From 5fdb9d0afef336795ebbff1f2aae709d97128475 Mon Sep 17 00:00:00 2001 From: multipleof4 Date: Fri, 10 Oct 2025 10:48:32 -0700 Subject: [PATCH] Delete functions/api/links/delete.js --- functions/api/links/delete.js | 28 ---------------------------- 1 file changed, 28 deletions(-) delete mode 100644 functions/api/links/delete.js diff --git a/functions/api/links/delete.js b/functions/api/links/delete.js deleted file mode 100644 index f43fb19..0000000 --- a/functions/api/links/delete.js +++ /dev/null @@ -1,28 +0,0 @@ -export async function onRequestPost({ request, env }) { - try { - const { 'g-recaptcha-response': token, ...body } = await request.json(); - const vR = await fetch("https://www.google.com/recaptcha/api/siteverify", { method: "POST", headers: { "Content-Type": "application/x-www-form-urlencoded" }, body: `secret=${env.RECAPCHA_KEY}&response=${token}` }); - if (!(await vR.json()).success) return new Response("CAPTCHA verification failed.", { status: 403 }); - - const { slug, username, pass_hash } = body; - if (!slug || !username || !pass_hash) return new Response("Missing fields", { status: 400 }); - - const user = await env.D1_EV.prepare("SELECT pass_hash, custom_slugs FROM users WHERE username = ?").bind(username).first(); - if (user?.pass_hash !== pass_hash) return new Response("Invalid credentials", { status: 401 }); - - let slugs = []; - try { slugs = JSON.parse(user.custom_slugs) } catch {} - if (!Array.isArray(slugs) || !slugs.includes(slug)) return new Response("Permission denied to delete this slug.", { status: 403 }); - - const newSlugs = slugs.filter(s => s !== slug); - - await Promise.all([ - env.KV_EV.delete(slug), - env.D1_EV.prepare("UPDATE users SET custom_slugs = ? WHERE username = ?").bind(JSON.stringify(newSlugs), username).run() - ]); - - return Response.json({ success: true, slug }); - } catch (e) { - return new Response(e.message, { status: 500 }); - } -}