(20250704) - Created Oauth Authentication for google places api with all files

This commit is contained in:
yatmesh
2025-07-04 17:34:01 +05:30
parent c0c5b8aa58
commit 5f493f0ba9
22 changed files with 2750 additions and 4 deletions
@@ -0,0 +1,281 @@
"""
AUTHOR:
Khushal P Soonderji
DATE:
Thursday, 16th Jan., 2025.
OBJECTIVE:
To receive callbacks (webhooks).
REFERENCES:
N/A
DOWNLOADS:
N/A
NOTES:
N/A
"""
# *****************************************************************************************************************
# ***** ****
# *** IMPORT ***
# ***** ****
# *****************************************************************************************************************
# To make sibling directories accessible for imports:
import sys
sys.path.append(".")
sys.path.append("..")
# For using Quart:
from quart import Blueprint, current_app, g, request, render_template
# My utils:
from utils_v2.string import json
from utils_v2.logging.context import AsyncLoggerContext
from utils_v2.api.codes import StatusCodes, HttpCodes
from utils_v2.api.response import ResponseModel
from utils_v2.api.async_quart import (
set_api_version,
read_input,
get_session_info,
log_request_to_mongo,
log_chain_to_mongo,
should_not_be_under_maintenance,
only_whitelisted_ips,
limit_rate,
validate_input,
handle_cancelled_request
)
# GMail-related utils:
from utils_v2.goog.controllers.gmail.gmail_client import SCOPES_GMAIL_MAIL_MANAGEMENT
# Data Models:
from models.core.auth_token import CoreAuthTokenModel
from models.software.places.oauth import OAuthPlacesHandleCallbackResponse
# Common:
from shared import constants
# For asynchronous activities:
import asyncio
# *****************************************************************************************************************
# ***** ****
# *** MACROS / ONE-TIME INIT ***
# ***** ****
# *****************************************************************************************************************
# Related to Quart:
places_oauth_callback_bp = Blueprint("places_cb", __name__)
# *****************************************************************************************************************
# ***** ****
# *** VARIABLES ***
# ***** ****
# *****************************************************************************************************************
# --- Nothing Yet
# *****************************************************************************************************************
# ***** ****
# *** FUNCTIONS ***
# ***** ****
# *****************************************************************************************************************
@places_oauth_callback_bp.record_once
def init(blueprint_setup_state):
# This gets called when the blueprint is registered.
# Consider this to be a one-time setup for the whole blueprint:
pass
# ---------------------------------------------------------------------------------------------------------------------
@AsyncLoggerContext.log_it(
api_version = "1.0.0",
project = constants.PROJECT_NAME,
log_type = constants.MODULE_NAME,
operation = "googleplacesOAuthClbk",
log_input = 2,
log_output = 1,
sensitive_keys = ["sessionToken", "X-Session-Token"]
)
async def handle_places_callback(
client_controller,
client_connector,
request_url: str,
inbound_data: dict,
) -> OAuthPlacesHandleCallbackResponse:
"""
This function has been kept separate only for convenience of logging.
:param client_controller: The mail controller instance.
:param client_connector: The instance of the third-party client to send to the mail controller.
:param request_url: The full request URL that came in.
:param inbound_data: The data received in the request.
:return: The client's response.
"""
return await client_controller.handle_authorization_callback(
sql_conn = current_app.sql_writer,
mongo_data_conn = current_app.data_mongo,
client = client_connector,
request_url = request_url,
inbound_data = inbound_data,
session_token = None
)
# ---------------------------------------------------------------------------------------------------------------------
@places_oauth_callback_bp.route("/callback/<places_client>", methods = ["POST", "GET"])
@set_api_version(api_version = "1.0.0")
@read_input(sanitize_headers = False, sanitize_data = False)
@log_request_to_mongo(
attr_name = "logs_mongo",
project = constants.PROJECT_NAME,
log_type = constants.MODULE_NAME,
operation = "googlePlacesOAuthClbkApi",
log_input = True,
log_output = True,
sensitive_keys = None
)
@log_chain_to_mongo(attr_name = "logs_mongo")
@should_not_be_under_maintenance(attr_name = "is_under_maintenance")
@handle_cancelled_request()
async def places_auth_callback(
places_client: str = None,
inbound_headers: dict = None,
inbound_data: dict = None,
inbound_files: dict = None,
**kwargs
):
"""
This is the callback received when authorizing someone's mail client.
:param places_client: The mail company/brand that you want the authorization from.
:param inbound_headers: auto-extracted by the decorators.
:param inbound_data: auto-extracted by the decorators.
:param inbound_files: auto-extracted by the decorators.
:param kwargs: Any number of extra inputs supplied by the decorators.
:return: A standard response structure.
"""
# ┳┓ ┳┳┓ •┓ ┏┓┓•
# ┣┫┏┓┓┏╋┏┓ ╋┏┓ ┃┃┃┏┓┓┃ ┃ ┃┓┏┓┏┓╋
# ┛┗┗┛┗┻┗┗ ┗┗┛ ┛ ┗┗┻┗┗ ┗┛┗┗┗ ┛┗┗
# Start by assuming failure:
client_controller = None
client_connector = None
client_response = None
exception = None
places_client = {
"googleplaces": "googlePlaces"
}.get(places_client.lower(), places_client)
# Figure out the client connector:
match places_client:
case "googlePlaces": client_controller, client_connector = current_app.places_controller, current_app.google_places_client
case _: client_controller, client_connector = None, None
# Invoke the mail client:
if client_controller is not None and client_connector is not None:
try: client_response = await handle_places_callback(
client_controller,
client_connector,
request_url = request.url,
inbound_data = inbound_data
)
except Exception as excp: exception = excp
# ┳┓
# ┣┫┏┓┏┏┓┏┓┏┓┏┏┓
# ┛┗┗ ┛┣┛┗┛┛┗┛┗
# ┛
# Make the mail client a label:
places_client = {
"googlePlaces": "Google Places"
}.get(places_client, places_client)
# If there was some exception:
if exception: return await render_template(
"/software/places/oauth/oauth_failure_v2.html",
client = places_client,
failure_hint = (
f"An internal server error occurred. "
f"Please use log-id '{kwargs.get('log_id')}' to check with the support team."
)
)
# For an invalid client:
if client_controller is None or client_connector is None:
return await render_template(
"/software/places/oauth/oauth_failure_v2.html",
client = places_client,
failure_hint = (
f"Invalid client '{places_client}' selected. "
f"Please use log-id '{kwargs.get('log_id')}' to check with the support team."
)
)
# For a valid client whose authorization was denied/cancelled:
if client_response.action in ["denied", "cancelled"]:
return await render_template(
"/software/places/oauth/oauth_cancelled_v2.html",
client = places_client
)
# For successful authorization:
if client_response.success:
return await render_template(
"/software/places/oauth/oauth_success_v2.html",
client = places_client
)
# For failed authorization:
return await render_template(
"/software/places/oauth/oauth_failure_v2.html",
client = places_client,
failure_hint = (
f"{client_response.message} "
f"Please use log-id '{kwargs.get('log_id')}' to check with the support team.".strip()
)
)
# *****************************************************************************************************************
# ***** ****
# *** MAIN PROGRAM ***
# ***** ****
# *****************************************************************************************************************
if __name__ == "__main__":
pass
+229
View File
@@ -0,0 +1,229 @@
"""
AUTHOR:
Khushal P Soonderji
DATE:
Thursday, 16th jan., 2025.
OBJECTIVE:
To receive authorization requests (OAuth2.0) for various mail providers and accordingly respond with the
authorization request URLs.
REFERENCES:
N/A
DOWNLOADS:
N/A
NOTES:
N/A
"""
# *****************************************************************************************************************
# ***** ****
# *** IMPORT ***
# ***** ****
# *****************************************************************************************************************
# To make sibling directories accessible for imports:
import sys
sys.path.append(".")
sys.path.append("..")
# For using Quart:
from quart import Blueprint, current_app, request
# My utils:
from utils_v2.string import json
from utils_v2.api.codes import StatusCodes, HttpCodes
from utils_v2.api.response import ResponseModel
from utils_v2.api.async_quart import (
set_api_version,
read_input,
get_session_info,
log_request_to_mongo,
log_chain_to_mongo,
should_not_be_under_maintenance,
only_whitelisted_ips,
limit_rate,
validate_input,
handle_cancelled_request
)
# GMail-related utils:
from utils_v2.goog.controllers.gmail.gmail_client import SCOPES_GMAIL_MAIL_MANAGEMENT
# Common:
from shared import constants
# Data Models:
from models.core.user import CoreUserInfoModel
from models.api.software.places.oauth import (
OAuthPlacesAuthorizationRequestHeaders,
OAuthPlacesAuthorizationRequestData
)
from models.core.auth_token import CoreAuthTokenModel
# For asynchronous activities:
import asyncio
# *****************************************************************************************************************
# ***** ****
# *** MACROS / ONE-TIME INIT ***
# ***** ****
# *****************************************************************************************************************
# Related to Quart:
places_oauth_request_bp = Blueprint("places_oauth", __name__)
# *****************************************************************************************************************
# ***** ****
# *** VARIABLES ***
# ***** ****
# *****************************************************************************************************************
# --- Nothing Yet
# *****************************************************************************************************************
# ***** ****
# *** FUNCTIONS ***
# ***** ****
# *****************************************************************************************************************
@places_oauth_request_bp.record_once
def init(blueprint_setup_state):
# This gets called when the blueprint is registered.
# Consider this to be a one-time setup for the whole blueprint:
pass
# ---------------------------------------------------------------------------------------------------------------------
@places_oauth_request_bp.route("/oauth", methods = ["GET"])
@set_api_version(api_version = "1.0.0")
@read_input(sanitize_headers = False, sanitize_data = False)
@get_session_info(key = "X-Session-Token", session_coro = "get_session")
@log_request_to_mongo(
attr_name = "logs_mongo",
project = constants.PROJECT_NAME,
log_type = constants.MODULE_NAME,
operation = "placesOAuthUrlReqApi",
log_input = True,
log_output = True,
sensitive_keys = ["sessionToken", "X-Session-Token"]
)
@log_chain_to_mongo(attr_name = "logs_mongo")
@should_not_be_under_maintenance(attr_name = "is_under_maintenance")
@validate_input(
header_validator = lambda x: OAuthPlacesAuthorizationRequestHeaders(**x).model_dump(),
data_validator = lambda x: OAuthPlacesAuthorizationRequestData(**x)
)
@handle_cancelled_request()
async def request_oauth_authorization_url(
inbound_headers: dict | OAuthPlacesAuthorizationRequestHeaders = None,
inbound_data: dict | OAuthPlacesAuthorizationRequestData = None,
inbound_files: dict = None,
**kwargs
):
"""
Use this when requesting access to someone's GMail account. This API should be used from the UI. A button click
"Connect to GMail" should hit this API, which will generate a request to gain access to the user's GMail account.
When the URL is hit, it opens Google's own UI, and, when the user clicks "Continue", Google hits your 'redirect_url'
to inform you about the user's action.
:param inbound_headers: auto-extracted by the decorators.
:param inbound_data: auto-extracted by the decorators.
:param inbound_files: auto-extracted by the decorators.
:param kwargs: Any number of extra inputs supplied by the decorators.
:return: A standard response structure.
"""
# ┏┓
# ┃┃┏┓┏┓┏┓┏┓┏┓┏┏┓┏┏
# ┣┛┛ ┗ ┣┛┛ ┗┛┗┗ ┛┛
# ┛
# If the session token is invalid/expired:
if kwargs.get("session_info") is None:
return ResponseModel(
status_code = StatusCodes.FAILED,
http_code = HttpCodes.UNAUTHORIZED
)
# ┳┓ ┳┳┓ •┓ ┏┓┓•
# ┣┫┏┓┓┏╋┏┓ ╋┏┓ ┃┃┃┏┓┓┃ ┃ ┃┓┏┓┏┓╋
# ┛┗┗┛┗┻┗┗ ┗┗┛ ┛ ┗┗┻┗┗ ┗┛┗┗┗ ┛┗┗
# Start by assuming failure:
client_controller = None
client_connector = None
client_response = None
# Figure out the client connector:
match inbound_data.client:
case "googlePlaces": client_controller, client_connector = current_app.places_controller, current_app.google_places_client
case _: client_controller, client_connector = None, None
# If a client connector was matched:
if client_controller is not None and client_connector is not None:
client_response = await client_controller.get_authorization_url(
sql_conn = current_app.sql_writer,
mongo_data_conn = current_app.data_mongo,
client = client_connector,
user_info = CoreUserInfoModel(**kwargs["session_info"]),
inbound_data = inbound_data,
session_token = inbound_headers["X-Session-Token"]
)
# ┳┓
# ┣┫┏┓┏┏┓┏┓┏┓┏┏┓
# ┛┗┗ ┛┣┛┗┛┛┗┛┗
# ┛
# Unknown client:
if client_controller is None or client_connector is None: return ResponseModel(
status_code = StatusCodes.FAILED,
http_code = HttpCodes.BAD_REQUEST,
message = f"Unknown/unimplemented client '{inbound_data.client}'."
)
# Known client (could be a success or a failure):
return ResponseModel(
status_code = StatusCodes.OK if client_response.success else StatusCodes.FAILED,
http_code = HttpCodes.SUCCESS if client_response.success else HttpCodes.INTERNAL_SERVER_ERROR,
message = client_response.message,
data = {
"client": inbound_data.client,
"authorizationUrl": client_response.url
} if client_response.success else None
)
# *****************************************************************************************************************
# ***** ****
# *** MAIN PROGRAM ***
# ***** ****
# *****************************************************************************************************************
if __name__ == "__main__":
pass
+26
View File
@@ -62,6 +62,9 @@ from utils_v2.api.async_quart import (
# GMail-related utils:
from utils_v2.goog.controllers.gmail.gmail_client import AsyncGmailClient
# Google Places Utils
from utils_v2.goog.controllers.places.places_client import AsyncPlacesClient
# Chat clients:
from utils_v2.whatsapp.nimbus.controllers.async_nimbus_whatsapp import AsyncNimbusWhatsapp
@@ -86,6 +89,7 @@ from controllers_v2.message.sms.savvy_bulk_sms_kenya import SavvyBulkSMSKenyaCon
# ---
from controllers_v2.message.mail.all_mail import AllMailController
from controllers_v2.message.mail.gmail import GmailController
from controllers_v2.software.google_places.google_places import PlacesController
# ---
from controllers_v2.message.chat.all_chat import AllChatController
from controllers_v2.message.chat.whatsapp_nimbus import WhatsAppNimbusController
@@ -136,6 +140,8 @@ from api.blueprints.message.chat.tags import chat_update_tags_bp
# Software Blueprints:
from api.blueprints.software.auth import sw_auth_bp
from api.blueprints.software.oauth.request_v2 import places_oauth_request_bp
from api.blueprints.software.oauth.callback_v2 import places_oauth_callback_bp
# Finstitutions / Payment Blueprints:
from api.blueprints.finstitutions.payments.auth_v2 import pg_auth_bp
@@ -216,6 +222,8 @@ app.register_blueprint(chat_update_tags_bp, url_prefix = f"/{MODULE_BASE}/chat")
# Software Blueprints:
app.register_blueprint(sw_auth_bp, url_prefix = f"/{MODULE_BASE}/software")
app.register_blueprint(places_oauth_request_bp, url_prefix = f"/{MODULE_BASE}/software")
app.register_blueprint(places_oauth_callback_bp, url_prefix = f"/{MODULE_BASE}/software")
# Finstitutions / Payment Blueprints:
app.register_blueprint(pg_auth_bp, url_prefix = f"/{MODULE_BASE}/finstitutions/payments")
@@ -519,6 +527,14 @@ async def app_startup(**kwargs):
)
current_app.printer("Message/Mail (C) ready.")
current_app.places_controller = PlacesController(
cache=current_app.module_cache,
http_client=current_app.http_client,
alert_url=current_app.script_data["alerts"]["url"],
debug=enable_debugging
)
current_app.printer("GooglePlaces (C) ready.")
# Messages / Chat Controllers:
current_app.chat_controller = AllChatController(
cache = current_app.module_cache,
@@ -635,6 +651,16 @@ async def app_startup(**kwargs):
debug_only_errors = False
)
current_app.google_places_client = AsyncPlacesClient(
service_name = "googlePlacesApi",
oauth_json = script_cred["google"]["oauth"]["places"],
http_client = current_app.http_client,
redirect_url = r"https://api.thecaoffice.com/converse/software/callback/googleplaces",
debug = enable_debugging,
debug_prefix = "Google Places (C) | ",
debug_only_errors = False
)
current_app.printer("Connectors and Clients ready.")
# ┏┓┳ ┳┳┓ •