-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathapp.py
More file actions
executable file
·106 lines (89 loc) · 3.12 KB
/
Copy pathapp.py
File metadata and controls
executable file
·106 lines (89 loc) · 3.12 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
import os
from flask import Flask, jsonify
from flask_smorest import Api
from flask_jwt_extended import JWTManager
from flask_migrate import Migrate
from dotenv import load_dotenv
from db import db
import models
from models import RevokedTokenModel
from resources.item import blueprint as itemblueprint
from resources.store import blueprint as storeblueprint
from resources.tag import blueprint as tagblueprint
from resources.user import blueprint as userblueprint
def create_app(db_url=None):
app = Flask(__name__)
load_dotenv()
app.config["PROPAGATE_EXCEPTIONS"] = True
app.config["API_TITLE"] = "Stores REST API"
app.config["API_VERSION"] = "v1"
app.config["OPENAPI_VERSION"] = "3.0.3"
app.config["OPENAPI_URL_PREFIX"] = "/"
app.config["OPENAPI_SWAGGER_UI_PATH"] = "/swagger-ui"
app.config["OPENAPI_SWAGGER_UI_URL"] = "https://cdn.jsdelivr.net/npm/swagger-ui-dist/"
app.config["SQLALCHEMY_DATABASE_URI"] = db_url or os.getenv("DATABASE_URL", "sqlite:///data.db")
app.config["SQLALCHEMY_TRACK_MODIFICATIONS"] = False
db.init_app(app)
migrate = Migrate(app, db)
api = Api(app)
api.register_blueprint(itemblueprint)
api.register_blueprint(storeblueprint)
api.register_blueprint(tagblueprint)
api.register_blueprint(userblueprint)
app.config["JWT_SECRET_KEY"] = os.getenv("JWT_SECRET_KEY", "test")
jwt = JWTManager(app)
@jwt.token_in_blocklist_loader
def check_if_token_in_blacklist(jwt_header, jwt_payload):
if RevokedTokenModel.query.filter(RevokedTokenModel.jti == jwt_payload["jti"]).first():
return True
return False
@jwt.revoked_token_loader
def revoked_token_callback(jwt_header, jwt_payload):
return (
jsonify({
"message": "The token has been revoked",
"error": "revoked_token"
}),
401
)
@jwt.needs_fresh_token_loader
def token_not_fresh_callback(jwt_header, jwt_payload):
return (
jsonify(
{
"message": "Token is not fresh",
"error": "fresh_token_required"
}),
401
)
@jwt.additional_claims_loader
def add_claims_to_jwt(identity):
admin_id = os.getenv("ADMIN_USER_ID", 1)
if identity == admin_id:
return {"is_admin": True}
return {"is_admin": False}
@jwt.expired_token_loader
def expired_token_callback(jwt_header, jwt_payload):
return(
jsonify({
"message": "The token has expired.",
"error": "token_expired"
}), 401
)
@jwt.invalid_token_loader
def invalid_token_callback(error):
return(
jsonify({
"message": "Signature verification failed.",
"error": "invalid_token"
}), 401
)
@jwt.unauthorized_loader
def missing_token_callback(error):
return(
jsonify({
"message": "Request does not contain access token.",
"error": "missing_token"
}), 401
)
return app