api/src/Auth/Rule/SolidaryOperator.php
<?php
/**
* Copyright (c) 2021, MOBICOOP. All rights reserved.
* This project is dual licensed under AGPL and proprietary licence.
***************************
* This program is free software: you can redistribute it and/or modify
* it under the terms of the GNU Affero General Public License as
* published by the Free Software Foundation, either version 3 of the
* License, or (at your option) any later version.
*
* This program is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
* GNU Affero General Public License for more details.
*
* You should have received a copy of the GNU Affero General Public License
* along with this program. If not, see <gnu.org/licenses>.
***************************
* Licence MOBICOOP described in the file
* LICENSE
**************************/
namespace App\Auth\Rule;
use App\Auth\Interfaces\AuthRuleInterface;
use App\Solidary\Entity\Solidary;
use App\User\Entity\User;
use App\Solidary\Entity\Operate;
/**
* Check that the requester is an operator of the structure for the given solidary record
*/
class SolidaryOperator implements AuthRuleInterface
{
/**
* {@inheritdoc}
*/
public function execute($requester, $item, $params)
{
if (!isset($params['solidary']) || !($params['solidary'] instanceof Solidary)) {
return false;
}
$structures = [];
/**
* @var User $requester
*/
foreach ($requester->getOperates() as $operate) {
/**
* @var Operate $operate
*/
$structures[] = $operate->getStructure()->getId();
}
return in_array($params['solidary']->getSolidaryUserStructure()->getStructure()->getId(), $structures);
}
}