2021-06-26 17:23:15 +02:00
|
|
|
<?php
|
|
|
|
|
|
|
|
namespace BookStack\Http\Controllers;
|
2017-01-13 17:15:48 +01:00
|
|
|
|
2018-09-25 13:30:50 +02:00
|
|
|
use BookStack\Actions\CommentRepo;
|
2020-11-22 01:17:45 +01:00
|
|
|
use BookStack\Entities\Models\Page;
|
2017-01-13 17:15:48 +01:00
|
|
|
use Illuminate\Http\Request;
|
2019-10-05 13:55:01 +02:00
|
|
|
use Illuminate\Validation\ValidationException;
|
2017-01-13 17:15:48 +01:00
|
|
|
|
|
|
|
class CommentController extends Controller
|
|
|
|
{
|
2017-09-03 17:37:51 +02:00
|
|
|
protected $commentRepo;
|
|
|
|
|
2019-10-05 13:55:01 +02:00
|
|
|
public function __construct(CommentRepo $commentRepo)
|
2017-04-18 21:51:45 +02:00
|
|
|
{
|
|
|
|
$this->commentRepo = $commentRepo;
|
2017-01-13 17:15:48 +01:00
|
|
|
}
|
2017-04-18 21:51:45 +02:00
|
|
|
|
2017-09-03 17:37:51 +02:00
|
|
|
/**
|
2021-06-26 17:23:15 +02:00
|
|
|
* Save a new comment for a Page.
|
|
|
|
*
|
2019-10-05 13:55:01 +02:00
|
|
|
* @throws ValidationException
|
2017-09-03 17:37:51 +02:00
|
|
|
*/
|
2020-05-02 00:24:11 +02:00
|
|
|
public function savePageComment(Request $request, int $pageId)
|
2017-04-18 21:51:45 +02:00
|
|
|
{
|
|
|
|
$this->validate($request, [
|
2021-11-05 01:26:55 +01:00
|
|
|
'text' => ['required', 'string'],
|
|
|
|
'parent_id' => ['nullable', 'integer'],
|
2017-04-18 21:51:45 +02:00
|
|
|
]);
|
|
|
|
|
2019-10-05 13:55:01 +02:00
|
|
|
$page = Page::visible()->find($pageId);
|
|
|
|
if ($page === null) {
|
2017-04-18 21:51:45 +02:00
|
|
|
return response('Not found', 404);
|
|
|
|
}
|
|
|
|
|
2017-09-03 17:37:51 +02:00
|
|
|
// Prevent adding comments to draft pages
|
|
|
|
if ($page->draft) {
|
|
|
|
return $this->jsonError(trans('errors.cannot_add_comment_to_draft'), 400);
|
2017-04-18 21:51:45 +02:00
|
|
|
}
|
|
|
|
|
2017-09-03 17:37:51 +02:00
|
|
|
// Create a new comment.
|
|
|
|
$this->checkPermission('comment-create-all');
|
2020-05-02 00:24:11 +02:00
|
|
|
$comment = $this->commentRepo->create($page, $request->get('text'), $request->get('parent_id'));
|
2021-06-26 17:23:15 +02:00
|
|
|
|
2019-04-07 13:00:09 +02:00
|
|
|
return view('comments.comment', ['comment' => $comment]);
|
2017-09-03 17:37:51 +02:00
|
|
|
}
|
2017-05-30 05:32:47 +02:00
|
|
|
|
2017-09-03 17:37:51 +02:00
|
|
|
/**
|
|
|
|
* Update an existing comment.
|
2021-06-26 17:23:15 +02:00
|
|
|
*
|
2019-10-05 13:55:01 +02:00
|
|
|
* @throws ValidationException
|
2017-09-03 17:37:51 +02:00
|
|
|
*/
|
2019-10-05 13:55:01 +02:00
|
|
|
public function update(Request $request, int $commentId)
|
2017-09-03 17:37:51 +02:00
|
|
|
{
|
|
|
|
$this->validate($request, [
|
2021-11-05 01:26:55 +01:00
|
|
|
'text' => ['required', 'string'],
|
2017-04-18 21:51:45 +02:00
|
|
|
]);
|
|
|
|
|
2017-09-03 17:37:51 +02:00
|
|
|
$comment = $this->commentRepo->getById($commentId);
|
|
|
|
$this->checkOwnablePermission('page-view', $comment->entity);
|
|
|
|
$this->checkOwnablePermission('comment-update', $comment);
|
|
|
|
|
2020-05-02 00:24:11 +02:00
|
|
|
$comment = $this->commentRepo->update($comment, $request->get('text'));
|
2021-06-26 17:23:15 +02:00
|
|
|
|
2019-04-07 13:00:09 +02:00
|
|
|
return view('comments.comment', ['comment' => $comment]);
|
2017-01-13 17:15:48 +01:00
|
|
|
}
|
2017-05-15 21:10:14 +02:00
|
|
|
|
2017-09-03 17:37:51 +02:00
|
|
|
/**
|
|
|
|
* Delete a comment from the system.
|
|
|
|
*/
|
2019-10-05 13:55:01 +02:00
|
|
|
public function destroy(int $id)
|
2017-09-03 17:37:51 +02:00
|
|
|
{
|
|
|
|
$comment = $this->commentRepo->getById($id);
|
2017-04-18 21:51:45 +02:00
|
|
|
$this->checkOwnablePermission('comment-delete', $comment);
|
2019-10-05 13:55:01 +02:00
|
|
|
|
2017-06-04 15:22:44 +02:00
|
|
|
$this->commentRepo->delete($comment);
|
2021-06-26 17:23:15 +02:00
|
|
|
|
2017-09-03 17:37:51 +02:00
|
|
|
return response()->json(['message' => trans('entities.comment_deleted')]);
|
2017-01-13 17:15:48 +01:00
|
|
|
}
|
|
|
|
}
|