A post given a latitude and longitude becomes LocalGeo: its position is rounded to two decimals (about a kilometre) and stored as a 2dsphere point, its radius clamped to 1-50 km, and it is local only - no Create, no delivery, no outbox, never in the Mastodon API or on a profile page. /clientapi/post/nearby takes the viewer's position for the query only (it is neither stored nor logged), runs $geoNear and keeps posts within each post's own radius, minus authors the viewer blocks or mutes. A located post cannot be direct or in a group. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_012CzABvBkbcFqoHdmi8b9WB
60 lines
2.6 KiB
C#
60 lines
2.6 KiB
C#
using Microsoft.AspNetCore.Authorization;
|
|
using Microsoft.AspNetCore.Mvc;
|
|
using Microsoft.Extensions.Localization;
|
|
|
|
using PrivaPub.ClientModels;
|
|
using PrivaPub.ClientModels.Post;
|
|
using PrivaPub.Extensions;
|
|
using PrivaPub.Resources;
|
|
using PrivaPub.Services;
|
|
|
|
namespace PrivaPub.Controllers.ClientToServer
|
|
{
|
|
[ApiController,
|
|
Route("clientapi/post"),
|
|
Authorize(Policy = Policies.IsUser)]
|
|
public class PostController : ControllerBase
|
|
{
|
|
readonly IPostsService _postsService;
|
|
readonly IStringLocalizer _localizer;
|
|
|
|
public PostController(IPostsService postsService, IStringLocalizer<GenericRes> localizer)
|
|
{
|
|
_postsService = postsService;
|
|
_localizer = localizer;
|
|
}
|
|
|
|
[HttpGet, Route("/clientapi/post/list")]
|
|
public async Task<IActionResult> List([FromQuery] string avatarId, [FromQuery] string groupId, CancellationToken token) =>
|
|
Answer(await _postsService.GetPosts(User.GetUserId(), avatarId, groupId, token));
|
|
|
|
[HttpPost, Route("/clientapi/post/insert")]
|
|
public async Task<IActionResult> Insert(InsertPostForm form, CancellationToken token) =>
|
|
!ModelState.IsValid ? Invalid() : Answer(await _postsService.InsertPost(User.GetUserId(), form, token));
|
|
|
|
[HttpGet, Route("/clientapi/post/nearby")]
|
|
public async Task<IActionResult> Nearby([FromQuery] string avatarId, [FromQuery] double latitude, [FromQuery] double longitude, CancellationToken token) =>
|
|
Answer(await _postsService.Nearby(User.GetUserId(), avatarId, latitude, longitude, token));
|
|
|
|
[HttpPost, Route("/clientapi/post/update")]
|
|
public async Task<IActionResult> Update(UpdatePostForm form, CancellationToken token) =>
|
|
!ModelState.IsValid ? Invalid() : Answer(await _postsService.UpdatePost(User.GetUserId(), form, token));
|
|
|
|
[HttpPost, Route("/clientapi/post/delete")]
|
|
public async Task<IActionResult> Delete(DeletePostForm form, CancellationToken token) =>
|
|
!ModelState.IsValid ? Invalid() : Answer(await _postsService.DeletePost(User.GetUserId(), form, token));
|
|
|
|
[HttpGet, Route("/clientapi/dm/list")]
|
|
public async Task<IActionResult> Dms([FromQuery] string avatarId, [FromQuery] string dmGroupId, CancellationToken token) =>
|
|
Answer(await _postsService.GetDms(User.GetUserId(), avatarId, dmGroupId, token));
|
|
|
|
[HttpPost, Route("/clientapi/dm/insert")]
|
|
public async Task<IActionResult> InsertDm(InsertDmForm form, CancellationToken token) =>
|
|
!ModelState.IsValid ? Invalid() : Answer(await _postsService.InsertDm(User.GetUserId(), form, token));
|
|
|
|
IActionResult Invalid() => BadRequest(new WebResult().Invalidate(_localizer["Invalid model."]));
|
|
|
|
IActionResult Answer(WebResult result) => result.IsValid ? Ok(result.Data) : StatusCode(result.StatusCode, result);
|
|
}
|
|
}
|