Some checks failed
CI / Lint → Typecheck → Test → Build (22) (push) Failing after 16s
CI / E2E Tests (push) Has been skipped
CodeQL Analysis / CodeQL (javascript-typescript) (push) Failing after 50s
Deploy / Build API Image (push) Failing after 25s
Deploy / Build Web Image (push) Failing after 11s
Deploy / Build AI Services Image (push) Failing after 10s
E2E Tests / Playwright E2E (push) Failing after 12s
Security Scanning / Dependency Audit (pnpm) (push) Failing after 4s
Security Scanning / Trivy Scan — API Image (push) Failing after 1m16s
Security Scanning / Trivy Scan — Web Image (push) Failing after 1m2s
Security Scanning / Trivy Scan — AI Services Image (push) Failing after 50s
Security Scanning / Trivy Filesystem Scan (push) Failing after 38s
Deploy / Deploy to Staging (push) Has been skipped
Deploy / Smoke Test Staging (push) Has been skipped
Deploy / Deploy to Production (push) Has been skipped
Deploy / Smoke Test Production (push) Has been skipped
Security Scanning / Security Gate (push) Failing after 0s
Deploy / Rollback Production (push) Has been skipped
Deploy / Rollback Staging (push) Failing after 10m50s
Two new B2B roles for CĐT (project developers) and KCN operators, provisioned by
admin. Each account owns a subset of ProjectDevelopment / IndustrialPark records
and can CRUD them from the dashboard; admin retains full access.
Phase 1 — Schema
- Extend UserRole enum with DEVELOPER + PARK_OPERATOR (before ADMIN)
- ProjectDevelopment.ownerId FK (User, ON DELETE SET NULL) + index
- IndustrialPark.ownerId FK + index
- Migration 20260420030000
Phase 2a — Backend authorization
- CreateProjectCommand + CreateIndustrialParkCommand accept ownerId; controllers
auto-set it to the caller's user id when role=DEVELOPER / PARK_OPERATOR
- Update + Delete commands gain (requesterUserId, requesterRole) and enforce
ADMIN-or-owner via ForbiddenException; reassigning ownerId is admin-only
- Search params gain optional ownerId filter wired through Prisma repos
- New endpoints: GET /projects/mine/list, GET /industrial/parks/mine/list
- user-rate-limit guard: add DEVELOPER + PARK_OPERATOR entries (300/window)
Phase 2b — Admin provision
- ProvisionDeveloperCommand/Handler: create user (role=DEVELOPER), pre-validate
target projects have no existing owner, batch-assign ownerId
- ProvisionParkOperatorCommand/Handler: same for PARK_OPERATOR + IndustrialPark
- POST /admin/accounts/developers, POST /admin/accounts/park-operators (admin-only)
- DTOs with phone/password/fullName/email + optional {project,park}Ids[]
Phase 2c — Project stats for developer dashboard
- GetProjectStatsQuery + handler: aggregates linkedListingCount, activeListingCount,
totalInquiries, unreadInquiries, savedByUsers via Property → Listing → Inquiry chain
- GET /projects/:id/stats — admin sees all, DEVELOPER only their own (403 otherwise)
Phase 3 — Frontend
- Dashboard layout role-aware: DEVELOPER sees "Dự án của tôi" + CRM + Profile (hides
listings/analytics/subscription); PARK_OPERATOR sees "KCN của tôi" equivalent
- /projects dashboard page switches to duAnApi.searchMine() when role=DEVELOPER
- /industrial-parks page switches to industrialApi.searchMine() when role=PARK_OPERATOR
- Admin nav gains "Tài khoản CĐT" + "Tài khoản KCN" entries
- New pages /admin/accounts/developers + /admin/accounts/park-operators with
checkbox-based multi-select for linking entities
- adminApi.provisionDeveloper + provisionParkOperator + types
- duAnApi.searchMine + getStats; industrialApi.searchMine
- Login demo accounts list includes CĐT Vingroup + KCN VSIP
Phase 4 — Seed (prisma/seed-b2b-accounts.ts)
- DEVELOPER "CĐT Vingroup" (+84912000001) owns 4 projects
- DEVELOPER "CĐT Masterise Homes" (+84912000003) owns 2 projects
- PARK_OPERATOR "Vận hành KCN VSIP" (+84912000002) owns 2 seeded KCN
- Password Velik@2026 for all
Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
232 lines
5.6 KiB
TypeScript
232 lines
5.6 KiB
TypeScript
import { apiClient } from './api-client';
|
|
|
|
// ── Types ──
|
|
|
|
export interface DashboardStats {
|
|
totalUsers: number;
|
|
totalListings: number;
|
|
activeListings: number;
|
|
pendingModerationCount: number;
|
|
totalAgents: number;
|
|
verifiedAgents: number;
|
|
totalTransactions: number;
|
|
newUsersLast30Days: number;
|
|
newListingsLast30Days: number;
|
|
}
|
|
|
|
export interface RevenueStatsItem {
|
|
period: string;
|
|
totalRevenue: number;
|
|
subscriptionRevenue: number;
|
|
listingFeeRevenue: number;
|
|
featuredListingRevenue: number;
|
|
transactionCount: number;
|
|
}
|
|
|
|
export interface ModerationQueueItem {
|
|
listingId: string;
|
|
propertyTitle: string;
|
|
propertyType: string;
|
|
transactionType: string;
|
|
priceVND: number;
|
|
sellerName: string;
|
|
sellerId: string;
|
|
moderationScore: number | null;
|
|
createdAt: string;
|
|
}
|
|
|
|
export interface PaginatedResult<T> {
|
|
data: T[];
|
|
total: number;
|
|
page: number;
|
|
limit: number;
|
|
totalPages: number;
|
|
}
|
|
|
|
export interface UserListItem {
|
|
id: string;
|
|
email: string | null;
|
|
phone: string;
|
|
fullName: string;
|
|
role: string;
|
|
kycStatus: string;
|
|
isActive: boolean;
|
|
createdAt: string;
|
|
}
|
|
|
|
export interface UserDetail {
|
|
id: string;
|
|
email: string | null;
|
|
phone: string;
|
|
fullName: string;
|
|
avatarUrl: string | null;
|
|
role: string;
|
|
kycStatus: string;
|
|
kycData: unknown;
|
|
isActive: boolean;
|
|
createdAt: string;
|
|
updatedAt: string;
|
|
listingsCount: number;
|
|
activeListingsCount: number;
|
|
transactionsCount: number;
|
|
subscription: {
|
|
planTier: string;
|
|
status: string;
|
|
currentPeriodEnd: string;
|
|
} | null;
|
|
recentActivity: Array<{
|
|
type: string;
|
|
description: string;
|
|
createdAt: string;
|
|
}>;
|
|
}
|
|
|
|
export interface AiSettings {
|
|
apiUrl: string;
|
|
apiKeyMasked: string | null;
|
|
model: string;
|
|
hasApiKey: boolean;
|
|
updatedAt: string | null;
|
|
}
|
|
|
|
export interface UpdateAiSettingsPayload {
|
|
apiUrl?: string;
|
|
apiKey?: string;
|
|
model?: string;
|
|
}
|
|
|
|
export interface KycQueueItem {
|
|
userId: string;
|
|
fullName: string;
|
|
email: string | null;
|
|
phone: string;
|
|
role: string;
|
|
kycStatus: string;
|
|
kycData: unknown;
|
|
createdAt: string;
|
|
}
|
|
|
|
// ── API ──
|
|
|
|
export const adminApi = {
|
|
// Dashboard
|
|
getDashboardStats: () =>
|
|
apiClient.get<DashboardStats>('/admin/dashboard'),
|
|
|
|
getRevenueStats: (startDate: string, endDate: string, groupBy: 'day' | 'month' = 'month') =>
|
|
apiClient.get<RevenueStatsItem[]>(
|
|
`/admin/revenue?startDate=${startDate}&endDate=${endDate}&groupBy=${groupBy}`,
|
|
),
|
|
|
|
// Moderation
|
|
getModerationQueue: (page = 1, limit = 20) =>
|
|
apiClient.get<PaginatedResult<ModerationQueueItem>>(
|
|
`/admin/moderation?page=${page}&limit=${limit}`,
|
|
),
|
|
|
|
approveListing: (listingId: string, moderationNotes?: string) =>
|
|
apiClient.post<{ success: boolean }>('/admin/moderation/approve', {
|
|
listingId,
|
|
moderationNotes,
|
|
}),
|
|
|
|
rejectListing: (listingId: string, reason: string) =>
|
|
apiClient.post<{ success: boolean }>('/admin/moderation/reject', {
|
|
listingId,
|
|
reason,
|
|
}),
|
|
|
|
bulkModerate: (listingIds: string[], action: 'approve' | 'reject', reason?: string) =>
|
|
apiClient.post<{ success: boolean }>('/admin/moderation/bulk', {
|
|
listingIds,
|
|
action,
|
|
reason,
|
|
}),
|
|
|
|
// Users
|
|
getUsers: (params: { page?: number; limit?: number; role?: string; isActive?: boolean; search?: string } = {}) => {
|
|
const query = new URLSearchParams();
|
|
if (params.page) query.set('page', String(params.page));
|
|
if (params.limit) query.set('limit', String(params.limit));
|
|
if (params.role) query.set('role', params.role);
|
|
if (params.isActive !== undefined) query.set('isActive', String(params.isActive));
|
|
if (params.search) query.set('search', params.search);
|
|
return apiClient.get<PaginatedResult<UserListItem>>(
|
|
`/admin/users?${query.toString()}`,
|
|
);
|
|
},
|
|
|
|
getUserDetail: (userId: string) =>
|
|
apiClient.get<UserDetail>(`/admin/users/${userId}`),
|
|
|
|
updateUserStatus: (userId: string, isActive: boolean, reason?: string) =>
|
|
apiClient.post<{ success: boolean }>('/admin/users/status', {
|
|
userId,
|
|
isActive,
|
|
reason,
|
|
}),
|
|
|
|
banUser: (userId: string, reason: string, unban = false) =>
|
|
apiClient.post<{ success: boolean }>('/admin/users/ban', {
|
|
userId,
|
|
reason,
|
|
unban,
|
|
}),
|
|
|
|
// KYC
|
|
getKycQueue: (page = 1, limit = 20) =>
|
|
apiClient.get<PaginatedResult<KycQueueItem>>(
|
|
`/admin/kyc?page=${page}&limit=${limit}`,
|
|
),
|
|
|
|
approveKyc: (userId: string, notes?: string) =>
|
|
apiClient.post<{ success: boolean }>('/admin/kyc/approve', {
|
|
userId,
|
|
notes,
|
|
}),
|
|
|
|
rejectKyc: (userId: string, reason: string) =>
|
|
apiClient.post<{ success: boolean }>('/admin/kyc/reject', {
|
|
userId,
|
|
reason,
|
|
}),
|
|
|
|
// AI Settings
|
|
getAiSettings: () => apiClient.get<AiSettings>('/admin/settings/ai'),
|
|
|
|
updateAiSettings: (body: UpdateAiSettingsPayload) =>
|
|
apiClient.patch<AiSettings>('/admin/settings/ai', body),
|
|
|
|
// B2B account provisioning
|
|
provisionDeveloper: (body: ProvisionDeveloperPayload) =>
|
|
apiClient.post<ProvisionAccountResult>('/admin/accounts/developers', body),
|
|
|
|
provisionParkOperator: (body: ProvisionParkOperatorPayload) =>
|
|
apiClient.post<ProvisionAccountResult>('/admin/accounts/park-operators', body),
|
|
};
|
|
|
|
export interface ProvisionDeveloperPayload {
|
|
phone: string;
|
|
password: string;
|
|
fullName: string;
|
|
email?: string;
|
|
projectIds?: string[];
|
|
}
|
|
|
|
export interface ProvisionParkOperatorPayload {
|
|
phone: string;
|
|
password: string;
|
|
fullName: string;
|
|
email?: string;
|
|
parkIds?: string[];
|
|
}
|
|
|
|
export interface ProvisionAccountResult {
|
|
userId: string;
|
|
phone: string;
|
|
email: string | null;
|
|
fullName: string;
|
|
linkedProjectIds?: string[];
|
|
linkedParkIds?: string[];
|
|
}
|