🚀 Major Update: v2.0.0 - Complete Administrative Dashboard ## Phase 1: Dashboard Overview & Authentication ✅ - Secure admin authentication with JWT tokens - Beautiful overview dashboard with key metrics - Role-based access control (admin, moderator permissions) - Professional MUI design with responsive layout ## Phase 2: User Management & Content Moderation ✅ - Complete user management with advanced data grid - Prayer request content moderation system - User actions: view, suspend, activate, promote, delete - Content approval/rejection workflows ## Phase 3: Analytics Dashboard ✅ - Comprehensive analytics with interactive charts (Recharts) - User activity analytics with retention tracking - Content engagement metrics and trends - Real-time statistics and performance monitoring ## Phase 4: Chat Monitoring & System Administration ✅ - Advanced conversation monitoring with content analysis - System health monitoring and backup management - Security oversight and automated alerts - Complete administrative control panel ## Key Features Added: ✅ **32 new API endpoints** for complete admin functionality ✅ **Material-UI DataGrid** with advanced filtering and pagination ✅ **Interactive Charts** using Recharts library ✅ **Real-time Monitoring** with auto-refresh capabilities ✅ **System Health Dashboard** with performance metrics ✅ **Database Backup System** with automated scheduling ✅ **Content Filtering** with automated moderation alerts ✅ **Role-based Permissions** with granular access control ✅ **Professional UI/UX** with consistent MUI design ✅ **Visit Website Button** in admin header for easy navigation ## Technical Implementation: - **Frontend**: Material-UI components with responsive design - **Backend**: 32 new API routes with proper authentication - **Database**: Optimized queries with proper indexing - **Security**: Admin-specific JWT authentication - **Performance**: Efficient data loading with pagination - **Charts**: Interactive visualizations with Recharts The Biblical Guide application now provides world-class administrative capabilities for complete platform management! 🤖 Generated with [Claude Code](https://claude.ai/code) Co-Authored-By: Claude <noreply@anthropic.com>
97 lines
2.3 KiB
TypeScript
97 lines
2.3 KiB
TypeScript
import { User } from '@prisma/client';
|
|
import { cookies } from 'next/headers';
|
|
import { prisma } from '@/lib/db';
|
|
import jwt from 'jsonwebtoken';
|
|
|
|
export interface AdminUser {
|
|
id: string;
|
|
email: string;
|
|
name: string | null;
|
|
role: string;
|
|
permissions: string[];
|
|
}
|
|
|
|
export enum AdminPermission {
|
|
VIEW_USERS = 'users:read',
|
|
MANAGE_USERS = 'users:write',
|
|
MODERATE_CONTENT = 'content:moderate',
|
|
VIEW_ANALYTICS = 'analytics:read',
|
|
MANAGE_SYSTEM = 'system:manage'
|
|
}
|
|
|
|
export function hasPermission(user: AdminUser, permission: AdminPermission): boolean {
|
|
if (user.role === 'admin') return true; // Super admin has all permissions
|
|
return user.permissions.includes(permission);
|
|
}
|
|
|
|
export function getAdminPermissions(role: string): AdminPermission[] {
|
|
switch (role) {
|
|
case 'admin':
|
|
return Object.values(AdminPermission); // All permissions
|
|
case 'moderator':
|
|
return [
|
|
AdminPermission.VIEW_USERS,
|
|
AdminPermission.MODERATE_CONTENT,
|
|
AdminPermission.VIEW_ANALYTICS
|
|
];
|
|
default:
|
|
return [];
|
|
}
|
|
}
|
|
|
|
export async function verifyAdminToken(token: string): Promise<AdminUser | null> {
|
|
try {
|
|
const decoded = jwt.verify(token, process.env.JWT_SECRET!) as any;
|
|
|
|
if (!decoded.userId) return null;
|
|
|
|
const user = await prisma.user.findUnique({
|
|
where: { id: decoded.userId },
|
|
select: {
|
|
id: true,
|
|
email: true,
|
|
name: true,
|
|
role: true
|
|
}
|
|
});
|
|
|
|
if (!user || !['admin', 'moderator'].includes(user.role)) {
|
|
return null;
|
|
}
|
|
|
|
return {
|
|
id: user.id,
|
|
email: user.email,
|
|
name: user.name,
|
|
role: user.role,
|
|
permissions: getAdminPermissions(user.role)
|
|
};
|
|
} catch (error) {
|
|
return null;
|
|
}
|
|
}
|
|
|
|
export async function getCurrentAdmin(): Promise<AdminUser | null> {
|
|
const cookieStore = await cookies();
|
|
const token = cookieStore.get('adminToken')?.value;
|
|
|
|
if (!token) return null;
|
|
|
|
return verifyAdminToken(token);
|
|
}
|
|
|
|
export function generateAdminToken(user: User): string {
|
|
if (!['admin', 'moderator'].includes(user.role)) {
|
|
throw new Error('User is not an admin');
|
|
}
|
|
|
|
const payload = {
|
|
userId: user.id,
|
|
role: user.role,
|
|
type: 'admin'
|
|
};
|
|
|
|
return jwt.sign(payload, process.env.JWT_SECRET!, {
|
|
expiresIn: '8h' // Admin sessions expire after 8 hours
|
|
});
|
|
} |