server_controller.py 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331
  1. import re
  2. import uuid
  3. from datetime import timedelta
  4. from math import ceil, floor
  5. from passlib.hash import sha256_crypt
  6. import model
  7. import version
  8. from connection import check_missing_attributes, BadRequest, Forbidden, PreconditionFailed, NotFound
  9. from game import OWNABLE_NAME_PATTERN, BANK_NAME
  10. def login(json_request):
  11. check_missing_attributes(json_request, ['username', 'password'])
  12. username = json_request['username']
  13. password = json_request['password']
  14. session_id = model.login(username, password)
  15. if session_id:
  16. return {'session_id': session_id}
  17. else:
  18. return Forbidden('Invalid login data')
  19. def depot(json_request):
  20. check_missing_attributes(json_request, ['session_id'])
  21. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  22. return {'data': model.get_user_ownership(user_id),
  23. 'own_wealth': f'{model.user_wealth(user_id):.2f}',
  24. 'banking_license': model.user_has_banking_license(user_id)}
  25. def global_variables(_json_request):
  26. return model.global_control_values()
  27. def register(json_request):
  28. check_missing_attributes(json_request, ['username', 'password'])
  29. username = json_request['username'].strip()
  30. if username == '':
  31. return BadRequest('Username can not be empty.')
  32. if model.user_exists(username):
  33. return BadRequest('User already exists.')
  34. if model.register(username, json_request['password']):
  35. return {'message': "successfully registered user"}
  36. else:
  37. return BadRequest('Registration not successful')
  38. def order(json_request):
  39. check_missing_attributes(json_request, ['buy', 'session_id', 'amount', 'ownable', 'time_until_expiration'])
  40. if not model.ownable_name_exists(json_request['ownable']):
  41. return BadRequest('This kind of object can not be ordered.')
  42. buy = json_request['buy']
  43. sell = not buy
  44. if not isinstance(buy, bool):
  45. return BadRequest('`buy` must be a boolean')
  46. if 'ioc' in json_request:
  47. ioc = json_request['ioc']
  48. if not isinstance(ioc, bool):
  49. raise BadRequest('IOC must be a boolean.')
  50. else:
  51. ioc = False
  52. session_id = json_request['session_id']
  53. user_id = model.get_user_id_by_session_id(session_id)
  54. amount = json_request['amount']
  55. try:
  56. amount = float(amount) # so that something like 5e6 also works but only integers
  57. if amount != round(amount):
  58. raise ValueError
  59. amount = round(amount)
  60. except ValueError:
  61. return BadRequest('Invalid amount.')
  62. if amount < 0:
  63. return BadRequest('You can not order a negative amount.')
  64. if amount < 1:
  65. return BadRequest('The minimum order size is 1.')
  66. ownable_name = json_request['ownable']
  67. time_until_expiration = float(json_request['time_until_expiration'])
  68. if time_until_expiration < 0:
  69. return BadRequest('Invalid expiration time.')
  70. ownable_id = model.ownable_id_by_name(ownable_name)
  71. model.own(user_id, ownable_name)
  72. ownership_id = model.get_ownership_id(ownable_id, user_id)
  73. mro_id = model.mro_id()
  74. if ownable_id == mro_id and sell:
  75. raise Forbidden('You need to be a central bank to sell MROs.')
  76. if ownable_id == mro_id and buy and not model.user_has_banking_license(user_id):
  77. raise Forbidden('You need to be a bank to buy MROs.')
  78. try:
  79. if json_request['limit'] == '':
  80. limit = None
  81. elif json_request['limit'] is None:
  82. limit = None
  83. else:
  84. if buy:
  85. limit = floor(float(json_request['limit']) * 10000) / 10000
  86. else:
  87. limit = ceil(float(json_request['limit']) * 10000) / 10000
  88. except ValueError: # for example when float fails
  89. return BadRequest('Invalid limit.')
  90. except KeyError: # for example when limit was not specified
  91. limit = None
  92. if limit is not None and limit < 0:
  93. return BadRequest('Limit must not be negative.')
  94. if 'stop_loss' in json_request:
  95. if json_request['stop_loss'] == '':
  96. stop_loss = None
  97. elif json_request['stop_loss'] is None:
  98. stop_loss = None
  99. else:
  100. stop_loss = json_request['stop_loss']
  101. else:
  102. stop_loss = None
  103. if stop_loss and limit is None:
  104. return BadRequest('You need to specify a limit for stop-loss orders')
  105. if ioc and stop_loss:
  106. raise BadRequest('Stop loss orders can not be IOC orders.')
  107. if sell:
  108. if not model.user_has_at_least_available(amount, user_id, ownable_id):
  109. return BadRequest('You can not sell more than you own.')
  110. try:
  111. expiry = model.current_db_timestamp() + timedelta(minutes=time_until_expiration).total_seconds()
  112. except OverflowError:
  113. return BadRequest('The expiration time is too far in the future.')
  114. model.place_order(buy, ownership_id, limit, stop_loss, amount, expiry, ioc)
  115. return {'message': "Order placed."}
  116. def gift(json_request):
  117. check_missing_attributes(json_request, ['session_id', 'amount', 'object_name', 'username'])
  118. if not model.ownable_name_exists(json_request['object_name']):
  119. return BadRequest('This kind of object can not be given away.')
  120. if json_request['username'] == BANK_NAME or not model.user_exists(json_request['username']):
  121. return BadRequest('There is no user with this name.')
  122. try:
  123. amount = float(json_request['amount'])
  124. except ValueError:
  125. return BadRequest('Invalid amount.')
  126. ownable_id = model.ownable_id_by_name(json_request['object_name'])
  127. sender_id = model.get_user_id_by_session_id(json_request['session_id'])
  128. if model.available_amount(sender_id, ownable_id) == 0:
  129. return BadRequest('You do not own any of these.')
  130. if not model.user_has_at_least_available(amount, sender_id, ownable_id):
  131. # for example if you have a 1.23532143213 Kollar and want to give them all away
  132. amount = model.available_amount(sender_id, ownable_id)
  133. recipient_id = model.get_user_id_by_name(json_request['username'])
  134. model.send_ownable(sender_id,
  135. recipient_id,
  136. ownable_id,
  137. amount)
  138. return {'message': f"Sent {amount} {model.ownable_name_by_id(ownable_id)} to {model.user_name_by_id(recipient_id)}."}
  139. def orders(json_request):
  140. check_missing_attributes(json_request, ['session_id'])
  141. data = model.get_user_orders(model.get_user_id_by_session_id(json_request['session_id']))
  142. return {'data': data}
  143. def loans(json_request):
  144. check_missing_attributes(json_request, ['session_id'])
  145. data = model.get_user_loans(model.get_user_id_by_session_id(json_request['session_id']))
  146. return {'data': data}
  147. def bonds(_json_request):
  148. data = model.bonds()
  149. return {'data': data}
  150. def orders_on(json_request):
  151. check_missing_attributes(json_request, ['session_id', 'ownable'])
  152. if not model.ownable_name_exists(json_request['ownable']):
  153. return BadRequest('This kind of object can not be ordered.')
  154. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  155. ownable_id = model.ownable_id_by_name(json_request['ownable'])
  156. data = model.get_ownable_orders(user_id, ownable_id)
  157. return {'data': data}
  158. def old_orders(json_request):
  159. check_missing_attributes(json_request, ['session_id', 'include_canceled', 'include_executed', 'limit'])
  160. include_executed = json_request['include_executed']
  161. include_canceled = json_request['include_canceled']
  162. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  163. limit = json_request['limit']
  164. data = model.get_old_orders(user_id, include_executed, include_canceled, limit)
  165. return {'data': data}
  166. def cancel_order(json_request):
  167. check_missing_attributes(json_request, ['session_id', 'order_id'])
  168. if not model.user_has_order_with_id(json_request['session_id'], json_request['order_id']):
  169. return BadRequest('You do not have an order with that number.')
  170. model.delete_order(json_request['order_id'], 'Canceled')
  171. return {'message': "Successfully deleted order"}
  172. def change_password(json_request):
  173. check_missing_attributes(json_request, ['session_id', 'password'])
  174. salt = str(uuid.uuid4())
  175. hashed_password = sha256_crypt.encrypt(json_request['password'] + salt)
  176. model.change_password(json_request['session_id'], hashed_password, salt)
  177. model.sign_out_user(json_request['session_id'])
  178. return {'message': "Successfully changed password"}
  179. def logout(json_request):
  180. check_missing_attributes(json_request, ['session_id'])
  181. model.sign_out_user(json_request['session_id'])
  182. return {'message': "Successfully logged out"}
  183. def buy_banking_license(json_request):
  184. check_missing_attributes(json_request, ['session_id'])
  185. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  186. if model.user_has_banking_license(user_id):
  187. raise PreconditionFailed('You already have a banking license.')
  188. price = model.global_control_value('banking_license_price')
  189. if model.user_money(user_id) < price:
  190. raise PreconditionFailed('You do not have enough money.')
  191. model.send_ownable(user_id, model.bank_id(), model.currency_id(), price)
  192. model.assign_banking_licence(user_id)
  193. return {'message': "Successfully bought banking license"}
  194. def news(_json_request):
  195. return {'data': model.news()}
  196. def tradables(_json_request):
  197. return {'data': model.ownables()}
  198. def trades(json_request):
  199. check_missing_attributes(json_request, ['session_id', 'limit'])
  200. return {'data': model.trades(model.get_user_id_by_session_id(json_request['session_id']), json_request['limit'])}
  201. def trades_on(json_request):
  202. check_missing_attributes(json_request, ['session_id', 'ownable', 'limit'])
  203. if not model.ownable_name_exists(json_request['ownable']):
  204. return BadRequest('This kind of object can not have transactions.')
  205. return {'data': model.trades_on(model.ownable_id_by_name(json_request['ownable']), json_request['limit'])}
  206. def leaderboard(_json_request):
  207. return {'data': model.leaderboard()}
  208. def take_out_personal_loan(json_request):
  209. check_missing_attributes(json_request, ['session_id', 'amount', ])
  210. amount = json_request['amount']
  211. if not isinstance(amount, float) or amount <= 0:
  212. raise BadRequest('Amount must be a number larger than 0')
  213. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  214. model.take_out_personal_loan(user_id, amount)
  215. return {'message': "Successfully took out personal loan"}
  216. def issue_bond(json_request):
  217. check_missing_attributes(json_request, ['session_id', 'name', 'coupon', 'run_time'])
  218. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  219. coupon = json_request['coupon']
  220. try:
  221. coupon = float(coupon)
  222. except ValueError:
  223. raise BadRequest('Coupon must be a number.')
  224. ownable_name = json_request['name']
  225. if not re.fullmatch(OWNABLE_NAME_PATTERN, ownable_name):
  226. raise BadRequest('Invalid name.')
  227. run_time = json_request['run_time']
  228. try:
  229. run_time = int(run_time)
  230. except ValueError:
  231. raise BadRequest('Run-time must be a positive integer number.')
  232. if run_time < 0:
  233. raise BadRequest('Run-time must be a positive integer number.')
  234. maturity_dt = model.current_db_timestamp() + 60 * run_time
  235. model.issue_bond(user_id, ownable_name, coupon, maturity_dt)
  236. return {'message': "Successfully issued bond"}
  237. def repay_loan(json_request):
  238. check_missing_attributes(json_request, ['session_id', 'amount', 'loan_id'])
  239. amount = json_request['amount']
  240. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  241. loan_id = json_request['loan_id']
  242. if amount == 'all':
  243. amount = model.loan_remaining_amount(loan_id)
  244. if amount < 0:
  245. raise BadRequest('You can not repay negative amounts.')
  246. if model.user_money(user_id) < amount:
  247. raise PreconditionFailed('You do not have enough money.')
  248. if not model.loan_id_exists(loan_id) or model.loan_recipient_id(loan_id) != user_id:
  249. raise NotFound(f'You do not have a loan with that id.')
  250. loan_volume = model.loan_remaining_amount(loan_id)
  251. if loan_volume < amount:
  252. raise PreconditionFailed(f'You can not repay more than the remaining loan volume of {loan_volume}.')
  253. model.repay_loan(loan_id, amount, known_user_id=user_id)
  254. return {'message': "Successfully repayed loan"}
  255. def server_version(_json_request):
  256. return {'version': version.__version__}
  257. def _before_request(_json_request):
  258. # pay interest rates for loans
  259. model.pay_loan_interest()
  260. # pay interest rates for bonds
  261. model.pay_bond_interest()