index.php 3.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106
  1. <?php
  2. declare(strict_types=1);
  3. use App\Auth\OidcClient;
  4. use App\Auth\SessionGuard;
  5. use App\Controllers\AuthController;
  6. use App\Db\Connection;
  7. use App\Db\Migrator;
  8. use App\Http\Request;
  9. use App\Http\Response;
  10. use App\Http\Router;
  11. use App\Http\View;
  12. use App\Repositories\UserRepository;
  13. use App\Services\AuditLogger;
  14. define('APP_ROOT', dirname(__DIR__));
  15. // ---------------------------------------------------------------------------
  16. // Autoload
  17. // ---------------------------------------------------------------------------
  18. $autoload = APP_ROOT . '/vendor/autoload.php';
  19. if (!is_file($autoload)) {
  20. http_response_code(500);
  21. header('Content-Type: text/plain; charset=utf-8');
  22. echo "Composer dependencies are not installed.\n";
  23. echo "Run: composer install (or rebuild the container).\n";
  24. exit;
  25. }
  26. require $autoload;
  27. // ---------------------------------------------------------------------------
  28. // Environment
  29. // ---------------------------------------------------------------------------
  30. if (is_file(APP_ROOT . '/.env')) {
  31. $dotenv = Dotenv\Dotenv::createImmutable(APP_ROOT);
  32. $dotenv->safeLoad();
  33. }
  34. $appEnv = getenv('APP_ENV') ?: 'production';
  35. if ($appEnv !== 'production') {
  36. ini_set('display_errors', '1');
  37. error_reporting(E_ALL);
  38. } else {
  39. ini_set('display_errors', '0');
  40. }
  41. // ---------------------------------------------------------------------------
  42. // Migrations — cheap no-op when already current
  43. // ---------------------------------------------------------------------------
  44. try {
  45. $pdo = Connection::pdo();
  46. (new Migrator($pdo))->migrate();
  47. } catch (\Throwable $e) {
  48. http_response_code(500);
  49. header('Content-Type: text/plain; charset=utf-8');
  50. echo "Database bootstrap failed.\n";
  51. if ($appEnv !== 'production') {
  52. echo $e->getMessage() . "\n";
  53. }
  54. exit;
  55. }
  56. // ---------------------------------------------------------------------------
  57. // Shared services
  58. // ---------------------------------------------------------------------------
  59. $view = new View(APP_ROOT . '/views');
  60. $users = new UserRepository($pdo);
  61. $audit = new AuditLogger($pdo);
  62. $auth = new AuthController($pdo, $users, $audit);
  63. // ---------------------------------------------------------------------------
  64. // Routing
  65. // ---------------------------------------------------------------------------
  66. $router = new Router();
  67. $router->get('/', function (Request $req) use ($view, $pdo, $users, $appEnv): Response {
  68. $currentUser = SessionGuard::currentUser($users);
  69. $schemaVersion = (int) $pdo->query(
  70. 'SELECT COALESCE(MAX(version), 0) FROM schema_version'
  71. )->fetchColumn();
  72. return Response::html($view->render('home', [
  73. 'title' => 'Sprint Planner',
  74. 'currentUser' => $currentUser,
  75. 'schemaVersion' => $schemaVersion,
  76. 'dbPath' => Connection::path(),
  77. 'appEnv' => $appEnv,
  78. 'oidcConfigured' => OidcClient::isConfigured(),
  79. 'authError' => isset($req->query['auth_error']),
  80. 'csrfToken' => SessionGuard::csrfToken(),
  81. ]));
  82. });
  83. $router->get('/healthz', fn() => Response::text('ok'));
  84. $router->get('/auth/login', $auth->login(...));
  85. $router->get('/auth/callback', $auth->callback(...));
  86. $router->post('/auth/logout', $auth->logout(...));
  87. // ---------------------------------------------------------------------------
  88. // Dispatch
  89. // ---------------------------------------------------------------------------
  90. $request = Request::fromGlobals();
  91. $response = $router->dispatch($request);
  92. $response->send();