btcpayserver/BTCPayServer/Controllers/UIPaymentRequestController.cs

359 lines
14 KiB
C#
Raw Normal View History

2019-01-14 22:43:29 +01:00
using System;
using System.Collections.Generic;
using System.Linq;
using System.Threading;
2019-01-14 22:43:29 +01:00
using System.Threading.Tasks;
using BTCPayServer.Abstractions.Constants;
using BTCPayServer.Abstractions.Extensions;
using BTCPayServer.Client;
2020-07-24 09:40:37 +02:00
using BTCPayServer.Client.Models;
2019-01-14 22:43:29 +01:00
using BTCPayServer.Data;
using BTCPayServer.Filters;
using BTCPayServer.Models.PaymentRequestViewModels;
using BTCPayServer.PaymentRequest;
using BTCPayServer.Services.Invoices;
using BTCPayServer.Services.PaymentRequests;
using BTCPayServer.Services.Rates;
using BTCPayServer.Services.Stores;
using Microsoft.AspNetCore.Authorization;
using Microsoft.AspNetCore.Identity;
using Microsoft.AspNetCore.Mvc;
using Microsoft.AspNetCore.Routing;
2020-07-24 09:40:37 +02:00
using PaymentRequestData = BTCPayServer.Data.PaymentRequestData;
using StoreData = BTCPayServer.Data.StoreData;
2019-01-14 22:43:29 +01:00
namespace BTCPayServer.Controllers
{
[Authorize(Policy = Policies.CanModifyStoreSettings, AuthenticationSchemes = AuthenticationSchemes.Cookie)]
2019-01-14 22:43:29 +01:00
[Route("payment-requests")]
2022-01-07 04:32:00 +01:00
public class UIPaymentRequestController : Controller
2019-01-14 22:43:29 +01:00
{
2022-01-07 04:32:00 +01:00
private readonly UIInvoiceController _InvoiceController;
2019-01-14 22:43:29 +01:00
private readonly UserManager<ApplicationUser> _UserManager;
private readonly PaymentRequestRepository _PaymentRequestRepository;
private readonly PaymentRequestService _PaymentRequestService;
private readonly EventAggregator _EventAggregator;
private readonly CurrencyNameTable _Currencies;
private readonly InvoiceRepository _InvoiceRepository;
private readonly LinkGenerator _linkGenerator;
2019-01-14 22:43:29 +01:00
2022-01-07 04:32:00 +01:00
public UIPaymentRequestController(
UIInvoiceController invoiceController,
2019-01-14 22:43:29 +01:00
UserManager<ApplicationUser> userManager,
PaymentRequestRepository paymentRequestRepository,
PaymentRequestService paymentRequestService,
EventAggregator eventAggregator,
CurrencyNameTable currencies,
InvoiceRepository invoiceRepository,
LinkGenerator linkGenerator)
2019-01-14 22:43:29 +01:00
{
_InvoiceController = invoiceController;
_UserManager = userManager;
_PaymentRequestRepository = paymentRequestRepository;
_PaymentRequestService = paymentRequestService;
_EventAggregator = eventAggregator;
_Currencies = currencies;
_InvoiceRepository = invoiceRepository;
_linkGenerator = linkGenerator;
2019-01-14 22:43:29 +01:00
}
[BitpayAPIConstraint(false)]
[HttpGet("/stores/{storeId}/payment-requests")]
public async Task<IActionResult> GetPaymentRequests(string storeId, ListPaymentRequestsViewModel model = null)
2019-01-14 22:43:29 +01:00
{
model = this.ParseListQuery(model ?? new ListPaymentRequestsViewModel());
var store = GetCurrentStore();
var includeArchived = new SearchString(model.SearchTerm).GetFilterBool("includearchived") == true;
var result = await _PaymentRequestRepository.FindPaymentRequests(new PaymentRequestQuery
2019-01-14 22:43:29 +01:00
{
2020-06-28 10:55:27 +02:00
UserId = GetUserId(),
StoreId = store.Id,
Skip = model.Skip,
Count = model.Count,
2020-06-28 10:55:27 +02:00
IncludeArchived = includeArchived
2019-01-14 22:43:29 +01:00
});
model.Total = result.Total;
model.Items = result.Items.Select(data => new ViewPaymentRequestViewModel(data)).ToList();
return View(model);
2019-01-14 22:43:29 +01:00
}
[HttpGet("/stores/{storeId}/payment-requests/edit/{payReqId?}")]
public IActionResult EditPaymentRequest(string storeId, string payReqId)
2019-01-14 22:43:29 +01:00
{
var store = GetCurrentStore();
var paymentRequest = GetCurrentPaymentRequest();
if (paymentRequest == null && !string.IsNullOrEmpty(payReqId))
2019-01-14 22:43:29 +01:00
{
return NotFound();
}
var vm = new UpdatePaymentRequestViewModel(paymentRequest)
2019-01-14 22:43:29 +01:00
{
StoreId = store.Id
};
vm.Currency ??= store.GetStoreBlob().DefaultCurrency;
return View(nameof(EditPaymentRequest), vm);
2019-01-14 22:43:29 +01:00
}
[HttpPost("/stores/{storeId}/payment-requests/edit/{payReqId?}")]
public async Task<IActionResult> EditPaymentRequest(string payReqId, UpdatePaymentRequestViewModel viewModel)
2019-01-14 22:43:29 +01:00
{
if (!string.IsNullOrEmpty(viewModel.Currency) &&
2019-01-14 22:43:29 +01:00
_Currencies.GetCurrencyData(viewModel.Currency, false) == null)
ModelState.AddModelError(nameof(viewModel.Currency), "Invalid currency");
if (string.IsNullOrEmpty(viewModel.Currency))
viewModel.Currency = null;
var store = GetCurrentStore();
var paymentRequest = GetCurrentPaymentRequest();
if (paymentRequest == null && !string.IsNullOrEmpty(payReqId))
2019-01-14 22:43:29 +01:00
{
return NotFound();
}
if (paymentRequest?.Archived is true && viewModel.Archived)
2020-05-08 12:33:47 +02:00
{
ModelState.AddModelError(string.Empty, "You cannot edit an archived payment request.");
}
2019-01-14 22:43:29 +01:00
if (!ModelState.IsValid)
{
2020-06-28 10:55:27 +02:00
return View(nameof(EditPaymentRequest), viewModel);
2019-01-14 22:43:29 +01:00
}
var data = paymentRequest ?? new PaymentRequestData();
2019-01-14 22:43:29 +01:00
data.StoreDataId = viewModel.StoreId;
2020-05-08 12:33:47 +02:00
data.Archived = viewModel.Archived;
2021-12-31 08:59:02 +01:00
2019-01-14 22:43:29 +01:00
var blob = data.GetBlob();
blob.Title = viewModel.Title;
blob.Email = viewModel.Email;
blob.Description = viewModel.Description;
2019-01-14 22:43:29 +01:00
blob.Amount = viewModel.Amount;
blob.ExpiryDate = viewModel.ExpiryDate?.ToUniversalTime();
blob.Currency = viewModel.Currency ?? store.GetStoreBlob().DefaultCurrency;
2019-01-14 22:43:29 +01:00
blob.EmbeddedCSS = viewModel.EmbeddedCSS;
blob.CustomCSSLink = viewModel.CustomCSSLink;
blob.AllowCustomPaymentAmounts = viewModel.AllowCustomPaymentAmounts;
data.SetBlob(blob);
if (string.IsNullOrEmpty(payReqId))
{
data.Created = DateTimeOffset.UtcNow;
}
2020-05-08 12:33:47 +02:00
2019-01-14 22:43:29 +01:00
data = await _PaymentRequestRepository.CreateOrUpdatePaymentRequest(data);
_EventAggregator.Publish(new PaymentRequestUpdated { Data = data, PaymentRequestId = data.Id, });
2019-02-22 11:37:45 +01:00
2019-11-07 08:19:36 +01:00
TempData[WellKnownTempData.SuccessMessage] = "Saved";
return RedirectToAction(nameof(EditPaymentRequest), new { storeId = store.Id, payReqId = data.Id });
2019-01-14 22:43:29 +01:00
}
[HttpGet("{payReqId}")]
2019-01-14 22:43:29 +01:00
[AllowAnonymous]
public async Task<IActionResult> ViewPaymentRequest(string payReqId)
2019-01-14 22:43:29 +01:00
{
var result = await _PaymentRequestService.GetPaymentRequest(payReqId, GetUserId());
2019-01-14 22:43:29 +01:00
if (result == null)
{
return NotFound();
}
2020-05-08 12:33:47 +02:00
result.HubPath = PaymentRequestHub.GetHubPath(Request);
2019-01-14 22:43:29 +01:00
return View(result);
}
[HttpGet("{payReqId}/pay")]
2019-01-14 22:43:29 +01:00
[AllowAnonymous]
public async Task<IActionResult> PayPaymentRequest(string payReqId, bool redirectToInvoice = true,
decimal? amount = null, CancellationToken cancellationToken = default)
2019-01-14 22:43:29 +01:00
{
if (amount.HasValue && amount.Value <= 0)
{
return BadRequest("Please provide an amount greater than 0");
}
2020-05-08 12:33:47 +02:00
var result = await _PaymentRequestService.GetPaymentRequest(payReqId, GetUserId());
2019-01-14 22:43:29 +01:00
if (result == null)
{
return NotFound();
}
2020-05-08 12:33:47 +02:00
if (result.Archived)
{
if (redirectToInvoice)
{
return RedirectToAction("ViewPaymentRequest", new { Id = payReqId });
2020-05-08 12:33:47 +02:00
}
return BadRequest("Payment Request cannot be paid as it has been archived");
}
result.HubPath = PaymentRequestHub.GetHubPath(Request);
2019-01-14 22:43:29 +01:00
if (result.AmountDue <= 0)
{
if (redirectToInvoice)
{
return RedirectToAction("ViewPaymentRequest", new { Id = payReqId });
2019-01-14 22:43:29 +01:00
}
return BadRequest("Payment Request has already been settled.");
}
if (result.ExpiryDate.HasValue && DateTime.UtcNow >= result.ExpiryDate)
2019-01-14 22:43:29 +01:00
{
if (redirectToInvoice)
{
return RedirectToAction("ViewPaymentRequest", new { Id = payReqId });
2019-01-14 22:43:29 +01:00
}
return BadRequest("Payment Request has expired");
}
var stateAllowedToDisplay = new HashSet<InvoiceState>
{
new InvoiceState(InvoiceStatusLegacy.New, InvoiceExceptionStatus.None),
new InvoiceState(InvoiceStatusLegacy.New, InvoiceExceptionStatus.PaidPartial),
};
var currentInvoice = result
.Invoices
.FirstOrDefault(invoice => stateAllowedToDisplay.Contains(invoice.State));
if (currentInvoice != null)
2019-01-14 22:43:29 +01:00
{
if (redirectToInvoice)
{
2022-01-07 04:32:00 +01:00
return RedirectToAction("Checkout", "UIInvoice", new { currentInvoice.Id });
2019-01-14 22:43:29 +01:00
}
return Ok(currentInvoice.Id);
2019-01-14 22:43:29 +01:00
}
2019-01-14 22:43:29 +01:00
if (result.AllowCustomPaymentAmounts && amount != null)
2019-03-05 09:13:34 +01:00
amount = Math.Min(result.AmountDue, amount.Value);
else
amount = result.AmountDue;
2021-12-31 08:59:02 +01:00
var pr = await _PaymentRequestRepository.FindPaymentRequest(payReqId, null, cancellationToken);
2019-01-14 22:43:29 +01:00
var blob = pr.GetBlob();
var store = pr.StoreData;
try
{
var redirectUrl = _linkGenerator.PaymentRequestLink(payReqId, Request.Scheme, Request.Host, Request.PathBase);
var invoiceMetadata =
new InvoiceMetadata
{
OrderId = PaymentRequestRepository.GetOrderIdForPaymentRequest(payReqId),
PaymentRequestId = payReqId,
BuyerEmail = result.Email
};
var invoiceRequest =
new CreateInvoiceRequest
{
Metadata = invoiceMetadata.ToJObject(),
Currency = blob.Currency,
Amount = amount.Value,
2021-12-31 08:59:02 +01:00
Checkout = { RedirectURL = redirectUrl }
};
2021-12-31 08:59:02 +01:00
var additionalTags = new List<string> { PaymentRequestRepository.GetInternalTag(payReqId) };
var newInvoice = await _InvoiceController.CreateInvoiceCoreRaw(invoiceRequest, store, Request.GetAbsoluteRoot(), additionalTags, cancellationToken);
2019-01-14 22:43:29 +01:00
if (redirectToInvoice)
{
2022-01-07 04:32:00 +01:00
return RedirectToAction("Checkout", "UIInvoice", new { newInvoice.Id });
2019-01-14 22:43:29 +01:00
}
return Ok(newInvoice.Id);
2019-01-14 22:43:29 +01:00
}
catch (BitpayHttpException e)
{
return BadRequest(e.Message);
}
}
[HttpGet("{payReqId}/cancel")]
public async Task<IActionResult> CancelUnpaidPendingInvoice(string payReqId, bool redirect = true)
{
var result = await _PaymentRequestService.GetPaymentRequest(payReqId, GetUserId());
2020-05-08 12:33:47 +02:00
if (result == null)
{
return NotFound();
}
2019-03-05 09:13:34 +01:00
2021-12-31 08:59:02 +01:00
if (!result.AllowCustomPaymentAmounts)
{
return BadRequest("Not allowed to cancel this invoice");
}
var invoices = result.Invoices.Where(requestInvoice =>
requestInvoice.State.Status == InvoiceStatusLegacy.New && !requestInvoice.Payments.Any());
if (!invoices.Any())
{
return BadRequest("No unpaid pending invoice to cancel");
}
2020-05-08 12:33:47 +02:00
foreach (var invoice in invoices)
{
2020-07-24 09:40:37 +02:00
await _InvoiceRepository.MarkInvoiceStatus(invoice.Id, InvoiceStatus.Invalid);
}
if (redirect)
{
TempData[WellKnownTempData.SuccessMessage] = "Payment cancelled";
return RedirectToAction(nameof(ViewPaymentRequest), new { Id = payReqId });
}
return Ok("Payment cancelled");
}
2020-05-08 12:33:47 +02:00
[HttpGet("{payReqId}/clone")]
public IActionResult ClonePaymentRequest(string payReqId)
{
var store = GetCurrentStore();
var result = EditPaymentRequest(store.Id, payReqId);
if (result is ViewResult viewResult)
{
var model = (UpdatePaymentRequestViewModel)viewResult.Model;
model.Id = null;
2020-05-08 12:33:47 +02:00
model.Archived = false;
model.ExpiryDate = null;
model.Title = $"Clone of {model.Title}";
return View("EditPaymentRequest", model);
2020-05-08 12:33:47 +02:00
}
return NotFound();
}
[HttpGet("{payReqId}/archive")]
public async Task<IActionResult> TogglePaymentRequestArchival(string payReqId)
2020-05-08 12:33:47 +02:00
{
var store = GetCurrentStore();
var result = EditPaymentRequest(store.Id, payReqId);
2020-05-08 12:33:47 +02:00
if (result is ViewResult viewResult)
{
var model = (UpdatePaymentRequestViewModel)viewResult.Model;
model.Archived = !model.Archived;
await EditPaymentRequest(payReqId, model);
2020-05-08 12:33:47 +02:00
TempData[WellKnownTempData.SuccessMessage] = model.Archived
? "The payment request has been archived and will no longer appear in the payment request list by default again."
: "The payment request has been unarchived and will appear in the payment request list by default.";
return RedirectToAction("GetPaymentRequests", new { storeId = store.Id });
}
return NotFound();
}
private string GetUserId() => _UserManager.GetUserId(User);
2021-12-31 08:59:02 +01:00
private StoreData GetCurrentStore() => HttpContext.GetStoreData();
2021-12-31 08:59:02 +01:00
private PaymentRequestData GetCurrentPaymentRequest() => HttpContext.GetPaymentRequestData();
2019-01-14 22:43:29 +01:00
}
}