* feat: add sandbox infrastructure — migration, types, and middleware Add database migration for sandbox support: - Add `is_sandbox` boolean column to company_settings - Update 4 enforcement trigger functions (journal entry immutability, journal entry line immutability, retention enforcement, document deletion blocking) to bypass checks for sandbox users - Add `cleanup_sandbox_user()` SECURITY DEFINER function that handles FK-safe deletion order (document_attachments → journal_entry_lines → journal_entries → supplier_invoices → auth.users cascade) - Add `cleanup_expired_sandbox_users()` function that loops over sandbox users older than N hours with per-user error handling Update TypeScript types: - Add `is_sandbox: boolean` to CompanySettings interface - Add `is_sandbox: false` to makeCompanySettings() test factory Update middleware: - Add `/sandbox` to public routes so the landing page is accessible without authentication Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com> * feat: add sandbox landing page, seed API, cleanup cron, and banner Sandbox landing page (app/sandbox/page.tsx): - Client component matching the existing auth page aesthetic - Auth check: if logged in as real user, shows message to use incognito - Otherwise shows feature overview (invoices, transactions, bookkeeping, reports) with "Starta sandbox" button - On click: signInAnonymously() → POST /api/sandbox/seed → redirect - Uses window.location.href for full page load (ensures middleware picks up new session cookies) Seed API (app/api/sandbox/seed/route.ts): - POST handler gated to anonymous users only (403 for real users) - Idempotent: returns { seeded: false } if company_settings exists - Seeds ~40 rows: profile, company_settings (is_sandbox: true, onboarding_complete: true), chart of accounts (via RPC), fiscal period, 3 customers (Swedish business, EU business, individual), 4 invoices (paid/sent/overdue/draft), 4 invoice items, 2 posted journal entries with 5 lines, 8 transactions (3 categorized, 2 income, 3 uncategorized), 2 deadlines - Journal entries inserted directly (not via engine) to avoid event emission, using next_voucher_number() RPC Cleanup cron (app/api/sandbox/cleanup/cron/route.ts): - GET handler with CRON_SECRET Bearer token auth - Creates service role Supabase client - Calls cleanup_expired_sandbox_users RPC (24h default) Sandbox banner (components/dashboard/SandboxBanner.tsx): - Amber bar with dismiss button (client state, reappears on reload) - Text: "Sandlådemiljö — dina data raderas automatiskt efter 24 timmar" - "Skapa konto" link to /register Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com> * feat: integrate sandbox into dashboard — banner, nav, settings safeguards Dashboard layout (app/(dashboard)/layout.tsx): - Fetch is_sandbox from company_settings - Render SandboxBanner at top of page for sandbox users - Pass isSandbox prop to DashboardNav - Hide RecaptIdentify analytics for sandbox users Root page (app/page.tsx): - Same sandbox banner and isSandbox prop treatment as dashboard layout (root page has its own layout, not wrapped by (dashboard)/layout) DashboardNav (components/dashboard/DashboardNav.tsx): - Add optional isSandbox prop - Change logout button text to "Avsluta sandbox" when isSandbox - Redirect to /sandbox instead of /login on logout for sandbox users - Applied to both desktop sidebar and mobile drawer logout buttons Settings page (app/(dashboard)/settings/page.tsx): - Hide "Bank (PSD2)" tab entirely for sandbox users — prevents connecting real bank accounts from a temporary anonymous session - Hide "Radera konto" card for sandbox users — account auto-deletes via cron, and the delete flow requires email confirmation Vercel config (vercel.json): - Add sandbox cleanup cron at 04:00 UTC daily (/api/sandbox/cleanup/cron) Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com> * fix: remove audit trigger for non-existent tax_codes table Migration 018 referenced public.tax_codes which was never created (migration 012 is a placeholder). This caused failures when running migrations from scratch on a fresh database. Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com> * fix: remove ALTER FUNCTION for 3 non-existent functions Removed search_path pinning for create_invoice_with_items, seed_asset_categories, and update_reconciliation_session_counts — none of these functions were ever created in any migration. Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com> * fix: remove ALTER for generate_invoice_number (created in later migration) The function is created in migration 20260306 with search_path already set, but migration 20260304 tried to ALTER it before it existed. Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com> * Fixed redirect issue * Update app/api/sandbox/seed/route.ts Co-authored-by: greptile-apps[bot] <165735046+greptile-apps[bot]@users.noreply.github.com> * Update app/api/sandbox/seed/route.ts Co-authored-by: greptile-apps[bot] <165735046+greptile-apps[bot]@users.noreply.github.com> * Update app/sandbox/page.tsx Co-authored-by: greptile-apps[bot] <165735046+greptile-apps[bot]@users.noreply.github.com> * Fixed catch block issue --------- Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com> Co-authored-by: greptile-apps[bot] <165735046+greptile-apps[bot]@users.noreply.github.com>
240 lines
7.8 KiB
TypeScript
240 lines
7.8 KiB
TypeScript
import { createClient } from '@/lib/supabase/server'
|
|
import { redirect } from 'next/navigation'
|
|
import DashboardNav from '@/components/dashboard/DashboardNav'
|
|
import DashboardContent from '@/components/dashboard/DashboardContent'
|
|
import { SandboxBanner } from '@/components/dashboard/SandboxBanner'
|
|
import type { Deadline, ReceiptQueueSummary } from '@/types'
|
|
|
|
export default async function RootPage() {
|
|
const supabase = await createClient()
|
|
|
|
const { data: { user } } = await supabase.auth.getUser()
|
|
|
|
if (!user) {
|
|
redirect('/login')
|
|
}
|
|
|
|
// Fetch company settings
|
|
const { data: settings } = await supabase
|
|
.from('company_settings')
|
|
.select('*')
|
|
.eq('user_id', user.id)
|
|
.single()
|
|
|
|
if (!settings?.onboarding_complete) {
|
|
redirect('/onboarding')
|
|
}
|
|
|
|
// Fetch current year transactions summary
|
|
const startOfYear = new Date(new Date().getFullYear(), 0, 1).toISOString()
|
|
const startOfMonth = new Date(new Date().getFullYear(), new Date().getMonth(), 1).toISOString()
|
|
|
|
const { data: transactions } = await supabase
|
|
.from('transactions')
|
|
.select('amount, amount_sek, is_business, category, date')
|
|
.eq('user_id', user.id)
|
|
.gte('date', startOfYear.split('T')[0])
|
|
|
|
// Calculate summaries
|
|
const ytdTransactions = transactions || []
|
|
const mtdTransactions = ytdTransactions.filter(
|
|
(t) => t.date >= startOfMonth.split('T')[0]
|
|
)
|
|
|
|
const calculateTotals = (txns: typeof ytdTransactions) => {
|
|
const income = txns
|
|
.filter((t) => t.is_business && t.amount > 0)
|
|
.reduce((sum, t) => sum + Number(t.amount_sek || t.amount), 0)
|
|
const expenses = txns
|
|
.filter((t) => t.is_business && t.amount < 0)
|
|
.reduce((sum, t) => sum + Math.abs(Number(t.amount_sek || t.amount)), 0)
|
|
return { income, expenses, net: income - expenses }
|
|
}
|
|
|
|
const ytdTotals = calculateTotals(ytdTransactions)
|
|
const mtdTotals = calculateTotals(mtdTransactions)
|
|
|
|
const uncategorizedTxns = (transactions || []).filter(
|
|
(t) => t.is_business === null
|
|
)
|
|
const uncategorizedCount = uncategorizedTxns.length
|
|
const uncategorizedIncome = uncategorizedTxns
|
|
.filter((t) => t.amount > 0)
|
|
.reduce((sum, t) => sum + Number(t.amount_sek || t.amount), 0)
|
|
const uncategorizedExpenses = uncategorizedTxns
|
|
.filter((t) => t.amount < 0)
|
|
.reduce((sum, t) => sum + Math.abs(Number(t.amount_sek || t.amount)), 0)
|
|
|
|
// Fetch unpaid invoices with VAT amounts
|
|
const { data: unpaidInvoices } = await supabase
|
|
.from('invoices')
|
|
.select('total, total_sek, vat_amount, vat_amount_sek, status')
|
|
.eq('user_id', user.id)
|
|
.in('status', ['sent', 'overdue'])
|
|
|
|
const unpaidTotal = (unpaidInvoices || []).reduce(
|
|
(sum, inv) => sum + Number(inv.total_sek || inv.total),
|
|
0
|
|
)
|
|
|
|
// Calculate VAT from unpaid invoices
|
|
const unpaidVatTotal = (unpaidInvoices || []).reduce(
|
|
(sum, inv) => sum + Number(inv.vat_amount_sek || inv.vat_amount || 0),
|
|
0
|
|
)
|
|
|
|
const overdueCount = (unpaidInvoices || []).filter(
|
|
(inv) => inv.status === 'overdue'
|
|
).length
|
|
|
|
// Fetch bank balance (if connected)
|
|
const { data: bankConnections } = await supabase
|
|
.from('bank_connections')
|
|
.select('accounts, status')
|
|
.eq('user_id', user.id)
|
|
.eq('status', 'active')
|
|
.limit(1)
|
|
|
|
let bankBalance: number | null = null
|
|
if (bankConnections && bankConnections.length > 0) {
|
|
const accounts = bankConnections[0].accounts as { balance: number }[] | null
|
|
if (accounts && accounts.length > 0) {
|
|
bankBalance = accounts.reduce((sum, acc) => sum + (acc.balance || 0), 0)
|
|
}
|
|
}
|
|
|
|
// Fetch upcoming deadlines (next 7 days + overdue)
|
|
const today = new Date().toISOString().split('T')[0]
|
|
const nextWeek = new Date(Date.now() + 7 * 24 * 60 * 60 * 1000).toISOString().split('T')[0]
|
|
|
|
const { data: deadlines } = await supabase
|
|
.from('deadlines')
|
|
.select('*, customer:customers(id, name)')
|
|
.eq('user_id', user.id)
|
|
.eq('is_completed', false)
|
|
.or(`due_date.lt.${today},due_date.lte.${nextWeek}`)
|
|
.order('due_date', { ascending: true })
|
|
|
|
// Fetch receipt queue summary
|
|
const { count: pendingReviewCount } = await supabase
|
|
.from('receipts')
|
|
.select('*', { count: 'exact', head: true })
|
|
.eq('user_id', user.id)
|
|
.eq('status', 'extracted')
|
|
|
|
const { count: unmatchedReceiptsCount } = await supabase
|
|
.from('receipts')
|
|
.select('*', { count: 'exact', head: true })
|
|
.eq('user_id', user.id)
|
|
.eq('status', 'confirmed')
|
|
.is('matched_transaction_id', null)
|
|
|
|
const { count: unmatchedTxCount } = await supabase
|
|
.from('transactions')
|
|
.select('*', { count: 'exact', head: true })
|
|
.eq('user_id', user.id)
|
|
.lt('amount', 0)
|
|
.is('receipt_id', null)
|
|
|
|
// Count journal entries missing underlag (documents)
|
|
const needsDocSourceTypes = [
|
|
'manual',
|
|
'bank_transaction',
|
|
'supplier_invoice_registered',
|
|
'supplier_invoice_paid',
|
|
'supplier_invoice_cash_payment',
|
|
'import',
|
|
]
|
|
|
|
const { count: postedEntriesCount } = await supabase
|
|
.from('journal_entries')
|
|
.select('*', { count: 'exact', head: true })
|
|
.eq('user_id', user.id)
|
|
.eq('status', 'posted')
|
|
.in('source_type', needsDocSourceTypes)
|
|
|
|
const { data: entriesWithDocs } = await supabase
|
|
.from('document_attachments')
|
|
.select('journal_entry_id')
|
|
.eq('user_id', user.id)
|
|
.eq('is_current_version', true)
|
|
.not('journal_entry_id', 'is', null)
|
|
|
|
const uniqueEntriesWithDocs = new Set(
|
|
(entriesWithDocs || []).map((d) => d.journal_entry_id)
|
|
).size
|
|
|
|
const missingUnderlagCount = Math.max(0, (postedEntriesCount || 0) - uniqueEntriesWithDocs)
|
|
|
|
// Calculate receipt streak
|
|
const { data: recentReceiptActivity } = await supabase
|
|
.from('receipts')
|
|
.select('created_at')
|
|
.eq('user_id', user.id)
|
|
.eq('status', 'confirmed')
|
|
.order('created_at', { ascending: false })
|
|
.limit(30)
|
|
|
|
let streakCount = 0
|
|
if (recentReceiptActivity && recentReceiptActivity.length > 0) {
|
|
const todayDate = new Date()
|
|
todayDate.setHours(0, 0, 0, 0)
|
|
|
|
const activityDates = new Set(
|
|
recentReceiptActivity.map((r) => new Date(r.created_at).toISOString().split('T')[0])
|
|
)
|
|
|
|
const checkDate = new Date(todayDate)
|
|
while (activityDates.has(checkDate.toISOString().split('T')[0])) {
|
|
streakCount++
|
|
checkDate.setDate(checkDate.getDate() - 1)
|
|
}
|
|
}
|
|
|
|
const receiptQueue: ReceiptQueueSummary = {
|
|
unmatched_receipts_count: unmatchedReceiptsCount || 0,
|
|
unmatched_transactions_count: unmatchedTxCount || 0,
|
|
pending_review_count: pendingReviewCount || 0,
|
|
streak_count: streakCount,
|
|
}
|
|
|
|
// Fetch enabled extension toggles
|
|
const { data: enabledToggles } = await supabase
|
|
.from('extension_toggles')
|
|
.select('sector_slug, extension_slug')
|
|
.eq('user_id', user.id)
|
|
.eq('enabled', true)
|
|
|
|
const isSandbox = settings.is_sandbox === true
|
|
|
|
return (
|
|
<div className="min-h-screen bg-background">
|
|
{isSandbox && <SandboxBanner />}
|
|
<DashboardNav companyName={settings.company_name || 'Min verksamhet'} entityType={settings.entity_type || 'enskild_firma'} isSandbox={isSandbox} />
|
|
<main className="pb-20 md:pb-0 md:pl-64">
|
|
<div className="container max-w-6xl mx-auto px-4 py-6">
|
|
<DashboardContent
|
|
settings={settings}
|
|
summary={{
|
|
ytd: ytdTotals,
|
|
mtd: mtdTotals,
|
|
uncategorizedCount,
|
|
uncategorizedIncome,
|
|
uncategorizedExpenses,
|
|
unpaidInvoicesCount: (unpaidInvoices || []).length,
|
|
unpaidInvoicesTotal: unpaidTotal,
|
|
unpaidVatTotal,
|
|
overdueInvoicesCount: overdueCount,
|
|
bankBalance,
|
|
deadlines: (deadlines || []) as Deadline[],
|
|
receiptQueue,
|
|
missingUnderlagCount,
|
|
}}
|
|
enabledExtensions={enabledToggles || []}
|
|
/>
|
|
</div>
|
|
</main>
|
|
</div>
|
|
)
|
|
}
|