7bf04f2655
## 修改内容 - 新增短信、一键登录、比价三类风控事件与规则聚合 - 新增管理员忽略、封禁、解封、重置报警和阈值配置接口 - 风险列表返回当前有效限制的 restriction_id,供后台已封禁视图解除 - 在短信/一键登录、比价、任务领奖、提现链路接入风险记录与限制 - 新增通用行为流水、风险事件、主体限制模型及 Alembic 迁移 - 新增本地演示数据脚本与风控测试 ## 验证 - ruff check:通过 - Alembic 全新 SQLite upgrade head / downgrade -1:通过 - 风控测试:通过,覆盖封禁列表 restriction_id 与解除链路 - 全量测试:532 passed,8 failed;其中 7 项在干净 origin/main 独立复现,另 1 项独立复跑通过,未发现本分支新增回归 --------- Co-authored-by: unknown <798648091@qq.com> Reviewed-on: #174 Co-authored-by: linkeyu <linkeyu@wonderable.ai> Co-committed-by: linkeyu <linkeyu@wonderable.ai>
97 lines
3.9 KiB
Python
97 lines
3.9 KiB
Python
"""admin 运营配置:列出所有可配项 + 改某项(带审计 + 改值校验)。
|
|
|
|
配置项定义见 app.core.config_schema.CONFIG_DEFS;业务读配置 fallback 默认(见 app_config repo)。
|
|
权限:operator / finance 都可改(运营调奖励、财务调额度),super 恒可。
|
|
"""
|
|
from __future__ import annotations
|
|
|
|
from typing import Annotated, Any
|
|
|
|
from fastapi import APIRouter, Depends, HTTPException, Request
|
|
|
|
from app.admin.audit import write_audit
|
|
from app.admin.deps import AdminDb, get_client_ip, get_current_admin, require_role
|
|
from app.admin.schemas.config import ConfigItemOut, ConfigUpdateRequest
|
|
from app.core.config_schema import CONFIG_DEFS
|
|
from app.core.rewards import SIGNIN_CYCLE_LEN
|
|
from app.models.admin import AdminUser
|
|
from app.repositories import app_config
|
|
|
|
router = APIRouter(
|
|
prefix="/admin/api/config",
|
|
tags=["admin-config"],
|
|
dependencies=[Depends(get_current_admin)],
|
|
)
|
|
|
|
|
|
def _validate(key: str, value: Any) -> None:
|
|
"""按配置项 type 校验新值,不合法抛 ValueError(router 转 400)。"""
|
|
t = CONFIG_DEFS[key]["type"]
|
|
if t == "int":
|
|
if not isinstance(value, int) or isinstance(value, bool) or value < 0:
|
|
raise ValueError("需为非负整数")
|
|
minimum = CONFIG_DEFS[key].get("min")
|
|
maximum = CONFIG_DEFS[key].get("max")
|
|
if minimum is not None and value < minimum:
|
|
raise ValueError(f"不能小于 {minimum}")
|
|
if maximum is not None and value > maximum:
|
|
raise ValueError(f"不能大于 {maximum}")
|
|
elif t == "int_list":
|
|
if not isinstance(value, list) or not value:
|
|
raise ValueError("需为非空整数列表")
|
|
if not all(isinstance(x, int) and not isinstance(x, bool) and x >= 0 for x in value):
|
|
raise ValueError("列表元素需为非负整数")
|
|
if key == "signin_rewards" and len(value) != SIGNIN_CYCLE_LEN:
|
|
raise ValueError(f"签到档位必须正好 {SIGNIN_CYCLE_LEN} 个(对应 {SIGNIN_CYCLE_LEN} 天循环)")
|
|
elif t == "dict_str_int":
|
|
if not isinstance(value, dict) or not all(
|
|
isinstance(k, str) and isinstance(v, int) and not isinstance(v, bool)
|
|
for k, v in value.items()
|
|
):
|
|
raise ValueError("需为 {字符串: 整数} 映射")
|
|
elif t == "bool":
|
|
if not isinstance(value, bool):
|
|
raise ValueError("需为布尔值")
|
|
|
|
|
|
def _item(db, key: str) -> ConfigItemOut:
|
|
for item in app_config.list_all(db):
|
|
if item["key"] == key:
|
|
return ConfigItemOut(**item)
|
|
raise HTTPException(status_code=404, detail="未知配置项")
|
|
|
|
|
|
@router.get("", response_model=list[ConfigItemOut], summary="所有可配项 + 当前值(不含 hidden)")
|
|
def list_config(db: AdminDb) -> list[ConfigItemOut]:
|
|
# hidden 项(已下线/由专用页管理,如福利页任务·里程碑·看广告调参、首页轮播数据源)不在本页渲染。
|
|
return [
|
|
ConfigItemOut(**item)
|
|
for item in app_config.list_all(db)
|
|
if not CONFIG_DEFS[item["key"]].get("hidden")
|
|
]
|
|
|
|
|
|
@router.patch("/{key}", response_model=ConfigItemOut, summary="改某项配置(带审计)")
|
|
def update_config(
|
|
key: str,
|
|
body: ConfigUpdateRequest,
|
|
request: Request,
|
|
admin: Annotated[AdminUser, Depends(require_role("operator", "finance"))],
|
|
db: AdminDb,
|
|
) -> ConfigItemOut:
|
|
if key not in CONFIG_DEFS:
|
|
raise HTTPException(status_code=404, detail="未知配置项")
|
|
try:
|
|
_validate(key, body.value)
|
|
except ValueError as e:
|
|
raise HTTPException(status_code=400, detail=str(e)) from e
|
|
|
|
before = app_config.get_value(db, key)
|
|
app_config.set_value(db, key, body.value, admin_id=admin.id, commit=False)
|
|
write_audit(
|
|
db, admin, action="config.set", target_type="config", target_id=key,
|
|
detail={"before": before, "after": body.value}, ip=get_client_ip(request), commit=False,
|
|
)
|
|
db.commit()
|
|
return _item(db, key)
|