All checks were successful
Server CI/CD / deploy (push) Successful in 1m31s
- 입력 검증 강화 (로그인/체인 핸들러 전체) - boss raid 비관적 잠금으로 동시성 문제 해결 - SSAFY 사용자명 sanitize + 트랜잭션 처리 - constant-time API 키 비교, 보안 헤더, graceful shutdown - 안전하지 않은 기본값 경고 추가 Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
61 lines
1.4 KiB
Go
61 lines
1.4 KiB
Go
package auth
|
|
|
|
import "gorm.io/gorm"
|
|
|
|
type Repository struct {
|
|
db *gorm.DB
|
|
}
|
|
|
|
func NewRepository(db *gorm.DB) *Repository {
|
|
return &Repository{db: db}
|
|
}
|
|
|
|
func (r *Repository) FindByUsername(username string) (*User, error) {
|
|
var user User
|
|
if err := r.db.Where("username = ?", username).First(&user).Error; err != nil {
|
|
return nil, err
|
|
}
|
|
return &user, nil
|
|
}
|
|
|
|
func (r *Repository) Create(user *User) error {
|
|
return r.db.Create(user).Error
|
|
}
|
|
|
|
func (r *Repository) FindAll() ([]User, error) {
|
|
var users []User
|
|
err := r.db.Order("created_at asc").Find(&users).Error
|
|
return users, err
|
|
}
|
|
|
|
func (r *Repository) FindByID(id uint) (*User, error) {
|
|
var user User
|
|
if err := r.db.First(&user, id).Error; err != nil {
|
|
return nil, err
|
|
}
|
|
return &user, nil
|
|
}
|
|
|
|
func (r *Repository) UpdateRole(id uint, role Role) error {
|
|
return r.db.Model(&User{}).Where("id = ?", id).Update("role", role).Error
|
|
}
|
|
|
|
func (r *Repository) Delete(id uint) error {
|
|
return r.db.Delete(&User{}, id).Error
|
|
}
|
|
|
|
// Transaction wraps a function in a database transaction.
|
|
func (r *Repository) Transaction(fn func(txRepo *Repository) error) error {
|
|
return r.db.Transaction(func(tx *gorm.DB) error {
|
|
return fn(&Repository{db: tx})
|
|
})
|
|
}
|
|
|
|
func (r *Repository) FindBySsafyID(ssafyID string) (*User, error) {
|
|
var user User
|
|
if err := r.db.Where("ssafy_id = ?", ssafyID).First(&user).Error; err != nil {
|
|
return nil, err
|
|
}
|
|
return &user, nil
|
|
}
|