280 lines
5.7 KiB
Ruby
280 lines
5.7 KiB
Ruby
require 'sinatra'
|
|
require 'sinatra/activerecord'
|
|
require 'bcrypt'
|
|
require 'gettext'
|
|
require 'securerandom'
|
|
require_relative 'mj'
|
|
|
|
class Vote < ActiveRecord::Base
|
|
has_many :candidates, dependent: :destroy
|
|
has_many :ratings, dependent: :destroy
|
|
has_many :organizers, dependent: :destroy
|
|
has_many :users, through: :organizers
|
|
validates :state, inclusion: { in: ['draft', 'open', 'closed'] }
|
|
end
|
|
|
|
class Candidate < ActiveRecord::Base
|
|
belongs_to :vote
|
|
has_many :ratings, dependent: :destroy
|
|
|
|
def mj
|
|
return MajorityJudgment.new(self.ratings.collect {|r| r.value })
|
|
end
|
|
|
|
end
|
|
|
|
class User < ActiveRecord::Base
|
|
has_many :ratings
|
|
has_many :organizers
|
|
has_many :votes, through: :organizers
|
|
end
|
|
|
|
class Organizer < ActiveRecord::Base
|
|
belongs_to :vote
|
|
belongs_to :user
|
|
validates :vote_id, uniqueness: { scope: :user_id }
|
|
validates :user_id, uniqueness: { scope: :vote_id }
|
|
end
|
|
|
|
class Rating < ActiveRecord::Base
|
|
belongs_to :vote
|
|
belongs_to :user
|
|
belongs_to :candidate
|
|
end
|
|
|
|
def hash_password(password)
|
|
BCrypt::Password.create(password).to_s
|
|
end
|
|
|
|
def verify_password(password, hash)
|
|
BCrypt::Password.new(hash) == password
|
|
end
|
|
|
|
include GetText
|
|
set_output_charset('UTF-8')
|
|
bindtextdomain('vote', 'locale')
|
|
set_locale('ca')
|
|
|
|
enable :sessions
|
|
set :values, [ { :id => 1, :label => _("Awful") },
|
|
{ :id => 2, :label => _("Very bad") },
|
|
{ :id => 3, :label => _("Bad") },
|
|
{ :id => 4, :label => _("Mediocre") },
|
|
{ :id => 5, :label => _("Good") },
|
|
{ :id => 6, :label => _("Very good") },
|
|
{ :id => 7, :label => _("Excellent") } ]
|
|
MajorityJudgment.values = settings.values
|
|
|
|
get '/' do
|
|
require_login
|
|
@votes = Vote.all
|
|
erb :home
|
|
end
|
|
|
|
get '/signup' do
|
|
erb :signup
|
|
end
|
|
|
|
post '/signup' do
|
|
@user = User.create(email: params[:email],
|
|
password: hash_password(params[:password]))
|
|
redirect '/'
|
|
end
|
|
|
|
get '/login' do
|
|
erb :login
|
|
end
|
|
|
|
post '/login' do
|
|
user = User.find_by(email: params[:email])
|
|
if user && verify_password(params[:password], user.password)
|
|
session.clear
|
|
session[:user_id] = user.id
|
|
redirect '/'
|
|
else
|
|
@error = 'Username or password was incorrect'
|
|
erb :login
|
|
end
|
|
end
|
|
|
|
get '/logout' do
|
|
session.clear
|
|
redirect '/login'
|
|
end
|
|
|
|
post '/logout' do
|
|
session.clear
|
|
redirect '/login'
|
|
end
|
|
|
|
get '/votes/new' do
|
|
require_login
|
|
erb :votes_new
|
|
end
|
|
|
|
post '/votes' do
|
|
require_login
|
|
@vote = Vote.create(secure_id: SecureRandom.hex(8),
|
|
title: params[:title],
|
|
description: params[:description],
|
|
state: 'draft')
|
|
@vote.users << current_user
|
|
redirect '/votes/' + @vote.secure_id
|
|
end
|
|
|
|
get '/votes/:id' do
|
|
require_login
|
|
find_vote
|
|
case @vote.state
|
|
when 'draft'
|
|
if @vote.users.exists?(current_user.id)
|
|
erb :votes_edit
|
|
else
|
|
erb :votes_show_draft
|
|
end
|
|
when 'open'
|
|
erb :votes_show_open
|
|
when 'closed'
|
|
erb :votes_show_closed
|
|
else
|
|
@vote.state = 'draft'
|
|
@vote.save
|
|
erb :votes_edit
|
|
end
|
|
end
|
|
|
|
post '/votes/:id/edit' do
|
|
require_login
|
|
find_vote
|
|
require_organizer
|
|
require_draft_vote
|
|
@vote.title = params[:title]
|
|
@vote.description = params[:description]
|
|
@vote.save
|
|
erb :votes_edit
|
|
end
|
|
|
|
post '/votes/:id/candidates' do
|
|
require_login
|
|
find_vote
|
|
require_organizer
|
|
require_draft_vote
|
|
@candidate = Candidate.new(name: params[:name],
|
|
description: params[:description])
|
|
@candidate.vote = @vote
|
|
@candidate.save
|
|
redirect '/votes/' + @vote.secure_id
|
|
end
|
|
|
|
post '/votes/:id/candidates/:cid/delete' do
|
|
require_login
|
|
find_vote
|
|
require_organizer
|
|
require_draft_vote
|
|
@candidate = Candidate.find(params[:cid])
|
|
@candidate.destroy
|
|
redirect '/votes/' + @vote.secure_id
|
|
end
|
|
|
|
post '/votes/:id/open' do
|
|
require_login
|
|
find_vote
|
|
require_organizer
|
|
require_draft_vote
|
|
@vote.state = 'open'
|
|
@vote.save
|
|
redirect '/votes/' + @vote.secure_id
|
|
end
|
|
|
|
post '/votes/:id/draft' do
|
|
require_login
|
|
find_vote
|
|
require_organizer
|
|
require_open_vote
|
|
@vote.ratings.each {|r| r.destroy}
|
|
@vote.state = 'draft'
|
|
@vote.save
|
|
redirect '/votes/' + @vote.secure_id
|
|
end
|
|
|
|
post '/votes/:id/close' do
|
|
require_login
|
|
find_vote
|
|
require_organizer
|
|
require_open_vote
|
|
@vote.state = 'closed'
|
|
@vote.save
|
|
redirect '/votes/' + @vote.secure_id
|
|
end
|
|
|
|
post '/votes/:id/reopen' do
|
|
require_login
|
|
find_vote
|
|
require_organizer
|
|
require_closed_vote
|
|
@vote.state = 'open'
|
|
@vote.save
|
|
redirect '/votes/' + @vote.secure_id
|
|
end
|
|
|
|
post '/votes/:id/ratings' do
|
|
require_login
|
|
find_vote
|
|
@vote.candidates.each do |candidate|
|
|
rating = Rating.find_or_initialize_by(vote: @vote, user: current_user, candidate: candidate)
|
|
rating.value = params[candidate.id.to_s]
|
|
rating.save
|
|
end
|
|
redirect '/votes/' + @vote.secure_id
|
|
end
|
|
|
|
post '/votes/:id/organizers' do
|
|
require_login
|
|
find_vote
|
|
require_organizer
|
|
user = User.find_by(email: params[:email])
|
|
@vote.users << user
|
|
redirect '/votes/' + @vote.secure_id
|
|
end
|
|
|
|
post '/votes/:id/delete' do
|
|
require_login
|
|
find_vote
|
|
require_organizer
|
|
@vote.destroy
|
|
redirect '/'
|
|
end
|
|
|
|
helpers do
|
|
def current_user
|
|
if session[:user_id]
|
|
User.find(session[:user_id])
|
|
else
|
|
nil
|
|
end
|
|
end
|
|
|
|
def require_login
|
|
redirect '/login' unless current_user
|
|
end
|
|
|
|
def find_vote
|
|
@vote = Vote.find_by(secure_id: params[:id])
|
|
end
|
|
|
|
def require_organizer
|
|
redirect '/votes/' + @vote.secure_id unless @vote.users.exists?(current_user.id)
|
|
end
|
|
|
|
def require_draft_vote
|
|
redirect '/votes/' + @vote.secure_id unless @vote.state == 'draft'
|
|
end
|
|
|
|
def require_open_vote
|
|
redirect '/votes/' + @vote.secure_id unless @vote.state == 'open'
|
|
end
|
|
|
|
def require_closed_vote
|
|
redirect '/votes/' + @vote.secure_id unless @vote.state == 'closed'
|
|
end
|
|
end
|