using EntitlementBLL.Interfaces; using FastEndpoints; using GB5Shared.DTO.Framework.Login; using GB5Shared.DTO.Framework.ResponseStandard; using GB5Shared.FastEndPoint; using static GB5Shared.GB5Constant.Constant; using GB5Shared.Authorization; namespace EntitlementSL.Endpoints.ChangeRequest; // Admin approval inbox — gated via [MenuRights], not a JWT role (GOODBOOKS_ADMIN has no // backing JWT scheme; this uses the same Login-header + MROLEVSMENU check as every other // GB5 module, per Thread 0 §20). [MenuRights("entchangerequests", RightOperation.View)] public class GetList : BaseEndpoint> { private readonly IChangeRequestBLL _ChangeRequestBLL; public GetList(IChangeRequestBLL changeRequestBLL) => _ChangeRequestBLL = changeRequestBLL; public override void Configure() { Get("/lic/ChangeRequest.svc/GetList"); AllowAnonymous(); } public record Params( [property: FromHeader] string Login, [property: QueryParam] int RequestStatus = -1, [property: QueryParam] int Page = 1, [property: QueryParam] int PageSize = 20 ); protected override string? GetCacheKey(Params req, LoginDTO loginDTO) => null; protected override async Task> ExecuteAsync(Params req, LoginDTO loginDTO, CancellationToken ct) { var result = await _ChangeRequestBLL.GetChangeRequestListAsync(-1, req.RequestStatus, req.Page, req.PageSize, ct); return await GB5Shared.ResponseStandard.Response.CreateSuccessResponse(result, CacheKeyLevel.NOT_REQUIRED, loginDTO); } }