mirror of
https://github.com/lordmathis/lemma.git
synced 2025-11-06 07:54:22 +00:00
Encrypt git token in insertstruct
This commit is contained in:
@@ -11,7 +11,7 @@ import (
|
||||
// CreateSession inserts a new session record into the database
|
||||
func (db *database) CreateSession(session *models.Session) error {
|
||||
query, err := NewQuery(db.dbType).
|
||||
InsertStruct(session, "sessions")
|
||||
InsertStruct(session, "sessions", db.secretsService)
|
||||
if err != nil {
|
||||
return fmt.Errorf("failed to create query: %w", err)
|
||||
}
|
||||
|
||||
@@ -2,6 +2,7 @@ package db
|
||||
|
||||
import (
|
||||
"fmt"
|
||||
"lemma/internal/secrets"
|
||||
"reflect"
|
||||
"strings"
|
||||
"unicode"
|
||||
@@ -14,7 +15,7 @@ type DBField struct {
|
||||
useDefault bool
|
||||
}
|
||||
|
||||
func StructTagsToFields(s any) ([]DBField, error) {
|
||||
func StructTagsToFields(s any, secretsService secrets.Service) ([]DBField, error) {
|
||||
v := reflect.ValueOf(s)
|
||||
|
||||
if v.Kind() == reflect.Ptr {
|
||||
@@ -49,6 +50,8 @@ func StructTagsToFields(s any) ([]DBField, error) {
|
||||
}
|
||||
|
||||
useDefault := false
|
||||
value := v.Field(i).Interface()
|
||||
|
||||
if strings.Contains(tag, ",") {
|
||||
parts := strings.Split(tag, ",")
|
||||
tag = parts[0]
|
||||
@@ -61,13 +64,19 @@ func StructTagsToFields(s any) ([]DBField, error) {
|
||||
}
|
||||
case "default":
|
||||
useDefault = true
|
||||
case "encrypted":
|
||||
val, err := secretsService.Encrypt(value.(string))
|
||||
if err != nil {
|
||||
return nil, fmt.Errorf("failed to encrypt field %s: %w", f.Name, err)
|
||||
}
|
||||
value = val
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
fields = append(fields, DBField{
|
||||
Name: tag,
|
||||
Value: v.Field(i).Interface(),
|
||||
Value: value,
|
||||
Type: f.Type,
|
||||
useDefault: useDefault,
|
||||
})
|
||||
@@ -91,8 +100,8 @@ func toSnakeCase(s string) string {
|
||||
return res
|
||||
}
|
||||
|
||||
func (q *Query) InsertStruct(s any, table string) (*Query, error) {
|
||||
fields, err := StructTagsToFields(s)
|
||||
func (q *Query) InsertStruct(s any, table string, secretsService secrets.Service) (*Query, error) {
|
||||
fields, err := StructTagsToFields(s, secretsService)
|
||||
if err != nil {
|
||||
return nil, err
|
||||
}
|
||||
|
||||
@@ -18,7 +18,7 @@ func (db *database) CreateUser(user *models.User) (*models.User, error) {
|
||||
defer tx.Rollback()
|
||||
|
||||
query, err := NewQuery(db.dbType).
|
||||
InsertStruct(user, "users")
|
||||
InsertStruct(user, "users", db.secretsService)
|
||||
|
||||
if err != nil {
|
||||
return nil, fmt.Errorf("failed to create query: %w", err)
|
||||
@@ -73,7 +73,7 @@ func (db *database) createWorkspaceTx(tx *sql.Tx, workspace *models.Workspace) e
|
||||
log := getLogger().WithGroup("users")
|
||||
|
||||
insertQuery, err := NewQuery(db.dbType).
|
||||
InsertStruct(workspace, "workspaces")
|
||||
InsertStruct(workspace, "workspaces", db.secretsService)
|
||||
|
||||
if err != nil {
|
||||
return fmt.Errorf("failed to create query: %w", err)
|
||||
|
||||
@@ -19,15 +19,8 @@ func (db *database) CreateWorkspace(workspace *models.Workspace) error {
|
||||
workspace.SetDefaultSettings()
|
||||
}
|
||||
|
||||
// Encrypt token if present
|
||||
encryptedToken, err := db.encryptToken(workspace.GitToken)
|
||||
if err != nil {
|
||||
return fmt.Errorf("failed to encrypt token: %w", err)
|
||||
}
|
||||
workspace.GitToken = encryptedToken
|
||||
|
||||
query, err := NewQuery(db.dbType).
|
||||
InsertStruct(workspace, "workspaces")
|
||||
InsertStruct(workspace, "workspaces", db.secretsService)
|
||||
|
||||
if err != nil {
|
||||
return fmt.Errorf("failed to create query: %w", err)
|
||||
|
||||
Reference in New Issue
Block a user