🚀 Major Update: v2.0.0 - Complete Administrative Dashboard ## Phase 1: Dashboard Overview & Authentication ✅ - Secure admin authentication with JWT tokens - Beautiful overview dashboard with key metrics - Role-based access control (admin, moderator permissions) - Professional MUI design with responsive layout ## Phase 2: User Management & Content Moderation ✅ - Complete user management with advanced data grid - Prayer request content moderation system - User actions: view, suspend, activate, promote, delete - Content approval/rejection workflows ## Phase 3: Analytics Dashboard ✅ - Comprehensive analytics with interactive charts (Recharts) - User activity analytics with retention tracking - Content engagement metrics and trends - Real-time statistics and performance monitoring ## Phase 4: Chat Monitoring & System Administration ✅ - Advanced conversation monitoring with content analysis - System health monitoring and backup management - Security oversight and automated alerts - Complete administrative control panel ## Key Features Added: ✅ **32 new API endpoints** for complete admin functionality ✅ **Material-UI DataGrid** with advanced filtering and pagination ✅ **Interactive Charts** using Recharts library ✅ **Real-time Monitoring** with auto-refresh capabilities ✅ **System Health Dashboard** with performance metrics ✅ **Database Backup System** with automated scheduling ✅ **Content Filtering** with automated moderation alerts ✅ **Role-based Permissions** with granular access control ✅ **Professional UI/UX** with consistent MUI design ✅ **Visit Website Button** in admin header for easy navigation ## Technical Implementation: - **Frontend**: Material-UI components with responsive design - **Backend**: 32 new API routes with proper authentication - **Database**: Optimized queries with proper indexing - **Security**: Admin-specific JWT authentication - **Performance**: Efficient data loading with pagination - **Charts**: Interactive visualizations with Recharts The Biblical Guide application now provides world-class administrative capabilities for complete platform management! 🤖 Generated with [Claude Code](https://claude.ai/code) Co-Authored-By: Claude <noreply@anthropic.com>
104 lines
2.6 KiB
TypeScript
104 lines
2.6 KiB
TypeScript
import { NextResponse } from 'next/server';
|
|
import { prisma } from '@/lib/db';
|
|
import { validateUser } from '@/lib/auth';
|
|
import { generateAdminToken } from '@/lib/admin-auth';
|
|
import { createUserLoginSchema } from '@/lib/validation';
|
|
import { cookies } from 'next/headers';
|
|
|
|
export const runtime = 'nodejs';
|
|
|
|
function getErrorMessages() {
|
|
return {
|
|
fieldsRequired: 'Email and password are required',
|
|
invalidCredentials: 'Invalid admin credentials',
|
|
serverError: 'Server error',
|
|
invalidInput: 'Invalid input data',
|
|
accessDenied: 'Access denied - admin privileges required'
|
|
};
|
|
}
|
|
|
|
export async function POST(request: Request) {
|
|
try {
|
|
const messages = getErrorMessages();
|
|
const body = await request.json();
|
|
|
|
// Validate input
|
|
const validation = createUserLoginSchema().safeParse(body);
|
|
if (!validation.success) {
|
|
return NextResponse.json(
|
|
{ error: messages.invalidInput },
|
|
{ status: 400 }
|
|
);
|
|
}
|
|
|
|
const { email, password } = validation.data;
|
|
|
|
// Find user by email
|
|
const user = await prisma.user.findUnique({
|
|
where: { email: email.toLowerCase() }
|
|
});
|
|
|
|
if (!user) {
|
|
return NextResponse.json(
|
|
{ error: messages.invalidCredentials },
|
|
{ status: 401 }
|
|
);
|
|
}
|
|
|
|
// Check if user has admin/moderator role
|
|
if (!['admin', 'moderator'].includes(user.role)) {
|
|
return NextResponse.json(
|
|
{ error: messages.accessDenied },
|
|
{ status: 403 }
|
|
);
|
|
}
|
|
|
|
// Validate password
|
|
const isValidPassword = await validateUser(email, password);
|
|
if (!isValidPassword) {
|
|
return NextResponse.json(
|
|
{ error: messages.invalidCredentials },
|
|
{ status: 401 }
|
|
);
|
|
}
|
|
|
|
// Generate admin token
|
|
const adminToken = generateAdminToken(user);
|
|
console.log('Generated admin token for user:', user.email);
|
|
|
|
// Update last login
|
|
await prisma.user.update({
|
|
where: { id: user.id },
|
|
data: { lastLoginAt: new Date() }
|
|
});
|
|
|
|
// Set admin cookie
|
|
const cookieStore = await cookies();
|
|
cookieStore.set('adminToken', adminToken, {
|
|
httpOnly: true,
|
|
secure: process.env.NODE_ENV === 'production',
|
|
sameSite: 'strict',
|
|
maxAge: 60 * 60 * 8, // 8 hours
|
|
path: '/'
|
|
});
|
|
|
|
console.log('Admin cookie set successfully');
|
|
|
|
return NextResponse.json({
|
|
success: true,
|
|
user: {
|
|
id: user.id,
|
|
email: user.email,
|
|
name: user.name,
|
|
role: user.role
|
|
}
|
|
});
|
|
|
|
} catch (error) {
|
|
console.error('Admin login error:', error);
|
|
return NextResponse.json(
|
|
{ error: getErrorMessages().serverError },
|
|
{ status: 500 }
|
|
);
|
|
}
|
|
} |