• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

pulibrary / tigerdata-app / 8479a24a-e310-45e5-8d6b-ec6c71da8281

24 Nov 2025 02:38PM UTC coverage: 73.002% (-15.1%) from 88.064%
8479a24a-e310-45e5-8d6b-ec6c71da8281

Pull #2235

circleci

carolyncole
Do not redirect from home page when login is disabled
fixes #2188
Pull Request #2235: Do not redirect from home page when login is disabled

2 of 5 new or added lines in 2 files covered. (40.0%)

320 existing lines in 38 files now uncovered.

2320 of 3178 relevant lines covered (73.0%)

209.4 hits per line

Source File
Press 'n' to go to next uncovered line, 'b' for previous

86.3
/app/controllers/request_wizards_controller.rb
1
# frozen_string_literal: true
2
class RequestWizardsController < ApplicationController
1✔
3
  layout "wizard"
1✔
4
  before_action :set_breadcrumbs
1✔
5

6
  before_action :set_request_model, only: %i[save]
1✔
7
  before_action :exit_without_saving, only: %i[save]
1✔
8
  before_action :set_or_init_request_model, only: %i[show]
1✔
9
  before_action :check_access
1✔
10

11
  attr_reader :request_model
1✔
12

13
  # GET /request_wizards/1
14
  def show
1✔
15
    # show the current wizard step form
16
    render_current
45✔
17
  end
18

19
  # PUT /request_wizards/1/save
20
  def save
1✔
21
    # save and render dashboard
22
    save_request
34✔
23
    case params[:commit]
34✔
24
    when "Back"
25
      render_back
8✔
26
    when "Next", "Submit"
27
      render_next
18✔
28
    else
29
      if params[:commit].start_with?("http")
8✔
30
        # Go directly to the step the user clicked on
31
        redirect_to params[:commit]
5✔
32
      else
33
        redirect_to request_path(@request_model)
3✔
34
      end
35
    end
36
  end
37

38
  private
1✔
39

40
    def check_access
1✔
41
      return if user_eligible_to_modify_request?
79✔
42

43
      # request can not be modified by this user, redirect to dashboard
UNCOV
44
      error_message = "You do not have access to this page."
×
UNCOV
45
      flash[:notice] = error_message
×
UNCOV
46
      redirect_to dashboard_path
×
47
    end
48

49
    def exit_without_saving
1✔
50
      if params[:commit] == "Exit without Saving"
35✔
51
        if @request_model.nil?
1✔
52
          redirect_to dashboard_path
1✔
53
        else
54
          redirect_to request_path(@request_model)
×
55
        end
56
      end
57
    end
58

59
    def render_current
1✔
60
      raise "Must be implemented"
×
61
    end
62

63
    def render_next
1✔
64
      raise "Must be implemented"
×
65
    end
66

67
    def render_back
1✔
68
      raise "Must be implemented"
×
69
    end
70

71
    # Use callbacks to share common setup or constraints between actions.
72
    def set_request_model
1✔
73
      # do nothing if we are bailing out without creating a request2
74
      return if params[:request_id] == "0" && params[:commit] == "Exit without Saving"
35✔
75

76
      @request_model = if params[:request_id] == "0"
34✔
77
                         # on the first page with a brand new request that has not been created
78
                         req = Request.create(requested_by: current_user.uid)
10✔
79
                         update_sidebar_url(req)
10✔
80
                         req
10✔
81
                       else
82
                         # on a page when the request has already been created
83
                         Request.find(params[:request_id])
24✔
84
                       end
85
    end
86

87
    def update_sidebar_url(request_model)
1✔
88
      return unless params[:commit].start_with?("http")
10✔
89

90
      # take of the zero in the url and replace it with the real request id
91
      params[:commit] = "#{params[:commit][0..-2]}#{request_model.id}"
3✔
92
    end
93

94
    # set if id is present or initialize a blank request if not
95
    def set_or_init_request_model
1✔
96
      @princeton_departments = Affiliation.all
45✔
97
      @request_model = if params[:request_id].blank?
45✔
98
                         Request.new(id: 0, requested_by: current_user.uid)
14✔
99
                       else
100
                         Request.find(params[:request_id])
31✔
101
                       end
102
    end
103

104
    def save_request
1✔
105
      request_model.update(request_params)
34✔
106
    end
107

108
    # Only allow a list of trusted parameters through.
109
    def request_params
1✔
110
      request_params = params.fetch(:request, {}).permit(:request_title, :project_title, :state, :data_sponsor, :data_manager,
34✔
111
                                        :project_purpose, :description, :parent_folder, :project_folder, :project_id, :quota,
112
                                        :requested_by, :storage_size, :storage_unit, :number_of_files, :hpc, :smb, :globus, user_roles: [], departments: [])
113
      request_params[:storage_unit] ||= "TB"
34✔
114
      if request_params[:departments].present?
34✔
115
        request_params[:departments] = request_params[:departments].compact_blank.map { |dep_str| JSON.parse(dep_str) }
29✔
116
      end
117
      if request_params[:user_roles].present?
34✔
118
        request_params[:user_roles] = request_params[:user_roles].compact_blank.map do |role_str|
3✔
119
          json = JSON.parse(role_str)
4✔
120
          json["read_only"] = params[:request]["read_only_#{json['uid']}"] == "true"
4✔
121
          json
4✔
122
        end
123
      end
124
      request_params
34✔
125
    end
126

127
    def set_breadcrumbs
1✔
128
      add_breadcrumb("Dashboard", dashboard_path)
80✔
129
    end
130

131
    def user_eligible_to_modify_request?
1✔
132
      # elevated privs for the current user
133
      if current_user.sysadmin || (current_user.developer && !Rails.env.production?)
79✔
134
        true
57✔
135
      # current user is the requestor
136
      elsif (@request_model.requested_by == current_user.uid) && !@request_model.submitted?
22✔
137
        true
22✔
138
      # a brand new request
UNCOV
139
      elsif params[:request_id].blank?
×
140
        true
×
141
      # no access for any other reason
142
      else
UNCOV
143
        false
×
144
      end
145
    end
146
end
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2025 Coveralls, Inc