summaryrefslogtreecommitdiff
path: root/src/db/rest/post/api_post_insert.sql
diff options
context:
space:
mode:
authorFreya Murphy <freya@freyacat.org>2024-04-01 11:09:25 -0400
committerFreya Murphy <freya@freyacat.org>2024-04-01 11:09:25 -0400
commit3a82baec9d793edf81ac2b151b0f4d4159641375 (patch)
treef9d50c296b078ac48c2a2391c172c3ccf37edb3f /src/db/rest/post/api_post_insert.sql
parentrefactor asset dir, refactor oberver in lib (diff)
downloadxssbook2-3a82baec9d793edf81ac2b151b0f4d4159641375.tar.gz
xssbook2-3a82baec9d793edf81ac2b151b0f4d4159641375.tar.bz2
xssbook2-3a82baec9d793edf81ac2b151b0f4d4159641375.zip
login and register, liking on homepage
Diffstat (limited to 'src/db/rest/post/api_post_insert.sql')
-rw-r--r--src/db/rest/post/api_post_insert.sql46
1 files changed, 46 insertions, 0 deletions
diff --git a/src/db/rest/post/api_post_insert.sql b/src/db/rest/post/api_post_insert.sql
new file mode 100644
index 0000000..e0594dc
--- /dev/null
+++ b/src/db/rest/post/api_post_insert.sql
@@ -0,0 +1,46 @@
+CREATE FUNCTION _api.post_insert()
+RETURNS TRIGGER
+LANGUAGE plpgsql VOLATILE
+AS $BODY$
+DECLARE
+ _user_id INTEGER;
+BEGIN
+ _user_id = _api.get_user_id();
+
+ NEW.content := _api.trim(NEW.content);
+
+ PERFORM _api.validate_text(
+ _text => NEW.content,
+ _column => 'content',
+ _min => 1,
+ _max => 4096
+ );
+
+ INSERT INTO admin.post (
+ user_id,
+ content
+ ) VALUES (
+ _user_id,
+ NEW.content
+ )
+ RETURNING id
+ INTO NEW.id;
+
+ RETURN NEW;
+END
+$BODY$;
+
+GRANT EXECUTE ON FUNCTION _api.post_insert()
+ TO rest_user;
+GRANT INSERT ON TABLE api.post
+ TO rest_user;
+GRANT INSERT ON TABLE admin.post
+ TO rest_user;
+GRANT UPDATE ON TABLE sys.post_id_seq
+ TO rest_user;
+
+CREATE TRIGGER api_post_insert_trgr
+ INSTEAD OF INSERT
+ ON api.post
+ FOR EACH ROW
+ EXECUTE PROCEDURE _api.post_insert();