Deploy Ladill QR Plus / deploy (push) Successful in 28s
Full control center for ticketed events, contributions, attendees, badges, and programmes — not a QR utility clone. Includes SSO shell, import command, and platform cutover runbook. Co-authored-by: Cursor <cursoragent@cursor.com>
42 lines
1.2 KiB
PHP
42 lines
1.2 KiB
PHP
<?php
|
|
|
|
namespace App\Http\Middleware;
|
|
|
|
use App\Models\User;
|
|
use Closure;
|
|
use Illuminate\Http\Request;
|
|
use Illuminate\Support\Facades\View;
|
|
use Symfony\Component\HttpFoundation\Response;
|
|
|
|
class SetActingAccount
|
|
{
|
|
public function handle(Request $request, Closure $next): Response
|
|
{
|
|
if ($user = $request->user()) {
|
|
if ($request->is('api/*')) {
|
|
$accountId = (int) ($request->header('X-Ladill-Account') ?: $user->id);
|
|
} else {
|
|
$accountId = (int) $request->session()->get('ladill_account', $user->id);
|
|
}
|
|
|
|
if (! $user->canAccessAccount($accountId)) {
|
|
$accountId = $user->id;
|
|
if (! $request->is('api/*')) {
|
|
$request->session()->put('ladill_account', $accountId);
|
|
}
|
|
}
|
|
|
|
$account = $accountId === $user->id ? $user : (User::find($accountId) ?? $user);
|
|
|
|
$request->attributes->set('actingAccount', $account);
|
|
|
|
if (! $request->is('api/*')) {
|
|
View::share('actingAccount', $account);
|
|
View::share('accessibleAccounts', $user->accessibleAccounts());
|
|
}
|
|
}
|
|
|
|
return $next($request);
|
|
}
|
|
}
|