Files
lotteryLaravel/app/Http/Controllers/Api/V1/Admin/Ticket/AdminTicketItemIndexController.php
kang 1dcd4716c5 refactor: 更新权限管理与请求验证逻辑
- 在多个控制器中将权限检查从 hasAdminPermission 更新为 hasPermissionCode,以增强权限管理的灵活性。
- 引入 AdminScopePolicy,优化基于代理节点的权限和数据过滤逻辑,确保管理员能够更精确地控制访问权限。
- 在请求验证中添加 agent_node_id 字段,确保 API 接口支持代理节点的相关操作。
- 更新 AdminUser 模型,新增 hasPermissionCode 方法,以支持更细粒度的权限检查。
- 优化审计日志记录逻辑,确保在处理请求时能够准确记录管理员的操作。
2026-06-03 10:07:38 +08:00

141 lines
5.7 KiB
PHP
Raw Blame History

This file contains ambiguous Unicode characters
This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.
<?php
namespace App\Http\Controllers\Api\V1\Admin\Ticket;
use App\Http\Controllers\Controller;
use App\Http\Requests\Admin\TicketItemListRequest;
use App\Models\TicketItem;
use App\Support\ApiResponse;
use App\Support\CurrencyFormatter;
use App\Support\PaginationTrait;
use App\Support\AdminScopePolicy;
use App\Support\AgentNodeApiPresenter;
use App\Support\TicketItemListFilters;
use Illuminate\Http\JsonResponse;
use Illuminate\Http\Request;
/**
* 后台:全量注单列表。
*
* Query
* - `page`、`per_page` / `size`
* - `player_id`(可选)
* - `player_account`(可选,模糊匹配 `players.site_player_id` / `username` / `nickname`
* - `draw_no`(可选)
* - `status[]`(可选)
* - `number`(可选,模糊匹配注项号/号码/订单号)
* - `start_date` / `end_date`(可选,`Y-m-d`,按订单创建时间)
*/
final class AdminTicketItemIndexController extends Controller
{
use PaginationTrait;
use TicketItemListFilters;
public function __invoke(TicketItemListRequest $request): JsonResponse
{
$admin = $request->lotteryAdmin();
abort_if($admin === null, 401);
$validated = $request->validated();
$scope = AdminScopePolicy::resolveContext($request, $admin);
$perPage = $this->perPage($request, 'per_page', 10, 100);
$page = $this->page($request);
$query = TicketItem::query()
->with([
'draw:id,draw_no,business_date',
'order:id,order_no,currency_code,created_at',
'player:id,site_code,site_player_id,username,nickname,agent_node_id',
'player.agentNode:id,code,name',
])
->orderByDesc('ticket_items.id');
if (! empty($validated['player_id'])) {
$query->where('ticket_items.player_id', (int) $validated['player_id']);
} elseif (! empty($validated['player_account'])) {
$term = '%'.addcslashes(trim((string) $validated['player_account']), '%_\\').'%';
$query->whereHas('player', function ($q) use ($term): void {
$q->where('site_player_id', 'like', $term)
->orWhere('username', 'like', $term)
->orWhere('nickname', 'like', $term);
});
}
$drawNo = $validated['draw_no'] ?? null;
if (is_string($drawNo) && trim($drawNo) !== '') {
$query->whereHas('draw', fn ($q) => $q->where('draw_no', trim($drawNo)));
}
$statusInput = $validated['status'] ?? [];
if (is_string($statusInput)) {
$statusInput = [$statusInput];
}
$statusValues = is_array($statusInput)
? array_values(array_filter(array_map(
fn ($status) => is_string($status) ? trim($status) : '',
$statusInput,
)))
: [];
if ($statusValues !== []) {
$query->whereIn('ticket_items.status', $statusValues);
}
$number = trim((string) ($validated['number'] ?? ''));
$this->applyTicketItemNumberSearch($query, $number);
$this->applyOrderPlacedDateRange(
$query,
is_string($validated['start_date'] ?? null) ? $validated['start_date'] : null,
is_string($validated['end_date'] ?? null) ? $validated['end_date'] : null,
);
AdminScopePolicy::applyViaPlayerRelationWithContext($query, $scope, 'player');
$paginator = $query->paginate(perPage: $perPage, page: $page, columns: ['*']);
$items = collect($paginator->items())->map(function (TicketItem $row): array {
$totalBet = (int) $row->total_bet_amount;
$actualDeduct = (int) $row->actual_deduct_amount;
$winAmount = (int) $row->win_amount;
$jackpotWin = (int) $row->jackpot_win_amount;
return [
'id' => $row->id,
'ticket_no' => $row->ticket_no,
...AgentNodeApiPresenter::embed($row->player?->agentNode),
'player_id' => $row->player_id,
'site_code' => $row->player?->site_code,
'site_player_id' => $row->player?->site_player_id,
'username' => $row->player?->username,
'nickname' => $row->player?->nickname,
'order_no' => $row->order?->order_no,
'draw_no' => $row->draw?->draw_no,
'currency_code' => $row->order?->currency_code,
'play_code' => $row->play_code,
'original_number' => $row->original_number,
'total_bet_amount' => $totalBet,
'total_bet_amount_formatted' => CurrencyFormatter::fromMinor($totalBet),
'actual_deduct_amount' => $actualDeduct,
'actual_deduct_amount_formatted' => CurrencyFormatter::fromMinor($actualDeduct),
'status' => $row->status,
'fail_reason_code' => $row->fail_reason_code,
'fail_reason_text' => $row->fail_reason_text,
'win_amount' => $winAmount,
'win_amount_formatted' => CurrencyFormatter::fromMinor($winAmount),
'jackpot_win_amount' => $jackpotWin,
'jackpot_win_amount_formatted' => CurrencyFormatter::fromMinor($jackpotWin),
'placed_at' => $row->order?->created_at?->toIso8601String(),
'updated_at' => $row->updated_at?->toIso8601String(),
];
})->values()->all();
return ApiResponse::success([
'items' => $items,
'total' => $paginator->total(),
'page' => $paginator->currentPage(),
'per_page' => $paginator->perPage(),
'last_page' => $paginator->lastPage(),
]);
}
}