mirror of
https://github.com/supabase/supabase.git
synced 2026-10-09 19:35:06 +03:00
* update deps + image codemod (studio) * update next links (studio) * update deps * update links (ui) * remove next-transpile-modules * move next-themes dependency * chore: update ConfirmDialog * chore: remove old ConfirmModal js file. migrated to TS * dependency wrangling * remove empty page * update next links (www) * First run bump react-data-grid-v7 beta 4 * fix package-lock.json * more deps wrangling * update recharts * update sentry options * fix some broken things in www * studio fixes * fix graphiql * fix studio build * fix menu hydration * small build error * update turbo * fix www typescript errors * docs image codemod * links codemod docs * fix docs typescript errors * move useConsent to ui to prevent circular deps * Fix links * Fix homepage * Fix links * move studio/ to apps/ * Revert "move studio/ to apps/" This reverts commit1b0a985fcb. * disable outputFileTracingRoot * remove outputFileTracingRoot * fix homepage product cards * fix PrivacySettings links * Fix links * Fix the build for www. * Minor fixes for JWTGenerator. * Fix the docs and ui tests. * Revert codehike back to 0.8.3 * remove ConfirmAlert() * reenable babel because mobx hates me * fix blog image and comparison page avatar * Fix svg errors * update image synthax * Fix code hike * Move the button in a div so that it doesn't inherit its parent height and make the button look weird. * When components are defined in a component, they get recreated on each render. This makes them unstable in certain cases and causes infinite rerenders. * Replace the next/head usage with next/script. * Chore/upgrade next 13 fix table editor (#18431) * fix table editor styling and fix row deletion logic * Fix deleting selected rows from header, and fix checkboxes not clearing up * Fix deleting all rows when filter applied, and fix deleting all rows * Fix grid size styling issue * Fix TS error * Hydration errors * studio org pages fixes * fix more studio links * audit logs fixes * dropdown icon styling fixes * fix some images in www * upgrade to next 14 * try new sentry wrapper for api * see if this is even invoked * Revert "see if this is even invoked" This reverts commit86c3973ffa. * Revert "try new sentry wrapper for api" This reverts commitf67623ebad. * Revert "upgrade to next 14" This reverts commita24dd6131e. * chore: allow node version 19/20 * Try to fix the LogTable so that it renders with the newer "react-data-grid" version. * Fix type errors in the log renderer code. * Fix the replication screen. * Add the CSS for the GraphiQL. * Fix SQL editor results rendering * Lint * Fix SQL editor results height issue * Fix auth RLS not invalidating RQ when toggling RLS * Fix database tables new/edit column regressed * Fix migrations page empty state if migrations schema not yet created * Fix API side panel docs temp remove postgrest text for column description PK and FK * Fix + improve timeout handling in SQL editor --------- Co-authored-by: Jonathan Summers-Muir <MildTomato@users.noreply.github.com> Co-authored-by: Joshen Lim <joshenlimek@gmail.com> Co-authored-by: Francesco Sansalvadore <f.sansalvadore@gmail.com> Co-authored-by: Terry Sutton <saltcod@gmail.com> Co-authored-by: Ivan Vasilov <vasilov.ivan@gmail.com> Co-authored-by: Kevin Grüneberg <k.grueneberg1994@gmail.com>
152 lines
4.9 KiB
TypeScript
152 lines
4.9 KiB
TypeScript
import { useRouter } from 'next/router'
|
|
import Script from 'next/script'
|
|
import { ComponentType, useEffect } from 'react'
|
|
|
|
import { useParams } from 'common/hooks'
|
|
import { usePermissionsQuery } from 'data/permissions/permissions-query'
|
|
import { useAuthenticatorAssuranceLevelQuery } from 'data/profile/mfa-authenticator-assurance-level-query'
|
|
import { useSelectedProject, useStore } from 'hooks'
|
|
import { useAuth } from 'lib/auth'
|
|
import { IS_PLATFORM } from 'lib/constants'
|
|
import { STORAGE_KEY, getReturnToPath } from 'lib/gotrue'
|
|
import { NextPageWithLayout, isNextPageWithLayout } from 'types'
|
|
import Error500 from '../../pages/500'
|
|
|
|
const PLATFORM_ONLY_PAGES = [
|
|
'reports',
|
|
'settings',
|
|
'auth/providers',
|
|
'auth/templates',
|
|
'auth/url-configuration',
|
|
]
|
|
|
|
export function withAuth<T>(
|
|
WrappedComponent: ComponentType<T> | NextPageWithLayout<T, T>,
|
|
options: {
|
|
/**
|
|
* The auth level used to check the user credentials. In most cases, if the user has MFA enabled
|
|
* we want the highest level (which is 2) for all pages. For certain pages, the user should be
|
|
* able to access them even if he didn't finished his login (typed in his MFA code), for example
|
|
* the support page: We want the user to be able to submit a ticket even if he's not fully
|
|
* signed in.
|
|
* @default true
|
|
*/
|
|
useHighestAAL: boolean
|
|
} = { useHighestAAL: true }
|
|
) {
|
|
const WithAuthHOC: ComponentType<T> = (props) => {
|
|
const router = useRouter()
|
|
const { basePath } = router
|
|
const { ref } = useParams()
|
|
const rootStore = useStore()
|
|
const { isLoading, session } = useAuth()
|
|
const { isLoading: isAALLoading, data: aalData } = useAuthenticatorAssuranceLevelQuery()
|
|
|
|
const { ui } = rootStore
|
|
const page = router.pathname.split('/').slice(3).join('/')
|
|
|
|
const redirectTo = defaultRedirectTo(ref)
|
|
|
|
usePermissionsQuery({
|
|
onError(error: any) {
|
|
ui.setNotification({
|
|
error,
|
|
category: 'error',
|
|
message: `Failed to fetch permissions: ${error.message}. Try refreshing your browser, or reach out to us via a support ticket if the issue persists`,
|
|
})
|
|
},
|
|
})
|
|
|
|
const isLoggedIn = Boolean(session)
|
|
const isCorrectLevel = options.useHighestAAL
|
|
? aalData?.currentLevel === aalData?.nextLevel
|
|
: true
|
|
|
|
const isAccessingBlockedPage =
|
|
!IS_PLATFORM &&
|
|
PLATFORM_ONLY_PAGES.some((platformOnlyPage) => page.startsWith(platformOnlyPage))
|
|
const isRedirecting =
|
|
isAccessingBlockedPage ||
|
|
checkRedirectTo(
|
|
isLoading || isAALLoading,
|
|
router.pathname,
|
|
isLoggedIn,
|
|
isCorrectLevel,
|
|
redirectTo
|
|
)
|
|
|
|
useEffect(() => {
|
|
// This should run after setting store data
|
|
if (isRedirecting) {
|
|
const searchParams = new URLSearchParams(location.search)
|
|
searchParams.set('returnTo', location.pathname)
|
|
const url = `${redirectTo}?${searchParams.toString()}`
|
|
router.push(url)
|
|
}
|
|
}, [isRedirecting, redirectTo])
|
|
|
|
const selectedProject = useSelectedProject()
|
|
useEffect(() => {
|
|
if (selectedProject) {
|
|
rootStore.setProject(selectedProject)
|
|
}
|
|
}, [selectedProject])
|
|
|
|
if (!isLoading && !isRedirecting && !isLoggedIn) {
|
|
return <Error500 />
|
|
}
|
|
|
|
const InnerComponent = WrappedComponent as any
|
|
|
|
return (
|
|
<>
|
|
{/* This script will quickly (before the main JS loads) redirect the user
|
|
to the login page if they are guaranteed (no token at all) to not be logged in. */}
|
|
{IS_PLATFORM && (
|
|
<Script
|
|
id="redirect-if-not-logged-in"
|
|
dangerouslySetInnerHTML={{
|
|
__html: `
|
|
window._getReturnToPath = ${getReturnToPath.toString()};
|
|
if (!localStorage.getItem('${STORAGE_KEY}') && !location.hash) {
|
|
const searchParams = new URLSearchParams(location.search);
|
|
searchParams.set('returnTo', location.pathname);
|
|
location.replace('${basePath ?? ''}/sign-in' + '?' + searchParams.toString())
|
|
}`,
|
|
}}
|
|
/>
|
|
)}
|
|
<InnerComponent {...props} />
|
|
</>
|
|
)
|
|
}
|
|
|
|
WithAuthHOC.displayName = `withAuth(${WrappedComponent.displayName})`
|
|
|
|
if (isNextPageWithLayout(WrappedComponent)) {
|
|
;(WithAuthHOC as NextPageWithLayout<T, T>).getLayout = WrappedComponent.getLayout
|
|
}
|
|
|
|
return WithAuthHOC
|
|
}
|
|
|
|
function defaultRedirectTo(ref: string | string[] | undefined) {
|
|
return IS_PLATFORM ? `/sign-in` : ref !== undefined ? `/project/${ref}` : '/projects'
|
|
}
|
|
|
|
function checkRedirectTo(
|
|
loading: boolean,
|
|
pathname: string,
|
|
isLoggedIn: boolean,
|
|
isCorrectLevel: boolean,
|
|
redirectTo: string
|
|
) {
|
|
if (loading) return false
|
|
if (pathname === redirectTo) return false
|
|
|
|
// If redirectTo is set, redirect if the user is not logged in or logged in with MFA.
|
|
if (redirectTo && (!isLoggedIn || !isCorrectLevel)) return true
|
|
|
|
return false
|
|
}
|