Files
var-monorepo/apps/hub/app/api/auth/[...nextauth]/auth.ts
2025-06-26 01:01:42 -07:00

141 lines
3.6 KiB
TypeScript

import { AuthOptions, getServerSession as getNextAuthServerSession } from "next-auth";
import { PrismaAdapter } from "@next-auth/prisma-adapter";
import Credentials from "next-auth/providers/credentials";
import { DiscordAccount, prisma, User } from "@repo/db";
import bcrypt from "bcryptjs";
import oldUser from "./var.User.json";
import { OldUser } from "../../../../types/oldUser";
export const options: AuthOptions = {
providers: [
Credentials({
credentials: {
email: { label: "Email", type: "email", placeholder: "E-Mail" },
password: { label: "Password", type: "password" },
},
async authorize(credentials) {
try {
if (!credentials) throw new Error("No credentials provided");
const user = await prisma.user.findFirst({
where: { email: credentials.email },
});
const v1User = (oldUser as OldUser[]).find((u) => u.email === credentials.email);
if (!user && v1User) {
if (bcrypt.compareSync(credentials.password, v1User.password)) {
const newUser = await prisma.user.create({
data: {
email: v1User.email,
password: v1User.password,
migratedFromV1: true,
firstname: v1User.firstname,
lastname: v1User.lastname,
publicId: v1User.publicId,
badges: [
...v1User.badges
.map((badge) => {
switch (badge) {
case "day-1-member":
return "DAY1";
case "d-1":
return "D1";
case "p-1":
return "P1";
default:
return null;
}
})
.filter((badge) => badge !== null),
"V1Veteran",
],
},
});
if (v1User.discord) {
await prisma.discordAccount.create({
data: {
tokenType: "Bearer",
refreshToken: v1User.discord.tokens.refresh_token,
discordId: v1User.discord.profile.id,
userId: newUser.id,
username: v1User.discord.profile.username,
globalName: v1User.discord.profile.global_name,
avatar: v1User.discord.profile.avatar,
email: v1User.discord.profile.email,
verified: v1User.discord.profile.verified,
},
});
}
return newUser;
}
}
if (!user) return null;
if (bcrypt.compareSync(credentials.password, user.password)) {
return user;
}
return null;
} catch (error) {
return null;
}
},
}),
],
secret: process.env.AUTH_HUB_SECRET,
session: {
strategy: "jwt",
maxAge: 30 * 24 * 60 * 60,
},
cookies: {
sessionToken: {
name: `${process.env.AUTH_HUB_COOKIE_PREFIX}-next-auth.session-token`, // Ändere den Namen für App 1
options: {
httpOnly: true,
secure: process.env.NODE_ENV === "production",
path: "/",
},
},
csrfToken: {
name: `${process.env.AUTH_HUB_COOKIE_PREFIX}-next-auth.csrf-token`,
options: {
httpOnly: true,
secure: process.env.NODE_ENV === "production",
path: "/",
},
},
},
adapter: PrismaAdapter(prisma as any),
callbacks: {
jwt: async ({ token, user }) => {
if (user && "firstname" in user) {
return {
...token,
...user,
};
}
return token;
},
session: async ({ session, token }) => {
const dbUser = await prisma.user.findUnique({
where: {
id: token?.sub,
},
});
if (!dbUser) {
return null as any;
}
return {
...session,
user: dbUser,
};
},
},
pages: {
signIn: "/login",
signOut: "/logout",
error: "/authError",
newUser: "/register",
},
} satisfies AuthOptions;
export const getServerSession = async () => getNextAuthServerSession(options);