Sha256: aa9ce53a65a2da53e3d3a9e811261fb323cc6799b265388a763ac9fa1c4dc164

Contents?: true

Size: 1.3 KB

Versions: 14

Compression:

Stored size: 1.3 KB

Contents

module Spree
  module Admin
    class SearchController < Spree::Admin::BaseController
      # http://spreecommerce.com/blog/2010/11/02/json-hijacking-vulnerability/
      before_action :check_json_authenticity, only: :index
      respond_to :json

      # TODO: Clean this up by moving searching out to user_class_extensions
      # And then JSON building with something like Active Model Serializers
      def users
        if params[:ids]
          @users = Spree.user_class.where(:id => params[:ids].split(','))
        else
          @users = Spree.user_class.ransack({
            :m => 'or',
            :email_start => params[:q],
            :ship_address_firstname_start => params[:q],
            :ship_address_lastname_start => params[:q],
            :bill_address_firstname_start => params[:q],
            :bill_address_lastname_start => params[:q]
          }).result.limit(10)
        end
      end

      def products
        if params[:ids]
          @products = Product.where(:id => params[:ids].split(","))
        else
          @products = Product.ransack(params[:q]).result
        end

        @products = @products.distinct.page(params[:page]).per(params[:per_page])
        expires_in 15.minutes, :public => true
        headers['Surrogate-Control'] = "max-age=#{15.minutes}"
      end
    end
  end
end

Version data entries

14 entries across 14 versions & 2 rubygems

Version Path
solidus_backend-1.0.7 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.6 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.5 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.4 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.3 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.2 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.1 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.0 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.0.rc2 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.0.rc1 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.0.pre3 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.0.pre2 app/controllers/spree/admin/search_controller.rb
solidus_backend-1.0.0.pre app/controllers/spree/admin/search_controller.rb
spree_backend-3.0.0.rc1 app/controllers/spree/admin/search_controller.rb