using FastEndpoints; using GB5Shared.DTO.Framework.Login; using GB5Shared.DTO.Framework.ResponseStandard; using GB5Shared.FastEndPoint; using SwBLL.UserResourceRole; using static GB5Shared.GB5Constant.Constant; using GB5Shared.Authorization; namespace SwSL.EndPoints.UserResourceRole; //[MenuRights("SWUSERROLE", RightOperation.View)] public class GetGrantsForUser : BaseEndpoint> { private readonly IUserResourceRoleBLL _bll; public GetGrantsForUser(IUserResourceRoleBLL bll) => _bll = bll; public override void Configure() { Get("/UserResourceRole/GetGrantsForUser"); AllowAnonymous(); } public record Parameters( [property: FromHeader] string Login, [property: QueryParam] int UserId); // Never cache — a stale grant listing is a security bug, not a UX inconvenience. protected override string? GetCacheKey(Parameters req, LoginDTO loginDTO) => null; protected override async Task> ExecuteAsync( Parameters req, LoginDTO loginDTO, CancellationToken ct) { var result = await _bll.GetGrantsForUser(req.UserId, loginDTO, ct); return await GB5Shared.ResponseStandard.Response.CreateSuccessResponse( result, CacheKeyLevel.NOT_REQUIRED, loginDTO); } }