2016-07-07 18:54:16 -07:00
|
|
|
// Copyright 2016 Documize Inc. <legal@documize.com>. All rights reserved.
|
|
|
|
//
|
2016-10-17 14:00:06 -07:00
|
|
|
// This software (Documize Community Edition) is licensed under
|
2016-07-07 18:54:16 -07:00
|
|
|
// GNU AGPL v3 http://www.gnu.org/licenses/agpl-3.0.en.html
|
|
|
|
//
|
|
|
|
// You can operate outside the AGPL restrictions by purchasing
|
|
|
|
// Documize Enterprise Edition and obtaining a commercial license
|
2016-10-17 14:00:06 -07:00
|
|
|
// by contacting <sales@documize.com>.
|
2016-07-07 18:54:16 -07:00
|
|
|
//
|
|
|
|
// https://documize.com
|
|
|
|
|
2017-07-18 21:55:17 +01:00
|
|
|
// Package space handles API calls and persistence for spaces.
|
|
|
|
// Spaces in Documize contain documents.
|
|
|
|
package space
|
2017-07-24 16:24:21 +01:00
|
|
|
|
2017-07-31 18:17:30 +01:00
|
|
|
import (
|
|
|
|
"database/sql"
|
|
|
|
|
|
|
|
"github.com/documize/community/domain"
|
2017-09-13 19:22:38 +01:00
|
|
|
"github.com/documize/community/model/space"
|
2017-07-31 18:17:30 +01:00
|
|
|
)
|
|
|
|
|
2017-07-24 16:24:21 +01:00
|
|
|
// CanViewSpace returns if the user has permission to view the given spaceID.
|
2017-09-13 19:22:38 +01:00
|
|
|
func CanViewSpace(ctx domain.RequestContext, s domain.Store, spaceID string) bool {
|
|
|
|
roles, err := s.Space.GetUserPermissions(ctx, spaceID)
|
2017-07-24 16:24:21 +01:00
|
|
|
if err == sql.ErrNoRows {
|
|
|
|
err = nil
|
|
|
|
}
|
|
|
|
if err != nil {
|
|
|
|
return false
|
|
|
|
}
|
|
|
|
|
|
|
|
for _, role := range roles {
|
2017-09-13 19:22:38 +01:00
|
|
|
if role.RefID == spaceID && role.Location == "space" && role.Scope == "object" &&
|
|
|
|
space.HasPermission(role.Action, space.SpaceView, space.SpaceManage, space.SpaceOwner) {
|
2017-07-24 16:24:21 +01:00
|
|
|
return true
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
return false
|
|
|
|
}
|