Files
biblical-guide.com/app/api/admin/auth/login/route.ts
Andrei 2074ee3bda Complete admin dashboard implementation with comprehensive features
🚀 Major Update: v2.0.0 - Complete Administrative Dashboard

## Phase 1: Dashboard Overview & Authentication 
- Secure admin authentication with JWT tokens
- Beautiful overview dashboard with key metrics
- Role-based access control (admin, moderator permissions)
- Professional MUI design with responsive layout

## Phase 2: User Management & Content Moderation 
- Complete user management with advanced data grid
- Prayer request content moderation system
- User actions: view, suspend, activate, promote, delete
- Content approval/rejection workflows

## Phase 3: Analytics Dashboard 
- Comprehensive analytics with interactive charts (Recharts)
- User activity analytics with retention tracking
- Content engagement metrics and trends
- Real-time statistics and performance monitoring

## Phase 4: Chat Monitoring & System Administration 
- Advanced conversation monitoring with content analysis
- System health monitoring and backup management
- Security oversight and automated alerts
- Complete administrative control panel

## Key Features Added:
 **32 new API endpoints** for complete admin functionality
 **Material-UI DataGrid** with advanced filtering and pagination
 **Interactive Charts** using Recharts library
 **Real-time Monitoring** with auto-refresh capabilities
 **System Health Dashboard** with performance metrics
 **Database Backup System** with automated scheduling
 **Content Filtering** with automated moderation alerts
 **Role-based Permissions** with granular access control
 **Professional UI/UX** with consistent MUI design
 **Visit Website Button** in admin header for easy navigation

## Technical Implementation:
- **Frontend**: Material-UI components with responsive design
- **Backend**: 32 new API routes with proper authentication
- **Database**: Optimized queries with proper indexing
- **Security**: Admin-specific JWT authentication
- **Performance**: Efficient data loading with pagination
- **Charts**: Interactive visualizations with Recharts

The Biblical Guide application now provides world-class administrative capabilities for complete platform management!

🤖 Generated with [Claude Code](https://claude.ai/code)

Co-Authored-By: Claude <noreply@anthropic.com>
2025-09-23 12:01:34 +00:00

104 lines
2.6 KiB
TypeScript

import { NextResponse } from 'next/server';
import { prisma } from '@/lib/db';
import { validateUser } from '@/lib/auth';
import { generateAdminToken } from '@/lib/admin-auth';
import { createUserLoginSchema } from '@/lib/validation';
import { cookies } from 'next/headers';
export const runtime = 'nodejs';
function getErrorMessages() {
return {
fieldsRequired: 'Email and password are required',
invalidCredentials: 'Invalid admin credentials',
serverError: 'Server error',
invalidInput: 'Invalid input data',
accessDenied: 'Access denied - admin privileges required'
};
}
export async function POST(request: Request) {
try {
const messages = getErrorMessages();
const body = await request.json();
// Validate input
const validation = createUserLoginSchema().safeParse(body);
if (!validation.success) {
return NextResponse.json(
{ error: messages.invalidInput },
{ status: 400 }
);
}
const { email, password } = validation.data;
// Find user by email
const user = await prisma.user.findUnique({
where: { email: email.toLowerCase() }
});
if (!user) {
return NextResponse.json(
{ error: messages.invalidCredentials },
{ status: 401 }
);
}
// Check if user has admin/moderator role
if (!['admin', 'moderator'].includes(user.role)) {
return NextResponse.json(
{ error: messages.accessDenied },
{ status: 403 }
);
}
// Validate password
const isValidPassword = await validateUser(email, password);
if (!isValidPassword) {
return NextResponse.json(
{ error: messages.invalidCredentials },
{ status: 401 }
);
}
// Generate admin token
const adminToken = generateAdminToken(user);
console.log('Generated admin token for user:', user.email);
// Update last login
await prisma.user.update({
where: { id: user.id },
data: { lastLoginAt: new Date() }
});
// Set admin cookie
const cookieStore = await cookies();
cookieStore.set('adminToken', adminToken, {
httpOnly: true,
secure: process.env.NODE_ENV === 'production',
sameSite: 'strict',
maxAge: 60 * 60 * 8, // 8 hours
path: '/'
});
console.log('Admin cookie set successfully');
return NextResponse.json({
success: true,
user: {
id: user.id,
email: user.email,
name: user.name,
role: user.role
}
});
} catch (error) {
console.error('Admin login error:', error);
return NextResponse.json(
{ error: getErrorMessages().serverError },
{ status: 500 }
);
}
}