9 Commits

Author SHA1 Message Date
edeb36cb8c podwójne kodowanie hasło zlikwidowane 2025-06-10 20:21:21 +02:00
bacfd529aa obsługa przekierowania płatności 2025-06-10 19:54:25 +02:00
8656ececf1 another email supplier 2025-06-10 14:09:07 +02:00
1d104493b5 Merge branch 'refactor-auth' 2025-06-10 11:03:59 +02:00
d51161221c Merge branch 'fix-payments' 2025-06-09 20:59:20 +02:00
Patryk
422daeb99e Merge remote-tracking branch 'origin/fix-payments' into fix-payments 2025-06-09 20:58:40 +02:00
Patryk
3204b921c4 fix tapy 2025-06-09 20:58:09 +02:00
f56ffacec3 filter 2025-06-09 20:39:57 +02:00
Patryk
1ec6e62c04 fix payments and add new functions 2025-06-08 19:54:15 +02:00
14 changed files with 182 additions and 31 deletions

View File

@@ -26,7 +26,7 @@ public class SecurityConfig {
.cors(cors -> cors.configure(http))
.csrf(AbstractHttpConfigurer::disable)
.authorizeHttpRequests(auth -> auth
.requestMatchers("/api/v1/auth/**").permitAll()
.requestMatchers("/api/v1/auth/**", "/api/v1/payments/notification").permitAll()
.anyRequest().authenticated())
.sessionManagement(session -> session
.sessionCreationPolicy(SessionCreationPolicy.STATELESS));

View File

@@ -1,7 +1,9 @@
package _11.asktpk.artisanconnectbackend.controller;
import _11.asktpk.artisanconnectbackend.dto.*;
import _11.asktpk.artisanconnectbackend.entities.Client;
import _11.asktpk.artisanconnectbackend.entities.Order;
import _11.asktpk.artisanconnectbackend.entities.Payment;
import _11.asktpk.artisanconnectbackend.service.OrderService;
import _11.asktpk.artisanconnectbackend.service.PaymentService;
import _11.asktpk.artisanconnectbackend.utils.Enums;
@@ -11,6 +13,8 @@ import org.springframework.http.HttpStatus;
import org.springframework.http.ResponseEntity;
import org.springframework.web.bind.annotation.*;
import java.util.List;
@RestController
@RequestMapping("/api/v1/orders")
@@ -38,21 +42,95 @@ public class OrderController {
}
@PostMapping("/token")
public ResponseEntity<?> fetchToken() {
Order order = orderService.getOrderById(1L);
public ResponseEntity<?> fetchToken(@RequestParam Long orderId) {
Order order = orderService.getOrderById(orderId);
Client client = order.getClient();
OAuthPaymentResponseDTO authPaymentDTO = paymentService.getOAuthToken();
TransactionPaymentRequestDTO.Payer payer = new TransactionPaymentRequestDTO.Payer(
"patryk@test.pl", "Patryk Test");
client.getEmail(), client.getFirstName()+' '+client.getLastName());
String paymentDescription = order.getOrderType() == Enums.OrderType.ACTIVATION ? "Aktywacja ogłoszenia" : "Podbicie ogłoszenia";
paymentDescription += order.getNotice().getTitle();
TransactionPaymentRequestDTO request = new TransactionPaymentRequestDTO(
order.getAmount(), paymentDescription, payer);
String response = paymentService.createTransaction(order, authPaymentDTO.getAccess_token(), request);
System.out.println(response);
System.out.println(request);
TransactionPaymentRequestDTO.Callbacks callbacks = new TransactionPaymentRequestDTO.Callbacks();
TransactionPaymentRequestDTO.PayerUrls payerUrls = new TransactionPaymentRequestDTO.PayerUrls();
payerUrls.setSuccess("com.hamx.artisanconnect://dashboard/userNotices");
payerUrls.setError("com.hamx.artisanconnect://dashboard/userNotices");
callbacks.setPayerUrls(payerUrls);
TransactionPaymentRequestDTO paymentRequest = new TransactionPaymentRequestDTO(
order.getAmount(), paymentDescription, payer, callbacks);
String response = paymentService.createTransaction(order, authPaymentDTO.getAccess_token(), paymentRequest);
return ResponseEntity.status(HttpStatus.OK).body(response);
}
@GetMapping("/get/all")
public ResponseEntity<List<OrderWithPaymentsDTO>> getOrders(HttpServletRequest request) {
Long clientId = tools.getClientIdFromRequest(request);
List<Order> orders = orderService.getOrdersByClientId(clientId);
List<OrderWithPaymentsDTO> dtoList = orders.stream().map(order -> {
OrderWithPaymentsDTO dto = new OrderWithPaymentsDTO();
dto.setOrderId(order.getId());
dto.setOrderType(order.getOrderType().name());
dto.setStatus(order.getStatus().name());
dto.setAmount(order.getAmount());
dto.setCreatedAt(order.getCreatedAt());
List<Payment> payments = paymentService.getPaymentsByOrderId(order.getId());
List<PaymentDTO> paymentDTOs = payments.stream().map(payment -> {
PaymentDTO pDto = new PaymentDTO();
pDto.setPaymentId(payment.getIdPayment());
pDto.setAmount(payment.getAmount());
pDto.setStatus(payment.getStatus().name());
pDto.setTransactionPaymentUrl(payment.getTransactionPaymentUrl());
pDto.setTransactionId(payment.getTransactionId());
return pDto;
}).toList();
dto.setPayments(paymentDTOs);
return dto;
}).toList();
return ResponseEntity.ok(dtoList);
}
@GetMapping("/get/{orderId}")
public ResponseEntity<OrderWithPaymentsDTO> getOrderById(HttpServletRequest request,
@PathVariable Long orderId) {
Long clientId = tools.getClientIdFromRequest(request);
Order order = orderService.getOrderById(orderId);
if (!order.getClient().getId().equals(clientId)) {
return ResponseEntity.status(HttpStatus.FORBIDDEN).build();
}
OrderWithPaymentsDTO dto = new OrderWithPaymentsDTO();
dto.setOrderId(order.getId());
dto.setOrderType(order.getOrderType().name());
dto.setStatus(order.getStatus().name());
dto.setAmount(order.getAmount());
dto.setCreatedAt(order.getCreatedAt());
List<Payment> payments = paymentService.getPaymentsByOrderId(order.getId());
List<PaymentDTO> paymentDTOs = payments.stream().map(payment -> {
PaymentDTO pDto = new PaymentDTO();
pDto.setPaymentId(payment.getIdPayment());
pDto.setAmount(payment.getAmount());
pDto.setStatus(payment.getStatus().name());
pDto.setTransactionPaymentUrl(payment.getTransactionPaymentUrl());
pDto.setTransactionId(payment.getTransactionId());
return pDto;
}).toList();
dto.setPayments(paymentDTOs);
return ResponseEntity.ok(dto);
}
}

View File

@@ -39,9 +39,6 @@ public class PaymentController {
@PostMapping(value = "/notification", consumes = MediaType.APPLICATION_FORM_URLENCODED_VALUE)
public ResponseEntity<String> handleTpayNotification(@RequestParam Map<String, String> params) {
log.info("=== ODEBRANO NOTYFIKACJĘ Tpay ===");
log.info("Parametry:\n{}", paramsToLogString(params));
String id = params.get("id");
String trId = params.get("tr_id");
String trAmount = params.get("tr_amount");
@@ -54,7 +51,6 @@ public class PaymentController {
);
if (!expectedMd5.equals(md5sum)) {
log.warn("❌ Błędna suma kontrolna! Otrzymano: {}, Oczekiwano: {}", md5sum, expectedMd5);
return ResponseEntity.status(400).body("INVALID CHECKSUM");
}
@@ -63,7 +59,6 @@ public class PaymentController {
Payment payment = optionalPayment.get();
if ("true".equalsIgnoreCase(trStatus) || "PAID".equalsIgnoreCase(trStatus)) {
log.info("✅ Transakcja opłacona: tr_id={}, kwota={}", trId, params.get("tr_paid"));
payment.setStatus(Enums.PaymentStatus.CORRECT);
if (payment.getOrder() != null) {
@@ -78,7 +73,6 @@ public class PaymentController {
}
} else if ("false".equalsIgnoreCase(trStatus)) {
log.warn("❌ Transakcja nieudana: {}", trId);
payment.setStatus(Enums.PaymentStatus.INCORRECT);
if (payment.getOrder() != null) {
@@ -87,10 +81,7 @@ public class PaymentController {
}
paymentRepository.save(payment);
} else {
log.warn("⚠️ Brak płatności o tr_id={}", trId);
}
return ResponseEntity.ok("TRUE");
}

View File

@@ -0,0 +1,17 @@
package _11.asktpk.artisanconnectbackend.dto;
import lombok.Getter;
import lombok.Setter;
import java.time.LocalDateTime;
import java.util.List;
@Getter @Setter
public class OrderWithPaymentsDTO {
private Long orderId;
private String orderType;
private String status;
private Double amount;
private LocalDateTime createdAt;
private List<PaymentDTO> payments;
}

View File

@@ -0,0 +1,34 @@
package _11.asktpk.artisanconnectbackend.dto;
import lombok.Getter;
import lombok.Setter;
@Getter
@Setter
public class PaymentDTO {
private Long paymentId;
private Double amount;
private String status;
private String transactionPaymentUrl;
private String transactionId;
public void setPaymentId(Long paymentId) {
this.paymentId = paymentId;
}
public void setAmount(Double amount) {
this.amount = amount;
}
public void setStatus(String status) {
this.status = status;
}
public void setTransactionPaymentUrl(String transactionPaymentUrl) {
this.transactionPaymentUrl = transactionPaymentUrl;
}
public void setTransactionId(String transactionId) {
this.transactionId = transactionId;
}
}

View File

@@ -11,6 +11,7 @@ public class TransactionPaymentRequestDTO {
private double amount;
private String description;
private Payer payer;
private Callbacks callbacks;
@Getter
@Setter
@@ -20,4 +21,21 @@ public class TransactionPaymentRequestDTO {
private String email;
private String name;
}
@Getter
@Setter
@NoArgsConstructor
@AllArgsConstructor
public static class Callbacks {
private PayerUrls payerUrls;
}
@Getter
@Setter
@NoArgsConstructor
@AllArgsConstructor
public static class PayerUrls {
private String success;
private String error;
}
}

View File

@@ -4,8 +4,10 @@ import _11.asktpk.artisanconnectbackend.entities.Order;
import org.springframework.data.jpa.repository.JpaRepository;
import org.springframework.stereotype.Repository;
import java.util.List;
@Repository
public interface OrderRepository extends JpaRepository<Order, Long> {
List<Order> findByClientId(Long clientId);
}

View File

@@ -4,9 +4,12 @@ import _11.asktpk.artisanconnectbackend.entities.Payment;
import org.springframework.data.jpa.repository.JpaRepository;
import org.springframework.stereotype.Repository;
import java.util.List;
import java.util.Optional;
@Repository
public interface PaymentRepository extends JpaRepository<Payment, Long> {
Optional<Payment> findByTransactionId(String transactionId);
List<Payment> findAllByOrderId(Long id);
}

View File

@@ -7,7 +7,6 @@ import _11.asktpk.artisanconnectbackend.dto.ClientDTO;
import _11.asktpk.artisanconnectbackend.entities.Client;
import _11.asktpk.artisanconnectbackend.security.JwtUtil;
import org.springframework.http.*;
import org.springframework.security.crypto.bcrypt.BCryptPasswordEncoder;
import org.springframework.security.crypto.password.PasswordEncoder;
import org.springframework.stereotype.Service;
import lombok.extern.slf4j.Slf4j;
@@ -23,10 +22,10 @@ public class AuthService {
private final PasswordEncoder passwordEncoder;
private final JwtUtil jwtUtil;
public AuthService(ClientService clientService, JwtUtil jwtUtil) {
public AuthService(ClientService clientService, JwtUtil jwtUtil, PasswordEncoder passwordEncoder) {
this.clientService = clientService;
this.jwtUtil = jwtUtil;
this.passwordEncoder = new BCryptPasswordEncoder();
this.passwordEncoder = passwordEncoder;
}
public AuthResponseDTO login(String email, String password) throws Exception {

View File

@@ -7,7 +7,6 @@ import _11.asktpk.artisanconnectbackend.entities.Role;
import _11.asktpk.artisanconnectbackend.repository.ClientRepository;
import _11.asktpk.artisanconnectbackend.repository.RolesRepository;
import jakarta.persistence.EntityNotFoundException;
import org.springframework.security.crypto.password.PasswordEncoder;
import org.springframework.stereotype.Service;
import java.util.List;
@@ -15,12 +14,10 @@ import java.util.List;
@Service
public class ClientService {
private final ClientRepository clientRepository;
private final PasswordEncoder passwordEncoder;
private final RolesRepository rolesRepository;
public ClientService(ClientRepository clientRepository, PasswordEncoder passwordEncoder, RolesRepository rolesRepository) {
public ClientService(ClientRepository clientRepository, RolesRepository rolesRepository) {
this.clientRepository = clientRepository;
this.passwordEncoder = passwordEncoder;
this.rolesRepository = rolesRepository;
}
@@ -126,7 +123,6 @@ public class ClientService {
public ClientDTO registerClient(Client client) {
client.setRole(getUserRole()); // ID 1 - USER role
client.setPassword(passwordEncoder.encode(client.getPassword()));
return toDto(clientRepository.save(client));
}
}

View File

@@ -15,10 +15,10 @@ public class EmailService {
public void sendEmail(EmailDTO email) {
SimpleMailMessage message = new SimpleMailMessage();
message.setFrom("noreply@zikor.pl");
message.setTo(email.getTo());
message.setSubject(email.getSubject());
message.setText(email.getBody());
message.setFrom("patryk.kania001@gmail.com");
mailSender.send(message);
}
}

View File

@@ -13,6 +13,7 @@ import org.springframework.stereotype.Service;
import _11.asktpk.artisanconnectbackend.entities.Order;
import java.time.LocalDateTime;
import java.util.List;
@Service
public class OrderService {
@@ -75,4 +76,8 @@ public class OrderService {
return orderRepository.findById(id)
.orElseThrow(() -> new RuntimeException("Nie znaleziono zamówienia o ID: " + id));
}
public List<Order> getOrdersByClientId(Long clientId) {
return orderRepository.findByClientId(clientId);
}
}

View File

@@ -15,6 +15,8 @@ import org.springframework.web.reactive.function.BodyInserters;
import org.springframework.web.reactive.function.client.WebClient;
import reactor.core.publisher.Mono;
import java.util.List;
@Service
public class PaymentService {
private final WebClient webClient;
@@ -80,4 +82,10 @@ public class PaymentService {
return null;
}
public List<Payment> getPaymentsByOrderId(Long id) {
return paymentRepository.findAllByOrderId(id);
}
}

View File

@@ -18,10 +18,10 @@ file.upload-dir=/Users/andsol/Desktop/uploads
spring.servlet.multipart.max-file-size=10MB
spring.servlet.multipart.max-request-size=10MB
spring.mail.host=smtp.gmail.com
spring.mail.host=smtp.sendgrid.net
spring.mail.port=587
spring.mail.username=patryk.kania001@gmail.com
spring.mail.password=pmyd ylwg mbsn hcpp
spring.mail.username=apikey
spring.mail.password=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
spring.mail.properties.mail.smtp.auth=true
spring.mail.properties.mail.smtp.starttls.enable=true