- Add /api/portal/team.cfm for employee listing - Add chat endpoints (getMessages, sendMessage, markRead, getActiveChat) - Add OTP authentication endpoints - Add address management endpoints (delete, setDefault, states) - Add task completion and chat task endpoints - Update Application.cfm allowlist Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
92 lines
2.9 KiB
Text
92 lines
2.9 KiB
Text
<cfsetting showdebugoutput="false">
|
|
<cfsetting enablecfoutputonly="true">
|
|
<cfcontent type="application/json; charset=utf-8" reset="true">
|
|
|
|
<cfscript>
|
|
// Send a chat message (HTTP fallback when WebSocket not available)
|
|
// Input: TaskID, Message, SenderType (customer/worker)
|
|
// Output: { OK: true, MessageID: ... }
|
|
|
|
function apiAbort(required struct payload) {
|
|
writeOutput(serializeJSON(payload));
|
|
abort;
|
|
}
|
|
|
|
function readJsonBody() {
|
|
var raw = getHttpRequestData().content;
|
|
if (isNull(raw)) raw = "";
|
|
if (!len(trim(raw))) return {};
|
|
try {
|
|
var data = deserializeJSON(raw);
|
|
if (isStruct(data)) return data;
|
|
} catch (any e) {}
|
|
return {};
|
|
}
|
|
|
|
try {
|
|
data = readJsonBody();
|
|
taskID = val(structKeyExists(data, "TaskID") ? data.TaskID : 0);
|
|
message = trim(structKeyExists(data, "Message") ? data.Message : "");
|
|
senderType = lcase(trim(structKeyExists(data, "SenderType") ? data.SenderType : "customer"));
|
|
userID = val(structKeyExists(data, "UserID") ? data.UserID : 0);
|
|
|
|
// Also check request scope for authenticated user
|
|
if (userID == 0 && structKeyExists(request, "UserID")) {
|
|
userID = request.UserID;
|
|
}
|
|
|
|
if (taskID == 0) {
|
|
apiAbort({ "OK": false, "ERROR": "missing_params", "MESSAGE": "TaskID is required" });
|
|
}
|
|
|
|
if (!len(message)) {
|
|
apiAbort({ "OK": false, "ERROR": "missing_params", "MESSAGE": "Message is required" });
|
|
}
|
|
|
|
if (userID == 0) {
|
|
apiAbort({ "OK": false, "ERROR": "missing_params", "MESSAGE": "UserID is required" });
|
|
}
|
|
|
|
// Validate sender type
|
|
if (senderType != "customer" && senderType != "worker") {
|
|
senderType = "customer";
|
|
}
|
|
|
|
// Verify task exists
|
|
taskQuery = queryExecute("
|
|
SELECT TaskID, TaskClaimedByUserID FROM Tasks WHERE TaskID = :taskID
|
|
", { taskID: { value: taskID, cfsqltype: "cf_sql_integer" } }, { datasource: "payfrit" });
|
|
|
|
if (taskQuery.recordCount == 0) {
|
|
apiAbort({ "OK": false, "ERROR": "not_found", "MESSAGE": "Task not found" });
|
|
}
|
|
|
|
// Insert message
|
|
queryExecute("
|
|
INSERT INTO ChatMessages (TaskID, SenderUserID, SenderType, MessageText)
|
|
VALUES (:taskID, :userID, :senderType, :message)
|
|
", {
|
|
taskID: { value: taskID, cfsqltype: "cf_sql_integer" },
|
|
userID: { value: userID, cfsqltype: "cf_sql_integer" },
|
|
senderType: { value: senderType, cfsqltype: "cf_sql_varchar" },
|
|
message: { value: message, cfsqltype: "cf_sql_varchar" }
|
|
}, { datasource: "payfrit" });
|
|
|
|
// Get the new message ID
|
|
result = queryExecute("SELECT LAST_INSERT_ID() as newID", [], { datasource: "payfrit" });
|
|
messageID = result.newID;
|
|
|
|
apiAbort({
|
|
"OK": true,
|
|
"MessageID": messageID,
|
|
"MESSAGE": "Message sent"
|
|
});
|
|
|
|
} catch (any e) {
|
|
apiAbort({
|
|
"OK": false,
|
|
"ERROR": "server_error",
|
|
"MESSAGE": e.message
|
|
});
|
|
}
|
|
</cfscript>
|