Class: Spree::Api::V1::OrdersController

Inherits:
BaseController
  • Object
show all
Defined in:
app/controllers/spree/api/v1/orders_controller.rb

Instance Attribute Summary

Attributes inherited from BaseController

#current_api_user

Instance Method Summary collapse

Methods inherited from BaseController

#content_type, #permitted_line_item_attributes

Methods included from ControllerSetup

included

Instance Method Details

#apply_coupon_codeObject



107
108
109
110
111
112
113
114
# File 'app/controllers/spree/api/v1/orders_controller.rb', line 107

def apply_coupon_code
  find_order
  authorize! :update, @order, order_token
  @order.coupon_code = params[:coupon_code]
  @handler = PromotionHandler::Coupon.new(@order).apply
  status = @handler.successful? ? 200 : 422
  render "spree/api/v1/promotions/handler", status: status
end

#approveObject



23
24
25
26
27
# File 'app/controllers/spree/api/v1/orders_controller.rb', line 23

def approve
  authorize! :approve, @order, params[:token]
  @order.approved_by(current_api_user)
  respond_with(@order, default_template: :show)
end

#cancelObject



17
18
19
20
21
# File 'app/controllers/spree/api/v1/orders_controller.rb', line 17

def cancel
  authorize! :update, @order, params[:token]
  @order.canceled_by(current_api_user)
  respond_with(@order, default_template: :show)
end

#createObject



29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
# File 'app/controllers/spree/api/v1/orders_controller.rb', line 29

def create
  authorize! :create, Spree::Order
  if can?(:admin, Spree::Order)

    order_user = if @current_user_roles.include?('admin') && order_params[:user_id]
      Spree.user_class.find(order_params[:user_id])
    else
      current_api_user
    end

    import_params = if @current_user_roles.include?("admin")
      params[:order].present? ? params[:order].permit! : {}
    else
      order_params
    end

    @order = Spree::Core::Importer::Order.import(order_user, import_params)

    respond_with(@order, default_template: :show, status: 201)
  else
    @order = Spree::Order.create!(user: current_api_user, store: current_store)
    if @order.contents.update_cart(order_params)
      respond_with(@order, default_template: :show, status: 201)
    else
      invalid_resource!(@order)
    end
  end
end

#currentObject



90
91
92
93
94
95
96
97
# File 'app/controllers/spree/api/v1/orders_controller.rb', line 90

def current
  @order = find_current_order
  if @order
    respond_with(@order, default_template: :show, locals: { root_object: @order })
  else
    head :no_content
  end
end

#emptyObject



58
59
60
61
62
# File 'app/controllers/spree/api/v1/orders_controller.rb', line 58

def empty
  authorize! :update, @order, order_token
  @order.empty!
  render plain: nil, status: 204
end

#indexObject



64
65
66
67
68
# File 'app/controllers/spree/api/v1/orders_controller.rb', line 64

def index
  authorize! :index, Order
  @orders = Order.ransack(params[:q]).result.page(params[:page]).per(params[:per_page])
  respond_with(@orders)
end

#mineObject



99
100
101
102
103
104
105
# File 'app/controllers/spree/api/v1/orders_controller.rb', line 99

def mine
  if current_api_user.persisted?
    @orders = current_api_user.orders.reverse_chronological.ransack(params[:q]).result.page(params[:page]).per(params[:per_page])
  else
    render "spree/api/errors/unauthorized", status: :unauthorized
  end
end

#showObject



70
71
72
73
# File 'app/controllers/spree/api/v1/orders_controller.rb', line 70

def show
  authorize! :show, @order, order_token
  respond_with(@order)
end

#updateObject



75
76
77
78
79
80
81
82
83
84
85
86
87
88
# File 'app/controllers/spree/api/v1/orders_controller.rb', line 75

def update
  find_order(true)
  authorize! :update, @order, order_token

  if @order.contents.update_cart(order_params)
    user_id = params[:order][:user_id]
    if current_api_user.has_spree_role?('admin') && user_id
      @order.associate_user!(Spree.user_class.find(user_id))
    end
    respond_with(@order, default_template: :show)
  else
    invalid_resource!(@order)
  end
end