240 lines
8.8 KiB
Python
240 lines
8.8 KiB
Python
"""
|
|
|
|
AUTHOR:
|
|
|
|
Khushal P Soonderji
|
|
|
|
DATE:
|
|
|
|
Saturday, 21st Dec., 2024
|
|
|
|
OBJECTIVE:
|
|
|
|
To receive authorization requests for various stockbrokers like Zerodha.
|
|
|
|
REFERENCES:
|
|
|
|
N/A
|
|
|
|
DOWNLOADS:
|
|
|
|
N/A
|
|
|
|
NOTES:
|
|
|
|
N/A
|
|
|
|
"""
|
|
|
|
|
|
# *****************************************************************************************************************
|
|
# ***** ****
|
|
# *** IMPORT ***
|
|
# ***** ****
|
|
# *****************************************************************************************************************
|
|
|
|
|
|
# To make sibling directories accessible for imports:
|
|
import sys
|
|
sys.path.append(".")
|
|
sys.path.append("..")
|
|
|
|
# For using Quart:
|
|
from quart import Blueprint, current_app, request
|
|
|
|
# My utils:
|
|
from utils_v2.string import json
|
|
from utils_v2.api.codes import StatusCodes, HttpCodes
|
|
from utils_v2.api.response import ResponseModel
|
|
from utils_v2.api.async_quart import (
|
|
set_api_version,
|
|
read_input,
|
|
get_session_info,
|
|
log_request_to_mongo,
|
|
log_chain_to_mongo,
|
|
should_not_be_under_maintenance,
|
|
only_whitelisted_ips,
|
|
limit_rate,
|
|
validate_input,
|
|
handle_cancelled_request
|
|
)
|
|
|
|
# GMail-related utils:
|
|
from utils_v2.goog.controllers.gmail.gmail_client import SCOPES_GMAIL_MAIL_MANAGEMENT
|
|
|
|
# Common:
|
|
from shared import constants
|
|
|
|
# Data Models:
|
|
from models.api.mail.oauth import (
|
|
OAuthMailAuthorizationRequestHeaders,
|
|
OAuthMailAuthorizationRequestData
|
|
)
|
|
from models.core.auth_token import CoreAuthTokenModel
|
|
|
|
# For asynchronous activities:
|
|
import asyncio
|
|
|
|
|
|
# *****************************************************************************************************************
|
|
# ***** ****
|
|
# *** MACROS / ONE-TIME INIT ***
|
|
# ***** ****
|
|
# *****************************************************************************************************************
|
|
|
|
|
|
# Related to Quart:
|
|
trading_oauth_request_bp = Blueprint("trading_oauth", __name__)
|
|
|
|
|
|
# *****************************************************************************************************************
|
|
# ***** ****
|
|
# *** VARIABLES ***
|
|
# ***** ****
|
|
# *****************************************************************************************************************
|
|
|
|
|
|
# --- Nothing Yet
|
|
|
|
|
|
# *****************************************************************************************************************
|
|
# ***** ****
|
|
# *** FUNCTIONS ***
|
|
# ***** ****
|
|
# *****************************************************************************************************************
|
|
|
|
|
|
@trading_oauth_request_bp.record_once
|
|
def init(blueprint_setup_state):
|
|
|
|
# This gets called when the blueprint is registered.
|
|
# Consider this to be a one-time setup for the whole blueprint:
|
|
pass
|
|
|
|
|
|
# ---------------------------------------------------------------------------------------------------------------------
|
|
|
|
|
|
@trading_oauth_request_bp.route("/oauth", methods = ["GET"])
|
|
@set_api_version(api_version = "1.0.0")
|
|
@read_input(sanitize_headers = False, sanitize_data = False)
|
|
@get_session_info(key = "X-Session-Token", session_coro = "get_session")
|
|
@log_request_to_mongo(
|
|
attr_name = "logs_mongo",
|
|
project = constants.PROJECT_NAME,
|
|
log_type = constants.MODULE_NAME,
|
|
operation = "tradingOAuthUrlReqApi",
|
|
log_input = True,
|
|
log_output = True,
|
|
sensitive_keys = ["sessionToken", "X-Session-Token"]
|
|
)
|
|
@log_chain_to_mongo(attr_name = "logs_mongo")
|
|
@should_not_be_under_maintenance(attr_name = "is_under_maintenance")
|
|
@validate_input(
|
|
header_validator = lambda x: OAuthMailAuthorizationRequestHeaders(**x).model_dump(),
|
|
data_validator = lambda x: OAuthMailAuthorizationRequestData(**x)
|
|
)
|
|
@handle_cancelled_request()
|
|
async def request_oauth_authorization_url(
|
|
inbound_headers: dict | OAuthMailAuthorizationRequestHeaders = None,
|
|
inbound_data: dict | OAuthMailAuthorizationRequestData = None,
|
|
inbound_files: dict = None,
|
|
**kwargs
|
|
):
|
|
|
|
"""
|
|
Use this when requesting access to someone's trading account (like Zerodha). We generate a URL here which must be
|
|
opened by the user (typically in a separate tab), and the user must then grant access to his account directly on the
|
|
broker's site. The broker will then hit you with a callback URL when the user approves the request.
|
|
:param inbound_headers: auto-extracted by the decorators.
|
|
:param inbound_data: auto-extracted by the decorators.
|
|
:param inbound_files: auto-extracted by the decorators.
|
|
:param kwargs: Any number of extra inputs supplied by the decorators.
|
|
:return: A standard response structure.
|
|
"""
|
|
|
|
# ┏┓
|
|
# ┃┃┏┓┏┓┏┓┏┓┏┓┏┏┓┏┏
|
|
# ┣┛┛ ┗ ┣┛┛ ┗┛┗┗ ┛┛
|
|
# ┛
|
|
|
|
# If the session token is invalid/expired:
|
|
if kwargs.get("session_info") is None:
|
|
return ResponseModel(
|
|
status_code = StatusCodes.FAILED,
|
|
http_code = HttpCodes.UNAUTHORIZED
|
|
)
|
|
|
|
# Start by assuming failure:
|
|
auth_url = None
|
|
|
|
# ┏┓ ┏┳┓ ┓ ┓┏┓
|
|
# ┃┓┏┓┏┓┏┓┏┓┏┓╋┏┓ ┃ ┏┓┃┏┏┓┏┓ ┃┫ ┏┓┓┏
|
|
# ┗┛┗ ┛┗┗ ┛ ┗┻┗┗ ┻ ┗┛┛┗┗ ┛┗ ┛┗┛┗ ┗┫
|
|
# ┛
|
|
|
|
# Make a user identifier from the session info:
|
|
token_key = await current_app.mail_controller.generate_token_key(
|
|
db_conn = current_app.sql_writer,
|
|
mongo_conn = current_app.data_mongo,
|
|
auth_token = CoreAuthTokenModel(
|
|
serviceType = "email",
|
|
client = inbound_data.mailClient,
|
|
authType = "oauth",
|
|
user = kwargs["session_info"],
|
|
clientUserId = {"email": inbound_data.mailId},
|
|
status = "pending",
|
|
syncFreq = inbound_data.syncFreq,
|
|
),
|
|
session_token = inbound_headers["X-Session-Token"]
|
|
)
|
|
if token_key is None:
|
|
return ResponseModel(
|
|
status_code = StatusCodes.FAILED,
|
|
http_code = HttpCodes.INTERNAL_SERVER_ERROR,
|
|
message = "Failed to generate token key."
|
|
)
|
|
|
|
# ┏┓ ┏┓┳┳┓ •┓
|
|
# ┣ ┏┓┏┓ ┃┓┃┃┃┏┓┓┃
|
|
# ┻ ┗┛┛ ┗┛┛ ┗┗┻┗┗
|
|
|
|
if inbound_data.mailClient == "gmail":
|
|
|
|
# Get the authorization URL:
|
|
auth_url = await current_app.gmail_client.get_authorization_url(
|
|
scopes = SCOPES_GMAIL_MAIL_MANAGEMENT,
|
|
state = str(token_key),
|
|
access_type = "offline",
|
|
approval_prompt = "force",
|
|
include_granted_scopes = "true",
|
|
user_email = inbound_data.mailId
|
|
)
|
|
|
|
# ┳┓
|
|
# ┣┫┏┓┏┏┓┏┓┏┓┏┏┓
|
|
# ┛┗┗ ┛┣┛┗┛┛┗┛┗
|
|
# ┛
|
|
|
|
# Done here:
|
|
return ResponseModel(
|
|
status_code = StatusCodes.OK if auth_url else StatusCodes.FAILED,
|
|
http_code = HttpCodes.SUCCESS if auth_url else HttpCodes.INTERNAL_SERVER_ERROR,
|
|
data = {
|
|
"client": inbound_data.mailClient,
|
|
"authorizationUrl": auth_url
|
|
}
|
|
)
|
|
|
|
|
|
# *****************************************************************************************************************
|
|
# ***** ****
|
|
# *** MAIN PROGRAM ***
|
|
# ***** ****
|
|
# *****************************************************************************************************************
|
|
|
|
|
|
if __name__ == "__main__":
|
|
|
|
pass
|