feat: inisialisasi project kit v2
This commit is contained in:
@@ -0,0 +1,54 @@
|
||||
<?php
|
||||
|
||||
use App\Http\Controllers\Api\V1\AppConfigController;
|
||||
use App\Http\Controllers\Api\V1\AuthController;
|
||||
use App\Http\Controllers\Api\V1\UserController;
|
||||
use Illuminate\Support\Facades\RateLimiter;
|
||||
use Illuminate\Support\Facades\Route;
|
||||
use Illuminate\Cache\RateLimiting\Limit;
|
||||
use Illuminate\Http\Request;
|
||||
use Spatie\Permission\Models\Permission;
|
||||
use Spatie\Permission\Models\Role;
|
||||
|
||||
RateLimiter::for('api.login', fn (Request $request) =>
|
||||
Limit::perMinute(10)->by($request->ip())->response(function () {
|
||||
return response()->json(['message' => 'Too many login attempts. Please try again later.'], 429);
|
||||
})
|
||||
);
|
||||
|
||||
Route::prefix('v1')->group(function () {
|
||||
|
||||
// Public
|
||||
Route::post('/auth/login', [AuthController::class, 'login'])
|
||||
->middleware('throttle:api.login');
|
||||
|
||||
Route::get('/app/config', AppConfigController::class)
|
||||
->name('api.app.config');
|
||||
|
||||
// Protected
|
||||
Route::middleware('auth:sanctum')->group(function () {
|
||||
|
||||
Route::get('/auth/me', [AuthController::class, 'me']);
|
||||
Route::post('/auth/logout', [AuthController::class, 'logout']);
|
||||
|
||||
Route::apiResource('users', UserController::class)->names([
|
||||
'index' => 'api.users.index',
|
||||
'store' => 'api.users.store',
|
||||
'show' => 'api.users.show',
|
||||
'update' => 'api.users.update',
|
||||
'destroy' => 'api.users.destroy',
|
||||
]);
|
||||
|
||||
Route::get('/roles', function () {
|
||||
return response()->json([
|
||||
'data' => Role::select('id', 'name', 'guard_name', 'created_at')->get(),
|
||||
]);
|
||||
})->middleware('permission:role.view')->name('api.roles.index');
|
||||
|
||||
Route::get('/permissions', function () {
|
||||
return response()->json([
|
||||
'data' => Permission::select('id', 'name', 'guard_name')->get(),
|
||||
]);
|
||||
})->middleware('permission:role.view')->name('api.permissions.index');
|
||||
});
|
||||
});
|
||||
@@ -0,0 +1,59 @@
|
||||
<?php
|
||||
|
||||
use App\Http\Controllers\Auth\AuthenticatedSessionController;
|
||||
use App\Http\Controllers\Auth\ConfirmablePasswordController;
|
||||
use App\Http\Controllers\Auth\EmailVerificationNotificationController;
|
||||
use App\Http\Controllers\Auth\EmailVerificationPromptController;
|
||||
use App\Http\Controllers\Auth\NewPasswordController;
|
||||
use App\Http\Controllers\Auth\PasswordController;
|
||||
use App\Http\Controllers\Auth\PasswordResetLinkController;
|
||||
use App\Http\Controllers\Auth\RegisteredUserController;
|
||||
use App\Http\Controllers\Auth\VerifyEmailController;
|
||||
use Illuminate\Support\Facades\Route;
|
||||
|
||||
Route::middleware('guest')->group(function () {
|
||||
Route::get('register', [RegisteredUserController::class, 'create'])
|
||||
->name('register');
|
||||
|
||||
Route::post('register', [RegisteredUserController::class, 'store']);
|
||||
|
||||
Route::get('login', [AuthenticatedSessionController::class, 'create'])
|
||||
->name('login');
|
||||
|
||||
Route::post('login', [AuthenticatedSessionController::class, 'store']);
|
||||
|
||||
Route::get('forgot-password', [PasswordResetLinkController::class, 'create'])
|
||||
->name('password.request');
|
||||
|
||||
Route::post('forgot-password', [PasswordResetLinkController::class, 'store'])
|
||||
->name('password.email');
|
||||
|
||||
Route::get('reset-password/{token}', [NewPasswordController::class, 'create'])
|
||||
->name('password.reset');
|
||||
|
||||
Route::post('reset-password', [NewPasswordController::class, 'store'])
|
||||
->name('password.store');
|
||||
});
|
||||
|
||||
Route::middleware('auth')->group(function () {
|
||||
Route::get('verify-email', EmailVerificationPromptController::class)
|
||||
->name('verification.notice');
|
||||
|
||||
Route::get('verify-email/{id}/{hash}', VerifyEmailController::class)
|
||||
->middleware(['signed', 'throttle:6,1'])
|
||||
->name('verification.verify');
|
||||
|
||||
Route::post('email/verification-notification', [EmailVerificationNotificationController::class, 'store'])
|
||||
->middleware('throttle:6,1')
|
||||
->name('verification.send');
|
||||
|
||||
Route::get('confirm-password', [ConfirmablePasswordController::class, 'show'])
|
||||
->name('password.confirm');
|
||||
|
||||
Route::post('confirm-password', [ConfirmablePasswordController::class, 'store']);
|
||||
|
||||
Route::put('password', [PasswordController::class, 'update'])->name('password.update');
|
||||
|
||||
Route::post('logout', [AuthenticatedSessionController::class, 'destroy'])
|
||||
->name('logout');
|
||||
});
|
||||
@@ -0,0 +1,8 @@
|
||||
<?php
|
||||
|
||||
use Illuminate\Foundation\Inspiring;
|
||||
use Illuminate\Support\Facades\Artisan;
|
||||
|
||||
Artisan::command('inspire', function () {
|
||||
$this->comment(Inspiring::quote());
|
||||
})->purpose('Display an inspiring quote');
|
||||
@@ -0,0 +1,85 @@
|
||||
<?php
|
||||
|
||||
use App\Http\Controllers\ProfileController;
|
||||
use App\Http\Controllers\UserController;
|
||||
use App\Http\Controllers\SettingsController;
|
||||
use Illuminate\Foundation\Application;
|
||||
use Illuminate\Support\Facades\Route;
|
||||
use Inertia\Inertia;
|
||||
use Spatie\Permission\Models\Role;
|
||||
|
||||
// Landing Page — redirect to login
|
||||
Route::get('/', function () {
|
||||
return redirect()->route('login');
|
||||
});
|
||||
|
||||
// Global Search API
|
||||
Route::get('/api/search', \App\Http\Controllers\GlobalSearchController::class)
|
||||
->middleware(['auth'])
|
||||
->name('api.search');
|
||||
|
||||
// Two-Factor Challenge (guest — user is not yet fully authenticated)
|
||||
Route::get('/two-factor/challenge', [\App\Http\Controllers\TwoFactorController::class, 'challenge'])->name('two-factor.challenge');
|
||||
Route::post('/two-factor/challenge', [\App\Http\Controllers\TwoFactorController::class, 'verify'])->name('two-factor.verify');
|
||||
|
||||
// Dashboard
|
||||
Route::get('/dashboard', [\App\Http\Controllers\DashboardController::class, 'index'])
|
||||
->middleware(['auth', 'verified'])
|
||||
->name('dashboard');
|
||||
|
||||
Route::middleware(['auth', 'verified'])->group(function () {
|
||||
|
||||
// Profile
|
||||
Route::get('/profile', [ProfileController::class, 'edit'])->name('profile.edit');
|
||||
Route::patch('/profile', [ProfileController::class, 'update'])->name('profile.update');
|
||||
Route::delete('/profile', [ProfileController::class, 'destroy'])->name('profile.destroy');
|
||||
|
||||
// Settings page
|
||||
Route::get('/settings', [SettingsController::class, 'index'])->name('settings.index');
|
||||
|
||||
// System Settings (Super-Admin only)
|
||||
Route::get('/system-settings', [\App\Http\Controllers\SystemSettingController::class, 'index'])->name('system.settings.index');
|
||||
Route::patch('/system-settings', [\App\Http\Controllers\SystemSettingController::class, 'update'])->name('system.settings.update');
|
||||
Route::post('/system-settings/test-email', [\App\Http\Controllers\SystemSettingController::class, 'testEmail'])->name('system.settings.test-email');
|
||||
|
||||
// Users CRUD
|
||||
Route::get('/users', [UserController::class, 'index'])->name('users.index');
|
||||
Route::post('/users', [UserController::class, 'store'])->name('users.store');
|
||||
Route::get('/users/{user}', [UserController::class, 'show'])->name('users.show');
|
||||
Route::patch('/users/{user}', [UserController::class, 'update'])->name('users.update');
|
||||
Route::delete('/users/{user}', [UserController::class, 'destroy'])->name('users.destroy');
|
||||
Route::post('/users/{id}/restore', [UserController::class, 'restore'])->name('users.restore');
|
||||
Route::delete('/users/{id}/force-delete', [UserController::class, 'forceDelete'])->name('users.force-delete');
|
||||
|
||||
// Bulk Actions
|
||||
Route::post('/users/bulk-archive', [UserController::class, 'bulkArchive'])->name('users.bulk-archive');
|
||||
Route::post('/users/bulk-restore', [UserController::class, 'bulkRestore'])->name('users.bulk-restore');
|
||||
Route::post('/users/bulk-force-delete', [UserController::class, 'bulkForceDelete'])->name('users.bulk-force-delete');
|
||||
Route::get('/users-export', [UserController::class, 'export'])->name('users.export');
|
||||
Route::post('/users-import', [UserController::class, 'import'])->name('users.import');
|
||||
|
||||
// Activity Logs
|
||||
Route::get('/activity-logs', [\App\Http\Controllers\ActivityLogController::class, 'index'])->name('activity-logs.index');
|
||||
Route::post('/activity-logs/bulk-delete', [\App\Http\Controllers\ActivityLogController::class, 'bulkDelete'])->name('activity-logs.bulk-delete');
|
||||
|
||||
// Notifications
|
||||
Route::get('/notifications', [\App\Http\Controllers\NotificationController::class, 'index'])->name('notifications.index');
|
||||
Route::post('/notifications', [\App\Http\Controllers\NotificationController::class, 'store'])->name('notifications.store');
|
||||
|
||||
// Internal Docs
|
||||
Route::get('/documentation', fn() => Inertia::render('Docs/Index'))->name('docs.index');
|
||||
|
||||
// Two-Factor Authentication
|
||||
Route::get('/two-factor', [\App\Http\Controllers\TwoFactorController::class, 'show'])->name('two-factor.show');
|
||||
Route::post('/two-factor/enable', [\App\Http\Controllers\TwoFactorController::class, 'enable'])->name('two-factor.enable');
|
||||
Route::post('/two-factor/disable', [\App\Http\Controllers\TwoFactorController::class, 'disable'])->name('two-factor.disable');
|
||||
Route::post('/two-factor/recovery-codes', [\App\Http\Controllers\TwoFactorController::class, 'regenerateCodes'])->name('two-factor.recovery-codes');
|
||||
|
||||
// Roles & Permissions
|
||||
Route::get('/roles', [\App\Http\Controllers\RoleController::class, 'index'])->name('roles.index');
|
||||
Route::post('/roles', [\App\Http\Controllers\RoleController::class, 'store'])->name('roles.store');
|
||||
Route::patch('/roles/{role}/permissions', [\App\Http\Controllers\RoleController::class, 'updatePermissions'])->name('roles.permissions.update');
|
||||
Route::delete('/roles/{role}', [\App\Http\Controllers\RoleController::class, 'destroy'])->name('roles.destroy');
|
||||
});
|
||||
|
||||
require __DIR__.'/auth.php';
|
||||
Reference in New Issue
Block a user