpdateUserInput }>("/:id", async (request, reply) => {
const item = service.update(request.params.id, request.body);
if (!item) {
return reply.status(404).send({ error: "Not Found", message: "User not found", statusCode: 404 });
}
return { data: item };
});
// DELETE /api/users/:id — delete
app.delete<{ Params: { id: string } }>("/:id", async (request, reply) => {
const deleted = service.delete(request.params.id);
if (!deleted) {
return reply.status(404).send({ error: "Not Found", message: "User not found", statusCode: 404 });
}
return reply.status(204).send();
});
}
@@ -0,0 +1,59 @@
// Auto-generated Inventory service
import { queryAll, queryOne, execute } from "../db/client.js";
import type { Inventory, CreateInventoryInput, UpdateInventoryInput } from "../types/index.js";
export class InventoryService {
/** List all inventory */
list(): Inventory[] {
return queryAll<Inventory>("SELECT * FROM inventory ORDER BY created_at DESC");
}
/** Get by ID */
getById(id: string): Inventory | undefined {
return queryOne<Inventory>("SELECT * FROM inventory WHERE id = ?", [id]);
}
/** Create */
create(input: CreateInventoryInput): Inventory {
const id = crypto.randomUUID();
const now = new Date().toISOString();
const hasCreatedAt = true;
const hasUpdatedAt = true;
const cols = ["id", "user_id", "product_id", "quantity", "warehouse", "min_stock", "max_stock", "created_at", "updated_at"];
const placeholders = cols.map(() => "?").join(", ");
const values = [id, input.userId ?? null, input.productId ?? null, input.quantity ?? null, input.warehouse ?? null, input.minStock ?? null, input.maxStock ?? null, now, now];
execute(`INSERT INTO inventory (${cols.join(", ")}) VALUES (${placeholders})`, values);
return this.getById(id)!;
}
/** Update */
update(id: string, input: UpdateInventoryInput): Inventory | undefined {
const existing = this.getById(id);
if (!existing) return undefined;
const sets: string[] = [];
const values: unknown[] = [];
if (input.userId !== undefined) { sets.push("user_id = ?"); values.push(input.userId); }
if (input.productId !== undefined) { sets.push("product_id = ?"); values.push(input.productId); }
if (input.quantity !== undefined) { sets.push("quantity = ?"); values.push(input.quantity); }
if (input.warehouse !== undefined) { sets.push("warehouse = ?"); values.push(input.warehouse); }
if (input.minStock !== undefined) { sets.push("min_stock = ?"); values.push(input.minStock); }
if (input.maxStock !== undefined) { sets.push("max_stock = ?"); values.push(input.maxStock); }
if (sets.length === 0) return existing;
sets.push("updated_at = ?");
values.push(new Date().toISOString());
values.push(id);
execute(`UPDATE inventory SET ${sets.join(", ")} WHERE id = ?`, values);
return this.getById(id)!;
}
/** Delete */
delete(id: string): boolean {
const result = execute("DELETE FROM inventory WHERE id = ?", [id]);
return result.changes > 0;
}
}
@@ -0,0 +1,58 @@
// Auto-generated Logistic service
import { queryAll, queryOne, execute } from "../db/client.js";
import type { Logistic, CreateLogisticInput, UpdateLogisticInput } from "../types/index.js";
export class LogisticService {
/** List all logistics */
list(): Logistic[] {
return queryAll<Logistic>("SELECT * FROM logistics ORDER BY created_at DESC");
}
/** Get by ID */
getById(id: string): Logistic | undefined {
return queryOne<Logistic>("SELECT * FROM logistics WHERE id = ?", [id]);
}
/** Create */
create(input: CreateLogisticInput): Logistic {
const id = crypto.randomUUID();
const now = new Date().toISOString();
const hasCreatedAt = false;
const hasUpdatedAt = true;
const cols = ["id", "order_id", "carrier", "tracking_number", "status", "events", "updated_at"];
const placeholders = cols.map(() => "?").join(", ");
const values = [id, input.orderId ?? null, input.carrier ?? null, input.trackingNumber ?? null, input.status ?? null, input.events ?? null, now];
execute(`INSERT INTO logistics (${cols.join(", ")}) VALUES (${placeholders})`, values);
return this.getById(id)!;
}
/** Update */
update(id: string, input: UpdateLogisticInput): Logistic | undefined {
const existing = this.getById(id);
if (!existing) return undefined;
const sets: string[] = [];
const values: unknown[] = [];
if (input.orderId !== undefined) { sets.push("order_id = ?"); values.push(input.orderId); }
if (input.carrier !== undefined) { sets.push("carrier = ?"); values.push(input.carrier); }
if (input.trackingNumber !== undefined) { sets.push("tracking_number = ?"); values.push(input.trackingNumber); }
if (input.status !== undefined) { sets.push("status = ?"); values.push(input.status); }
if (input.events !== undefined) { sets.push("events = ?"); values.push(input.events); }
if (sets.length === 0) return existing;
sets.push("updated_at = ?");
values.push(new Date().toISOString());
values.push(id);
execute(`UPDATE logistics SET ${sets.join(", ")} WHERE id = ?`, values);
return this.getById(id)!;
}
/** Delete */
delete(id: string): boolean {
const result = execute("DELETE FROM logistics WHERE id = ?", [id]);
return result.changes > 0;
}
}
@@ -0,0 +1,54 @@
// Auto-generated Order service
import { queryAll, queryOne, execute } from "../db/client.js";
import type { Order, CreateOrderInput, UpdateOrderInput } from "../types/index.js";
export class OrderService {
/** List all orders */
list(): Order[] {
return queryAll<Order>("SELECT * FROM orders ORDER BY created_at DESC");
}
/** Get by ID */
getById(id: string): Order | undefined {
return queryOne<Order>("SELECT * FROM orders WHERE id = ?", [id]);
}
/** Create */
create(input: CreateOrderInput): Order {
const id = crypto.randomUUID();
const now = new Date().toISOString();
const cols = ["id", "user_id", "status", "total_amount", "address_id", "created_at", "updated_at"];
const values = [id, input.userId ?? null, input.status ?? null, input.totalAmount ?? null, input.addressId ?? null, now, now];
execute(`INSERT INTO orders (${cols.join(", ")}) VALUES (?, ?, ?, ?, ?, ?, ?)`, values);
return this.getById(id)!;
}
/** Update */
update(id: string, input: UpdateOrderInput): Order | undefined {
const existing = this.getById(id);
if (!existing) return undefined;
const sets: string[] = [];
const values: unknown[] = [];
if (input.userId !== undefined) { sets.push("user_id = ?"); values.push(input.userId); }
if (input.status !== undefined) { sets.push("status = ?"); values.push(input.status); }
if (input.totalAmount !== undefined) { sets.push("total_amount = ?"); values.push(input.totalAmount); }
if (input.addressId !== undefined) { sets.push("address_id = ?"); values.push(input.addressId); }
if (sets.length === 0) return existing;
sets.push("updated_at = ?");
values.push(new Date().toISOString());
values.push(id);
execute(`UPDATE orders SET ${sets.join(", ")} WHERE id = ?`, values);
return this.getById(id)!;
}
/** Delete */
delete(id: string): boolean {
const result = execute("DELETE FROM orders WHERE id = ?", [id]);
return result.changes > 0;
}
}
@@ -0,0 +1,56 @@
// Auto-generated OrderItem service
import { queryAll, queryOne, execute } from "../db/client.js";
import type { OrderItem, CreateOrderItemInput, UpdateOrderItemInput } from "../types/index.js";
export class OrderItemService {
/** List all order_items */
list(): OrderItem[] {
return queryAll<OrderItem>("SELECT * FROM order_items ORDER BY created_at DESC");
}
/** Get by ID */
getById(id: string): OrderItem | undefined {
return queryOne<OrderItem>("SELECT * FROM order_items WHERE id = ?", [id]);
}
/** Create */
create(input: CreateOrderItemInput): OrderItem {
const id = crypto.randomUUID();
const now = new Date().toISOString();
const hasCreatedAt = false;
const hasUpdatedAt = false;
const cols = ["id", "order_id", "product_id", "quantity", "unit_price"];
const placeholders = cols.map(() => "?").join(", ");
const values = [id, input.orderId ?? null, input.productId ?? null, input.quantity ?? null, input.unitPrice ?? null];
execute(`INSERT INTO order_items (${cols.join(", ")}) VALUES (${placeholders})`, values);
return this.getById(id)!;
}
/** Update */
update(id: string, input: UpdateOrderItemInput): OrderItem | undefined {
const existing = this.getById(id);
if (!existing) return undefined;
const sets: string[] = [];
const values: unknown[] = [];
if (input.orderId !== undefined) { sets.push("order_id = ?"); values.push(input.orderId); }
if (input.productId !== undefined) { sets.push("product_id = ?"); values.push(input.productId); }
if (input.quantity !== undefined) { sets.push("quantity = ?"); values.push(input.quantity); }
if (input.unitPrice !== undefined) { sets.push("unit_price = ?"); values.push(input.unitPrice); }
if (sets.length === 0) return existing;
values.push(id);
execute(`UPDATE order_items SET ${sets.join(", ")} WHERE id = ?`, values);
return this.getById(id)!;
}
/** Delete */
delete(id: string): boolean {
const result = execute("DELETE FROM order_items WHERE id = ?", [id]);
return result.changes > 0;
}
}
@@ -0,0 +1,56 @@
// Auto-generated Product service
import { queryAll, queryOne, execute } from "../db/client.js";
import type { Product, CreateProductInput, UpdateProductInput } from "../types/index.js";
export class ProductService {
/** List all products */
list(): Product[] {
return queryAll<Product>("SELECT * FROM products ORDER BY created_at DESC");
}
/** Get by ID */
getById(id: string): Product | undefined {
return queryOne<Product>("SELECT * FROM products WHERE id = ?", [id]);
}
/** Create */
create(input: CreateProductInput): Product {
const id = crypto.randomUUID();
const now = new Date().toISOString();
const cols = ["id", "user_id", "title", "description", "price", "stock", "images", "created_at", "updated_at"];
const values = [id, input.userId ?? null, input.title ?? null, input.description ?? null, input.price ?? null, input.stock ?? null, input.images ?? null, now, now];
execute(`INSERT INTO products (${cols.join(", ")}) VALUES (?, ?, ?, ?, ?, ?, ?, ?, ?)`, values);
return this.getById(id)!;
}
/** Update */
update(id: string, input: UpdateProductInput): Product | undefined {
const existing = this.getById(id);
if (!existing) return undefined;
const sets: string[] = [];
const values: unknown[] = [];
if (input.userId !== undefined) { sets.push("user_id = ?"); values.push(input.userId); }
if (input.title !== undefined) { sets.push("title = ?"); values.push(input.title); }
if (input.description !== undefined) { sets.push("description = ?"); values.push(input.description); }
if (input.price !== undefined) { sets.push("price = ?"); values.push(input.price); }
if (input.stock !== undefined) { sets.push("stock = ?"); values.push(input.stock); }
if (input.images !== undefined) { sets.push("images = ?"); values.push(input.images); }
if (sets.length === 0) return existing;
sets.push("updated_at = ?");
values.push(new Date().toISOString());
values.push(id);
execute(`UPDATE products SET ${sets.join(", ")} WHERE id = ?`, values);
return this.getById(id)!;
}
/** Delete */
delete(id: string): boolean {
const result = execute("DELETE FROM products WHERE id = ?", [id]);
return result.changes > 0;
}
}
@@ -0,0 +1,54 @@
// Auto-generated StockAlerts service
import { queryAll, queryOne, execute } from "../db/client.js";
import type { StockAlerts, CreateStockAlertsInput, UpdateStockAlertsInput } from "../types/index.js";
export class StockAlertsService {
/** List all stock_alerts */
list(): StockAlerts[] {
return queryAll<StockAlerts>("SELECT * FROM stock_alerts ORDER BY created_at DESC");
}
/** Get by ID */
getById(id: string): StockAlerts | undefined {
return queryOne<StockAlerts>("SELECT * FROM stock_alerts WHERE id = ?", [id]);
}
/** Create */
create(input: CreateStockAlertsInput): StockAlerts {
const id = crypto.randomUUID();
const now = new Date().toISOString();
const cols = ["id", "user_id", "product_name", "current_qty", "threshold", "created_at", "updated_at"];
const values = [id, input.userId ?? null, input.productName ?? null, input.currentQty ?? null, input.threshold ?? null, now, now];
execute(`INSERT INTO stock_alerts (${cols.join(", ")}) VALUES (?, ?, ?, ?, ?, ?, ?)`, values);
return this.getById(id)!;
}
/** Update */
update(id: string, input: UpdateStockAlertsInput): StockAlerts | undefined {
const existing = this.getById(id);
if (!existing) return undefined;
const sets: string[] = [];
const values: unknown[] = [];
if (input.userId !== undefined) { sets.push("user_id = ?"); values.push(input.userId); }
if (input.productName !== undefined) { sets.push("product_name = ?"); values.push(input.productName); }
if (input.currentQty !== undefined) { sets.push("current_qty = ?"); values.push(input.currentQty); }
if (input.threshold !== undefined) { sets.push("threshold = ?"); values.push(input.threshold); }
if (sets.length === 0) return existing;
sets.push("updated_at = ?");
values.push(new Date().toISOString());
values.push(id);
execute(`UPDATE stock_alerts SET ${sets.join(", ")} WHERE id = ?`, values);
return this.getById(id)!;
}
/** Delete */
delete(id: string): boolean {
const result = execute("DELETE FROM stock_alerts WHERE id = ?", [id]);
return result.changes > 0;
}
}
@@ -0,0 +1,56 @@
// Auto-generated Stocktaking service
import { queryAll, queryOne, execute } from "../db/client.js";
import type { Stocktaking, CreateStocktakingInput, UpdateStocktakingInput } from "../types/index.js";
export class StocktakingService {
/** List all stocktaking */
list(): Stocktaking[] {
return queryAll<Stocktaking>("SELECT * FROM stocktaking ORDER BY created_at DESC");
}
/** Get by ID */
getById(id: string): Stocktaking | undefined {
return queryOne<Stocktaking>("SELECT * FROM stocktaking WHERE id = ?", [id]);
}
/** Create */
create(input: CreateStocktakingInput): Stocktaking {
const id = crypto.randomUUID();
const now = new Date().toISOString();
const cols = ["id", "user_id", "warehouse", "product_name", "expected_qty", "actual_qty", "diff", "created_at", "updated_at"];
const values = [id, input.userId ?? null, input.warehouse ?? null, input.productName ?? null, input.expectedQty ?? null, input.actualQty ?? null, input.diff ?? null, now, now];
execute(`INSERT INTO stocktaking (${cols.join(", ")}) VALUES (?, ?, ?, ?, ?, ?, ?, ?, ?)`, values);
return this.getById(id)!;
}
/** Update */
update(id: string, input: UpdateStocktakingInput): Stocktaking | undefined {
const existing = this.getById(id);
if (!existing) return undefined;
const sets: string[] = [];
const values: unknown[] = [];
if (input.userId !== undefined) { sets.push("user_id = ?"); values.push(input.userId); }
if (input.warehouse !== undefined) { sets.push("warehouse = ?"); values.push(input.warehouse); }
if (input.productName !== undefined) { sets.push("product_name = ?"); values.push(input.productName); }
if (input.expectedQty !== undefined) { sets.push("expected_qty = ?"); values.push(input.expectedQty); }
if (input.actualQty !== undefined) { sets.push("actual_qty = ?"); values.push(input.actualQty); }
if (input.diff !== undefined) { sets.push("diff = ?"); values.push(input.diff); }
if (sets.length === 0) return existing;
sets.push("updated_at = ?");
values.push(new Date().toISOString());
values.push(id);
execute(`UPDATE stocktaking SET ${sets.join(", ")} WHERE id = ?`, values);
return this.getById(id)!;
}
/** Delete */
delete(id: string): boolean {
const result = execute("DELETE FROM stocktaking WHERE id = ?", [id]);
return result.changes > 0;
}
}
@@ -0,0 +1,56 @@
// Auto-generated Suppliers service
import { queryAll, queryOne, execute } from "../db/client.js";
import type { Suppliers, CreateSuppliersInput, UpdateSuppliersInput } from "../types/index.js";
export class SuppliersService {
/** List all suppliers */
list(): Suppliers[] {
return queryAll<Suppliers>("SELECT * FROM suppliers ORDER BY created_at DESC");
}
/** Get by ID */
getById(id: string): Suppliers | undefined {
return queryOne<Suppliers>("SELECT * FROM suppliers WHERE id = ?", [id]);
}
/** Create */
create(input: CreateSuppliersInput): Suppliers {
const id = crypto.randomUUID();
const now = new Date().toISOString();
const cols = ["id", "user_id", "name", "contact", "phone", "email", "address", "created_at", "updated_at"];
const values = [id, input.userId ?? null, input.name ?? null, input.contact ?? null, input.phone ?? null, input.email ?? null, input.address ?? null, now, now];
execute(`INSERT INTO suppliers (${cols.join(", ")}) VALUES (?, ?, ?, ?, ?, ?, ?, ?, ?)`, values);
return this.getById(id)!;
}
/** Update */
update(id: string, input: UpdateSuppliersInput): Suppliers | undefined {
const existing = this.getById(id);
if (!existing) return undefined;
const sets: string[] = [];
const values: unknown[] = [];
if (input.userId !== undefined) { sets.push("user_id = ?"); values.push(input.userId); }
if (input.name !== undefined) { sets.push("name = ?"); values.push(input.name); }
if (input.contact !== undefined) { sets.push("contact = ?"); values.push(input.contact); }
if (input.phone !== undefined) { sets.push("phone = ?"); values.push(input.phone); }
if (input.email !== undefined) { sets.push("email = ?"); values.push(input.email); }
if (input.address !== undefined) { sets.push("address = ?"); values.push(input.address); }
if (sets.length === 0) return existing;
sets.push("updated_at = ?");
values.push(new Date().toISOString());
values.push(id);
execute(`UPDATE suppliers SET ${sets.join(", ")} WHERE id = ?`, values);
return this.getById(id)!;
}
/** Delete */
delete(id: string): boolean {
const result = execute("DELETE FROM suppliers WHERE id = ?", [id]);
return result.changes > 0;
}
}
@@ -0,0 +1,56 @@
// Auto-generated User service
import { queryAll, queryOne, execute } from "../db/client.js";
import type { User, CreateUserInput, UpdateUserInput } from "../types/index.js";
export class UserService {
/** List all users */
list(): User[] {
return queryAll<User>("SELECT * FROM users ORDER BY created_at DESC");
}
/** Get by ID */
getById(id: string): User | undefined {
return queryOne<User>("SELECT * FROM users WHERE id = ?", [id]);
}
/** Create */
create(input: CreateUserInput): User {
const id = crypto.randomUUID();
const now = new Date().toISOString();
const hasCreatedAt = true;
const hasUpdatedAt = true;
const cols = ["id", "phone", "nickname", "avatar_url", "created_at", "updated_at"];
const placeholders = cols.map(() => "?").join(", ");
const values = [id, input.phone ?? null, input.nickname ?? null, input.avatarUrl ?? null, now, now];
execute(`INSERT INTO users (${cols.join(", ")}) VALUES (${placeholders})`, values);
return this.getById(id)!;
}
/** Update */
update(id: string, input: UpdateUserInput): User | undefined {
const existing = this.getById(id);
if (!existing) return undefined;
const sets: string[] = [];
const values: unknown[] = [];
if (input.phone !== undefined) { sets.push("phone = ?"); values.push(input.phone); }
if (input.nickname !== undefined) { sets.push("nickname = ?"); values.push(input.nickname); }
if (input.avatarUrl !== undefined) { sets.push("avatar_url = ?"); values.push(input.avatarUrl); }
if (sets.length === 0) return existing;
sets.push("updated_at = ?");
values.push(new Date().toISOString());
values.push(id);
execute(`UPDATE users SET ${sets.join(", ")} WHERE id = ?`, values);
return this.getById(id)!;
}
/** Delete */
delete(id: string): boolean {
const result = execute("DELETE FROM users WHERE id = ?", [id]);
return result.changes > 0;
}
}
+8
View File
@@ -0,0 +1,8 @@
// Augment Fastify request with JWT user
import type { JwtPayload } from "./index.js";
declare module "fastify" {
interface FastifyRequest {
user?: JwtPayload;
}
}
@@ -0,0 +1,216 @@
// Auto-generated types (from Model Contract)
export interface User {
id?: string;
username: string;
passwordHash: string;
nickname?: string;
role?: string;
phone?: string;
avatarUrl?: string;
createdAt?: string;
updatedAt?: string;
}
export interface Product {
id?: string;
userId: string;
title: string;
description?: string;
price?: number;
stock?: number;
images?: Record<string, unknown>;
createdAt?: string;
updatedAt?: string;
}
export interface Order {
id?: string;
userId: string;
status?: string;
totalAmount?: number;
addressId?: string;
createdAt?: string;
updatedAt?: string;
}
export interface Stocktaking {
id: string;
userId?: string;
warehouse?: string;
productName?: string;
expectedQty?: number;
actualQty?: number;
diff?: number;
stocktakenAt?: string;
createdAt?: string;
updatedAt?: string;
}
export interface Suppliers {
id: string;
userId?: string;
name: string;
contact?: string;
phone?: string;
email?: string;
address?: string;
createdAt?: string;
updatedAt?: string;
}
export interface StockAlerts {
id: string;
userId?: string;
productName: string;
currentQty?: number;
threshold?: number;
alertedAt?: string;
createdAt?: string;
updatedAt?: string;
}
export interface CreateUserInput {
username: string;
passwordHash: string;
nickname?: string;
role?: string;
phone?: string;
avatarUrl?: string;
}
export interface CreateProductInput {
userId: string;
title: string;
description?: string;
price?: number;
stock?: number;
images?: Record<string, unknown>;
}
export interface CreateOrderInput {
userId: string;
status?: string;
totalAmount?: number;
addressId?: string;
}
export interface CreateStocktakingInput {
userId?: string;
warehouse?: string;
productName?: string;
expectedQty?: number;
actualQty?: number;
diff?: number;
}
export interface CreateSuppliersInput {
userId?: string;
name: string;
contact?: string;
phone?: string;
email?: string;
address?: string;
}
export interface CreateStockAlertsInput {
userId?: string;
productName: string;
currentQty?: number;
threshold?: number;
}
export interface UpdateUserInput {
username?: string;
passwordHash?: string;
nickname?: string;
role?: string;
phone?: string;
avatarUrl?: string;
}
export interface UpdateProductInput {
userId?: string;
title?: string;
description?: string;
price?: number;
stock?: number;
images?: Record<string, unknown>;
}
export interface UpdateOrderInput {
userId?: string;
status?: string;
totalAmount?: number;
addressId?: string;
}
export interface UpdateStocktakingInput {
userId?: string;
warehouse?: string;
productName?: string;
expectedQty?: number;
actualQty?: number;
diff?: number;
}
export interface UpdateSuppliersInput {
userId?: string;
name?: string;
contact?: string;
phone?: string;
email?: string;
address?: string;
}
export interface UpdateStockAlertsInput {
userId?: string;
productName?: string;
currentQty?: number;
threshold?: number;
}
// ─── Auth ───────────────────────────────────────────
export interface LoginInput {
username: string;
password: string;
}
export interface RegisterInput {
username: string;
password: string;
nickname?: string;
}
export interface AuthResponse {
token: string;
user: User;
}
// ─── API ────────────────────────────────────────────
export interface ApiResponse<T> {
data: T;
message?: string;
}
export interface PaginatedResponse<T> {
data: T[];
total: number;
page: number;
pageSize: number;
}
export interface ErrorResponse {
error: string;
message: string;
statusCode: number;
}
// ─── JWT ────────────────────────────────────────────
export interface JwtPayload {
userId: string;
username: string;
role: string;
iat?: number;
exp?: number;
}
+27
View File
@@ -0,0 +1,27 @@
// Type declarations for sql.js (no native types package available)
declare module "sql.js" {
export interface Database {
run(sql: string, params?: BindParams): void;
exec(sql: string): void;
prepare(sql: string): Statement;
export(): Uint8Array;
close(): void;
getRowsModified(): number;
}
export interface Statement {
bind(params?: BindParams): boolean;
step(): boolean;
getAsObject<T = Record<string, unknown>>(): T;
getColumnNames(): string[];
free(): boolean;
}
export type BindParams = unknown[] | Record<string, unknown>;
export interface SqlJsStatic {
Database: new (data?: ArrayLike<number>) => Database;
}
export default function initSqlJs(config?: Record<string, unknown>): Promise<SqlJsStatic>;
}
@@ -0,0 +1,27 @@
{
"compilerOptions": {
"target": "ES2022",
"module": "ESNext",
"moduleResolution": "bundler",
"lib": [
"ES2022"
],
"outDir": "./dist",
"rootDir": "./src",
"strict": true,
"esModuleInterop": true,
"skipLibCheck": true,
"forceConsistentCasingInFileNames": true,
"resolveJsonModule": true,
"declaration": true,
"sourceMap": true
},
"include": [
"src/**/*"
],
"exclude": [
"node_modules",
"dist",
"src/__tests__"
]
}