File: D:/HostingSpaces/farmfun/reserveren.farmfun.be/app/Komma/Reservations/ReservationPolicy.php
<?php
namespace App\Komma\Reservations;
use App\Komma\Base\Policy;
use App\Komma\Reservations\Models\Reservation;
use App\Komma\Users\Models\KmsUser;
use App\Komma\Users\Models\KmsUserRole;
final class ReservationPolicy extends Policy
{
protected $modelClassName = Reservation::class;
/**
* Determine if it is allowed to view all resources
*
* @param KmsUser|null $user
* @return bool
*/
public function index(KmsUser $user): bool
{
$result = $user->isAtLeast(KmsUserRole::Editor);
$this->debug('index', $result);
return $result;
}
/**
* Determine if it is allowed to view a specific resource
*
* @param KmsUser|null $user
* @return bool
*/
public function show(KmsUser $user, $modelToShow): bool
{
if ($user->role == KmsUserRole::Editor) { // Allows if the user has Editor role and the location is bind it
if ($user->location_id == $modelToShow->location_id) {
return true;
}
}
return parent::show($user, $modelToShow);
}
/**
* Determine if it is allowed show a form to edit a resource.
* This usually means that the user did view the model to be edited and got past
* the show authorisation. Then he edited a form to change the model and pressed
* save. After he pressed save he will trigger this edit authorisation
*
* @param KmsUser|null $user
* @return bool
*/
public function edit(KmsUser $user, $modelToEdit): bool
{
if ($user->role == KmsUserRole::Editor) { // Allows if the user has Editor role and the location is bind it
if ($user->location_id == $modelToEdit->location_id) {
return true;
}
}
return parent::edit($user, $modelToEdit);
}
}