- Rewrote Drizzle schema: 20 tables with enums, relations, indexes - Generated migration with DROP TABLE records (v1 EAV removal) - Added passkey auth routes (register/login) - Added requireWorkspaceAccess helper - Added seedDefaultData for Personal workspace + welcome note - Updated SSE endpoint for v2 entities + workspace_id filtering - Created recordActivity helper (insert + pg_notify) - Updated sidebar: Graph replaces Reports, removed Analytics - Updated command palette for v2 entities - Created AGENTS.md with locked contract - Created llm-wiki scaffold (5 stubs) - Added inline AGENT INSTRUCTION comments to all 50 API route files - Fixed globals.css border-border class conflict - Updated database.ts stub for v1 compatibility
46 lines
1.5 KiB
TypeScript
46 lines
1.5 KiB
TypeScript
// AGENT INSTRUCTION: After every write (INSERT/UPDATE/DELETE), you MUST:
|
|
// 1. Insert activity feed entry
|
|
// 2. Call pg.notify('project_e_events', JSON.stringify({ type, action, id, workspace_id }))
|
|
// See AGENTS.md for full rules.
|
|
|
|
import { NextRequest, NextResponse } from 'next/server';
|
|
import { withAuth, createErrorResponse } from '@/lib/auth';
|
|
import { createPocketBaseClient } from '@/lib/pocketbase';
|
|
|
|
// POST /api/attachments/upload — Upload file attachment
|
|
export const POST = withAuth(async (request: NextRequest, _user) => {
|
|
try {
|
|
const formData = await request.formData();
|
|
const file = formData.get('file') as File | null;
|
|
const taskId = formData.get('task_id') as string | null;
|
|
|
|
if (!file) {
|
|
return createErrorResponse('VALIDATION_ERROR', 'File is required', 400);
|
|
}
|
|
|
|
if (!taskId) {
|
|
return createErrorResponse('VALIDATION_ERROR', 'task_id is required', 400);
|
|
}
|
|
|
|
// Check file size (5MB limit)
|
|
if (file.size > 5 * 1024 * 1024) {
|
|
return createErrorResponse('FILE_TOO_LARGE', 'File size must be less than 5MB', 400);
|
|
}
|
|
|
|
const pb = createPocketBaseClient();
|
|
|
|
// Upload to PocketBase
|
|
const attachment = await pb.collection('task_attachments').create({
|
|
task_id: taskId,
|
|
file,
|
|
filename: file.name,
|
|
mime_type: file.type,
|
|
size: file.size,
|
|
});
|
|
|
|
return NextResponse.json(attachment, { status: 201 });
|
|
} catch {
|
|
return createErrorResponse('UPLOAD_FAILED', 'Failed to upload file', 500);
|
|
}
|
|
});
|