ownerRef(); $member = Member::where('user_ref', $ref)->first(); if ($member) { return Organization::find($member->organization_id); } return Organization::owned($ref)->first(); } public function forUser(User $user): Organization { return $this->resolveForUser($user) ?? throw new \RuntimeException('No organization for user.'); } public function isOnboarded(User $user): bool { $organization = $this->resolveForUser($user); return $organization !== null && (bool) data_get($organization->settings, 'onboarded', false); } public function memberFor(User $user, ?Organization $organization = null): ?Member { $organization ??= $this->resolveForUser($user); if (! $organization) { return null; } return Member::where('organization_id', $organization->id) ->where('user_ref', $user->ownerRef()) ->first(); } public function ensureOwnerMember(User $user, Organization $organization): Member { return Member::firstOrCreate( [ 'organization_id' => $organization->id, 'user_ref' => $user->ownerRef(), ], [ 'owner_ref' => $user->ownerRef(), 'role' => 'hospital_admin', ], ); } /** * @param array $data */ public function completeOnboarding(User $user, array $data): Organization { $ref = $user->ownerRef(); $organization = Organization::create([ 'owner_ref' => $ref, 'name' => $data['organization_name'], 'slug' => Str::slug($data['organization_name']).'-'.substr($ref, 0, 6), 'timezone' => $data['timezone'] ?? config('app.timezone', 'UTC'), 'settings' => [ 'onboarded' => true, 'facility_type' => $data['facility_type'] ?? 'clinic', ], ]); $this->ensureOwnerMember($user, $organization); $branch = Branch::create([ 'owner_ref' => $ref, 'organization_id' => $organization->id, 'name' => $data['branch_name'], 'address' => $data['branch_address'] ?? null, 'phone' => $data['branch_phone'] ?? null, 'is_active' => true, ]); Department::create([ 'owner_ref' => $ref, 'branch_id' => $branch->id, 'name' => 'General Outpatient', 'type' => 'outpatient', 'is_active' => true, ]); AuditLogger::record($ref, 'organization.created', $organization->id, $ref, Organization::class, $organization->id); AuditLogger::record($ref, 'branch.created', $organization->id, $ref, Branch::class, $branch->id); return $organization; } /** Branch ID the member may access; null = all branches. */ public function branchScope(?Member $member): ?int { if ($member === null) { return null; } if (in_array($member->role, ['super_admin', 'hospital_admin', 'accountant'], true)) { return null; } return $member->branch_id; } }