* refactor: Split EmailManager into focused service files - Created separate service files for different email categories: - auth-email-service.ts: Authentication and verification emails - organization-email-service.ts: Organization and team emails - billing-email-service.ts: Payment and credit-related emails - integration-email-service.ts: Integration and app-related emails - workflow-email-service.ts: Workflow and custom emails - recording-email-service.ts: Recording and transcript emails - Refactored email-manager.ts to keep only core booking lifecycle functions - Removed unused imports from email-manager.ts - Updated index.ts to export from all new service files - Updated all imports across the codebase to use package root (@calcom/emails) - Fixed lint warnings in handleChildrenEventTypes.ts This reduces the import cost of EmailManager by allowing consumers to import only the specific email services they need. Co-Authored-By: morgan@cal.com <morgan@cal.com> * refactor: Update all imports to use direct service file paths - Update 49 files to import directly from service files instead of barrel file - Update packages/emails/index.ts to keep only email-manager and renderEmail exports - Fix dynamic import in passwordResetRequest.ts - Update renderEmail imports to use direct path - Update test file to import from specific service module - Fix ESLint warnings in modified files (unused variables, unused expressions) This ensures consumers only import the specific email services they need, reducing import cost by avoiding the barrel file pattern for service files. Co-Authored-By: morgan@cal.com <morgan@cal.com> * fix: Use default import for renderEmail renderEmail is exported as a default export, not a named export. Changed from 'import { renderEmail }' to 'import renderEmail'. Co-Authored-By: morgan@cal.com <morgan@cal.com> * fix: Update test mocks to use direct service file imports - Update handleNoShowFee.test.ts to mock @calcom/emails/billing-email-service - Update credit-service.test.ts to mock @calcom/emails/billing-email-service - These tests were failing because they were mocking the barrel file @calcom/emails which no longer exports service functions after the refactoring Co-Authored-By: morgan@cal.com <morgan@cal.com> * fix: unit test spy * fix: unit test mock * address cubic comments * fix: type error sendMonthlyDigestEmail * remove barrel file and sendEmail unused task * fixup! remove barrel file and sendEmail unused task * fixup! fixup! remove barrel file and sendEmail unused task * fix: integration test mock emails --------- Co-authored-by: Devin AI <158243242+devin-ai-integration[bot]@users.noreply.github.com> Co-authored-by: hbjORbj <sldisek783@gmail.com>
180 lines
5.1 KiB
TypeScript
180 lines
5.1 KiB
TypeScript
import { randomBytes, createHash } from "crypto";
|
|
import { totp } from "otplib";
|
|
|
|
import {
|
|
sendEmailVerificationCode,
|
|
sendEmailVerificationLink,
|
|
sendChangeOfEmailVerificationLink,
|
|
} from "@calcom/emails/auth-email-service";
|
|
import { FeaturesRepository } from "@calcom/features/flags/features.repository";
|
|
import { sentrySpan } from "@calcom/features/watchlist/lib/telemetry";
|
|
import { checkIfEmailIsBlockedInWatchlistController } from "@calcom/features/watchlist/operations/check-if-email-in-watchlist.controller";
|
|
import { checkRateLimitAndThrowError } from "@calcom/lib/checkRateLimitAndThrowError";
|
|
import { WEBAPP_URL } from "@calcom/lib/constants";
|
|
import logger from "@calcom/lib/logger";
|
|
import { hashEmail } from "@calcom/lib/server/PiiHasher";
|
|
import { getTranslation } from "@calcom/lib/server/i18n";
|
|
import { prisma } from "@calcom/prisma";
|
|
|
|
const log = logger.getSubLogger({ prefix: [`[[Auth] `] });
|
|
|
|
interface VerifyEmailType {
|
|
username?: string;
|
|
email: string;
|
|
language?: string;
|
|
secondaryEmailId?: number;
|
|
isVerifyingEmail?: boolean;
|
|
isPlatform?: boolean;
|
|
}
|
|
|
|
export const sendEmailVerification = async ({
|
|
email,
|
|
language,
|
|
username,
|
|
secondaryEmailId,
|
|
isPlatform = false,
|
|
}: VerifyEmailType) => {
|
|
const token = randomBytes(32).toString("hex");
|
|
const translation = await getTranslation(language ?? "en", "common");
|
|
const featuresRepository = new FeaturesRepository(prisma);
|
|
const emailVerification = await featuresRepository.checkIfFeatureIsEnabledGlobally("email-verification");
|
|
|
|
if (!emailVerification) {
|
|
log.warn("Email verification is disabled - Skipping");
|
|
return { ok: true, skipped: true };
|
|
}
|
|
|
|
if (await checkIfEmailIsBlockedInWatchlistController({ email, organizationId: null, span: sentrySpan })) {
|
|
log.warn("Email is blocked - not sending verification email", email);
|
|
return { ok: false, skipped: false };
|
|
}
|
|
|
|
if (isPlatform) {
|
|
log.warn("Skipping Email verification");
|
|
return { ok: true, skipped: true };
|
|
}
|
|
|
|
await checkRateLimitAndThrowError({
|
|
rateLimitingType: "core",
|
|
identifier: hashEmail(email),
|
|
});
|
|
|
|
await prisma.verificationToken.create({
|
|
data: {
|
|
identifier: email,
|
|
token,
|
|
expires: new Date(Date.now() + 24 * 3600 * 1000), // +1 day
|
|
secondaryEmailId: secondaryEmailId || null,
|
|
},
|
|
});
|
|
|
|
const params = new URLSearchParams({
|
|
token,
|
|
});
|
|
|
|
await sendEmailVerificationLink({
|
|
language: translation,
|
|
verificationEmailLink: `${WEBAPP_URL}/api/auth/verify-email?${params.toString()}`,
|
|
user: {
|
|
email,
|
|
name: username,
|
|
},
|
|
isSecondaryEmailVerification: !!secondaryEmailId,
|
|
});
|
|
|
|
return { ok: true, skipped: false };
|
|
};
|
|
|
|
export const sendEmailVerificationByCode = async ({
|
|
email,
|
|
language,
|
|
username,
|
|
isVerifyingEmail,
|
|
}: VerifyEmailType) => {
|
|
if (await checkIfEmailIsBlockedInWatchlistController({ email, organizationId: null, span: sentrySpan })) {
|
|
log.warn("Email is blocked - not sending verification email", email);
|
|
return { ok: false, skipped: false };
|
|
}
|
|
|
|
const translation = await getTranslation(language ?? "en", "common");
|
|
const secret = createHash("md5")
|
|
.update(email + process.env.CALENDSO_ENCRYPTION_KEY)
|
|
.digest("hex");
|
|
|
|
totp.options = { step: 900 };
|
|
const code = totp.generate(secret);
|
|
|
|
await sendEmailVerificationCode({
|
|
language: translation,
|
|
verificationEmailCode: code,
|
|
user: {
|
|
email,
|
|
name: username,
|
|
},
|
|
isVerifyingEmail,
|
|
});
|
|
|
|
return { ok: true, skipped: false };
|
|
};
|
|
|
|
interface ChangeOfEmail {
|
|
user: {
|
|
username: string;
|
|
emailFrom: string;
|
|
emailTo: string;
|
|
};
|
|
language?: string;
|
|
}
|
|
|
|
export const sendChangeOfEmailVerification = async ({ user, language }: ChangeOfEmail) => {
|
|
const token = randomBytes(32).toString("hex");
|
|
const translation = await getTranslation(language ?? "en", "common");
|
|
const featuresRepository = new FeaturesRepository(prisma);
|
|
const emailVerification = await featuresRepository.checkIfFeatureIsEnabledGlobally("email-verification");
|
|
|
|
if (!emailVerification) {
|
|
log.warn("Email verification is disabled - Skipping");
|
|
return { ok: true, skipped: true };
|
|
}
|
|
|
|
if (
|
|
await checkIfEmailIsBlockedInWatchlistController({
|
|
email: user.emailFrom,
|
|
organizationId: null,
|
|
span: sentrySpan,
|
|
})
|
|
) {
|
|
log.warn("Email is blocked - not sending verification email", user.emailFrom);
|
|
return { ok: false, skipped: false };
|
|
}
|
|
|
|
await checkRateLimitAndThrowError({
|
|
rateLimitingType: "core",
|
|
identifier: hashEmail(user.emailFrom),
|
|
});
|
|
|
|
await prisma.verificationToken.create({
|
|
data: {
|
|
identifier: user.emailFrom, // We use from as this is the email use to get the metadata from
|
|
token,
|
|
expires: new Date(Date.now() + 24 * 3600 * 1000), // +1 day
|
|
},
|
|
});
|
|
|
|
const params = new URLSearchParams({
|
|
token,
|
|
});
|
|
|
|
await sendChangeOfEmailVerificationLink({
|
|
language: translation,
|
|
verificationEmailLink: `${WEBAPP_URL}/auth/verify-email-change?${params.toString()}`,
|
|
user: {
|
|
emailFrom: user.emailFrom,
|
|
emailTo: user.emailTo,
|
|
name: user.username,
|
|
},
|
|
});
|
|
|
|
return { ok: true, skipped: false };
|
|
};
|