* feat: optimize Prisma queries by replacing findFirst with findUnique where applicable - Replace findFirst/findFirstOrThrow with findUnique/findUniqueOrThrow for queries using unique constraints - Maintain existing functionality and error handling behavior - Focus on queries using primary keys and unique index fields from schema - Revert problematic changes that caused test failures to maintain stability Co-Authored-By: benny@cal.com <benny@cal.com> * revert: exclude API files from Prisma query optimizations per user request - Reverted all 55 API-related files to their original state - Kept all non-API Prisma query optimizations intact - API files include apps/api/v1, apps/api/v2, apps/web/app/api, and packages/app-store/*/api - Non-API optimizations remain for packages/lib, packages/features, apps/web (non-api), etc. Co-Authored-By: benny@cal.com <benny@cal.com> * feat: optimize membership query in attributeUtils to use findUnique with userId_teamId constraint Co-Authored-By: benny@cal.com <benny@cal.com> * revert: exclude test files from Prisma query optimizations per user request Co-Authored-By: benny@cal.com <benny@cal.com> * revert: revert attributeUtils.ts to use findFirst for test compatibility Co-Authored-By: benny@cal.com <benny@cal.com> --------- Co-authored-by: Devin AI <158243242+devin-ai-integration[bot]@users.noreply.github.com> Co-authored-by: benny@cal.com <benny@cal.com> Co-authored-by: Anik Dhabal Babu <81948346+anikdhabal@users.noreply.github.com>
54 lines
1.2 KiB
TypeScript
54 lines
1.2 KiB
TypeScript
import jwt from "jsonwebtoken";
|
|
|
|
import prisma from "@calcom/prisma";
|
|
import type { OAuthTokenPayload } from "@calcom/types/oauth";
|
|
|
|
export default async function isAuthorized(token: string, requiredScopes: string[] = []) {
|
|
let decodedToken: OAuthTokenPayload;
|
|
try {
|
|
decodedToken = jwt.verify(token, process.env.CALENDSO_ENCRYPTION_KEY || "") as OAuthTokenPayload;
|
|
} catch {
|
|
return null;
|
|
}
|
|
|
|
if (!decodedToken) return null;
|
|
const hasAllRequiredScopes = requiredScopes.every((scope) => decodedToken.scope.includes(scope));
|
|
|
|
if (!hasAllRequiredScopes || decodedToken.token_type !== "Access Token") {
|
|
return null;
|
|
}
|
|
|
|
if (decodedToken.userId) {
|
|
const user = await prisma.user.findUnique({
|
|
where: {
|
|
id: decodedToken.userId,
|
|
},
|
|
select: {
|
|
id: true,
|
|
username: true,
|
|
},
|
|
});
|
|
|
|
if (!user) return null;
|
|
|
|
return { id: user.id, name: user.username, isTeam: false };
|
|
}
|
|
|
|
if (decodedToken.teamId) {
|
|
const team = await prisma.team.findUnique({
|
|
where: {
|
|
id: decodedToken.teamId,
|
|
},
|
|
select: {
|
|
id: true,
|
|
name: true,
|
|
},
|
|
});
|
|
|
|
if (!team) return null;
|
|
return { ...team, isTeam: true };
|
|
}
|
|
|
|
return null;
|
|
}
|