aboutsummaryrefslogtreecommitdiffstats
path: root/apps/web/app/api/assets/route.ts
blob: 2caa4d4cc66c450ba390889385e196a4c30b8064 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
import { createContextFromRequest } from "@/server/api/client";

import type { ZUploadResponse } from "@hoarder/trpc/types/uploads";
import { db } from "@hoarder/db";
import { assets } from "@hoarder/db/schema";

const SUPPORTED_ASSET_TYPES = new Set(["image/jpeg", "image/png"]);

const MAX_UPLOAD_SIZE_BYTES = 4 * 1024 * 1024;

export const dynamic = "force-dynamic";
export async function POST(request: Request) {
  const ctx = await createContextFromRequest(request);
  if (!ctx.user) {
    return Response.json({ error: "Unauthorized" }, { status: 401 });
  }
  const formData = await request.formData();
  const data = formData.get("image");
  let buffer;
  let contentType;
  if (data instanceof File) {
    contentType = data.type;
    if (!SUPPORTED_ASSET_TYPES.has(contentType)) {
      return Response.json(
        { error: "Unsupported asset type" },
        { status: 400 },
      );
    }
    if (data.size > MAX_UPLOAD_SIZE_BYTES) {
      return Response.json({ error: "Asset is too big" }, { status: 413 });
    }
    buffer = Buffer.from(await data.arrayBuffer());
  } else {
    return Response.json({ error: "Bad request" }, { status: 400 });
  }

  const [dbRes] = await db
    .insert(assets)
    .values({
      encoding: "binary",
      contentType: contentType,
      blob: buffer,
      userId: ctx.user.id,
    })
    .returning();

  return Response.json({
    assetId: dbRes.id,
    contentType: dbRes.contentType,
    size: buffer.byteLength,
  } satisfies ZUploadResponse);
}