server_controller.py 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383
  1. import re
  2. import uuid
  3. from datetime import timedelta
  4. from math import ceil, floor
  5. from passlib.hash import sha256_crypt
  6. import model
  7. import version
  8. from connection import check_missing_attributes, BadRequest, Forbidden, PreconditionFailed, NotFound
  9. from game import OWNABLE_NAME_PATTERN, BANK_NAME
  10. def login(json_request):
  11. check_missing_attributes(json_request, ['username', 'password'])
  12. username = json_request['username']
  13. password = json_request['password']
  14. session_id = model.login(username, password)
  15. if session_id:
  16. return {'session_id': session_id}
  17. else:
  18. return Forbidden('Invalid login data')
  19. def depot(json_request):
  20. check_missing_attributes(json_request, ['session_id'])
  21. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  22. return {'data': model.get_user_ownership(user_id),
  23. 'own_wealth': float(f'{model.user_wealth(user_id):.2f}'),
  24. 'minimum_reserve': model.required_minimum_reserve(user_id) if model.user_has_banking_license(user_id) else None,
  25. 'banking_license': model.user_has_banking_license(user_id)}
  26. def global_variables(_json_request):
  27. return model.global_control_values()
  28. def register(json_request):
  29. check_missing_attributes(json_request, ['username', 'password'])
  30. username = json_request['username'].strip()
  31. if username == '':
  32. return BadRequest('Username can not be empty.')
  33. if model.user_exists(username):
  34. return BadRequest('User already exists.')
  35. if model.register(username, json_request['password']):
  36. return {'message': "successfully registered user"}
  37. else:
  38. return BadRequest('Registration not successful')
  39. def order(json_request):
  40. check_missing_attributes(json_request, ['buy', 'session_id', 'amount', 'ownable', 'time_until_expiration'])
  41. if not model.ownable_name_exists(json_request['ownable']):
  42. return BadRequest('This kind of object can not be ordered.')
  43. buy = json_request['buy']
  44. sell = not buy
  45. if not isinstance(buy, bool):
  46. return BadRequest('`buy` must be a boolean')
  47. if 'ioc' in json_request:
  48. ioc = json_request['ioc']
  49. if not isinstance(ioc, bool):
  50. raise BadRequest('IOC must be a boolean.')
  51. else:
  52. ioc = False
  53. session_id = json_request['session_id']
  54. user_id = model.get_user_id_by_session_id(session_id)
  55. amount = json_request['amount']
  56. try:
  57. amount = float(amount) # so that something like 5e6 also works but only integers
  58. if amount != round(amount):
  59. raise ValueError
  60. amount = round(amount)
  61. except ValueError:
  62. return BadRequest('Invalid amount.')
  63. if amount < 0:
  64. return BadRequest('You can not order a negative amount.')
  65. if amount < 1:
  66. return BadRequest('The minimum order size is 1.')
  67. ownable_name = json_request['ownable']
  68. time_until_expiration = float(json_request['time_until_expiration'])
  69. if time_until_expiration < 0:
  70. return BadRequest('Invalid expiration time.')
  71. ownable_id = model.ownable_id_by_name(ownable_name)
  72. model.own(user_id, ownable_name)
  73. ownership_id = model.get_ownership_id(ownable_id, user_id)
  74. if 'limit' in json_request and 'stop_loss' not in json_request:
  75. raise BadRequest('Need to set stop_loss to either True or False for limit orders.')
  76. try:
  77. if json_request['limit'] == '':
  78. limit = None
  79. elif json_request['limit'] is None:
  80. limit = None
  81. else:
  82. if buy:
  83. limit = floor(float(json_request['limit']) * 10000) / 10000
  84. else:
  85. limit = ceil(float(json_request['limit']) * 10000) / 10000
  86. except ValueError: # for example when float fails
  87. return BadRequest('Invalid limit.')
  88. except KeyError: # for example when limit was not specified
  89. limit = None
  90. if limit is not None and limit < 0:
  91. return BadRequest('Limit must not be negative.')
  92. if 'stop_loss' in json_request:
  93. if json_request['stop_loss'] == '':
  94. stop_loss = None
  95. elif json_request['stop_loss'] is None:
  96. stop_loss = None
  97. else:
  98. stop_loss = json_request['stop_loss']
  99. else:
  100. stop_loss = None
  101. if stop_loss and limit is None:
  102. return BadRequest('You need to specify a limit for stop-loss orders')
  103. if ioc and stop_loss:
  104. raise BadRequest('Stop loss orders can not be IOC orders.')
  105. if sell:
  106. if not model.user_has_at_least_available(amount, user_id, ownable_id):
  107. return BadRequest('You can not sell more than you own (this also takes into account existing '
  108. 'sell orders and, if you are a bank, required minimum reserves at the ).')
  109. try:
  110. expiry = model.current_db_timestamp() + timedelta(minutes=time_until_expiration).total_seconds()
  111. except OverflowError:
  112. return BadRequest('The expiration time is too far in the future.')
  113. model.place_order(buy, ownership_id, limit, stop_loss, amount, expiry, ioc)
  114. return {'message': "Order placed."}
  115. def gift(json_request):
  116. check_missing_attributes(json_request, ['session_id', 'amount', 'object_name', 'username'])
  117. if not model.ownable_name_exists(json_request['object_name']):
  118. return BadRequest('This kind of object can not be given away.')
  119. if json_request['username'] == BANK_NAME or not model.user_exists(json_request['username']):
  120. return BadRequest('There is no user with this name.')
  121. try:
  122. amount = float(json_request['amount'])
  123. except ValueError:
  124. return BadRequest('Invalid amount.')
  125. ownable_id = model.ownable_id_by_name(json_request['object_name'])
  126. sender_id = model.get_user_id_by_session_id(json_request['session_id'])
  127. if model.user_available_ownable(sender_id, ownable_id) == 0:
  128. return BadRequest('You do not own any of these.')
  129. if not model.user_has_at_least_available(amount, sender_id, ownable_id):
  130. # for example if you have a 1.23532143213 Kollar and want to give them all away
  131. amount = model.user_available_ownable(sender_id, ownable_id)
  132. recipient_id = model.get_user_id_by_name(json_request['username'])
  133. model.send_ownable(sender_id,
  134. recipient_id,
  135. ownable_id,
  136. amount)
  137. return {'message': f"Sent {amount} {model.ownable_name_by_id(ownable_id)} to {model.user_name_by_id(recipient_id)}."}
  138. def orders(json_request):
  139. check_missing_attributes(json_request, ['session_id'])
  140. data = model.get_user_orders(model.get_user_id_by_session_id(json_request['session_id']))
  141. return {'data': data}
  142. def loans(json_request):
  143. check_missing_attributes(json_request, ['session_id'])
  144. data = model.get_user_loans(model.get_user_id_by_session_id(json_request['session_id']))
  145. return {'data': data}
  146. def credits(json_request):
  147. if 'issuer' in json_request:
  148. issuer_id = model.get_user_id_by_name(json_request['issuer'])
  149. else:
  150. issuer_id = None
  151. if 'only_next_mro_qualified' in json_request:
  152. only_next_mro_qualified = json_request['only_next_mro_qualified']
  153. if isinstance(only_next_mro_qualified, str):
  154. raise BadRequest
  155. else:
  156. only_next_mro_qualified = False
  157. data = model.credits(issuer_id, only_next_mro_qualified)
  158. return {'data': data}
  159. def orders_on(json_request):
  160. check_missing_attributes(json_request, ['session_id', 'ownable'])
  161. if not model.ownable_name_exists(json_request['ownable']):
  162. return BadRequest('This kind of object can not be ordered.')
  163. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  164. ownable_id = model.ownable_id_by_name(json_request['ownable'])
  165. data = model.get_ownable_orders(user_id, ownable_id)
  166. return {'data': data}
  167. def old_orders(json_request):
  168. check_missing_attributes(json_request, ['session_id', 'include_canceled', 'include_executed', 'limit'])
  169. include_executed = json_request['include_executed']
  170. include_canceled = json_request['include_canceled']
  171. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  172. limit = json_request['limit']
  173. data = model.get_old_orders(user_id, include_executed, include_canceled, limit)
  174. return {'data': data}
  175. def cancel_order(json_request):
  176. check_missing_attributes(json_request, ['session_id', 'order_id'])
  177. if not model.user_has_order_with_id(json_request['session_id'], json_request['order_id']):
  178. return BadRequest('You do not have an order with that number.')
  179. model.delete_order(json_request['order_id'], 'Canceled')
  180. return {'message': "Successfully deleted order"}
  181. def change_password(json_request):
  182. check_missing_attributes(json_request, ['session_id', 'password'])
  183. salt = str(uuid.uuid4())
  184. hashed_password = sha256_crypt.encrypt(json_request['password'] + salt)
  185. model.change_password(json_request['session_id'], hashed_password, salt)
  186. model.sign_out_user(json_request['session_id'])
  187. return {'message': "Successfully changed password"}
  188. def logout(json_request):
  189. check_missing_attributes(json_request, ['session_id'])
  190. model.sign_out_user(json_request['session_id'])
  191. return {'message': "Successfully logged out"}
  192. def buy_banking_license(json_request):
  193. check_missing_attributes(json_request, ['session_id'])
  194. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  195. if model.user_has_banking_license(user_id):
  196. raise PreconditionFailed('You already have a banking license.')
  197. price = model.global_control_value('banking_license_price')
  198. if model.user_available_money(user_id) < price:
  199. raise PreconditionFailed('You do not have enough money.')
  200. model.send_ownable(user_id, model.bank_id(), model.currency_id(), price)
  201. model.assign_banking_licence(user_id)
  202. return {'message': "Successfully bought banking license"}
  203. def news(_json_request):
  204. return {'data': model.news()}
  205. def tender_calendar(_json_request):
  206. return {'data': model.tender_calendar()}
  207. def tradables(_json_request):
  208. return {'data': model.ownables()}
  209. def trades(json_request):
  210. check_missing_attributes(json_request, ['session_id', 'limit'])
  211. return {'data': model.trades(model.get_user_id_by_session_id(json_request['session_id']), json_request['limit'])}
  212. def trades_on(json_request):
  213. check_missing_attributes(json_request, ['session_id', 'ownable', 'limit'])
  214. if not model.ownable_name_exists(json_request['ownable']):
  215. return BadRequest('This kind of object can not have transactions.')
  216. return {'data': model.trades_on(model.ownable_id_by_name(json_request['ownable']), json_request['limit'])}
  217. def leaderboard(_json_request):
  218. return {'data': model.leaderboard()}
  219. def take_out_personal_loan(json_request):
  220. check_missing_attributes(json_request, ['session_id', 'amount', ])
  221. amount = json_request['amount']
  222. if not isinstance(amount, float) or amount <= 0:
  223. raise BadRequest('Amount must be a number larger than 0')
  224. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  225. model.take_out_personal_loan(user_id, amount)
  226. return {'message': "Successfully took out personal loan"}
  227. def issue_bond(json_request):
  228. check_missing_attributes(json_request, ['session_id', 'name', 'coupon', 'run_time'])
  229. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  230. coupon = json_request['coupon']
  231. if coupon == 'next_mro':
  232. coupon = model.next_mro_interest()
  233. else:
  234. try:
  235. coupon = float(coupon)
  236. except ValueError:
  237. raise BadRequest('Coupon must be a number.')
  238. ownable_name = json_request['name']
  239. if not re.fullmatch(OWNABLE_NAME_PATTERN, ownable_name):
  240. raise BadRequest('Invalid name.')
  241. run_time = json_request['run_time']
  242. if run_time == 'next_mro':
  243. maturity_dt = model.next_mro_maturity()
  244. else:
  245. try:
  246. run_time = int(run_time)
  247. except ValueError:
  248. raise BadRequest('Run-time must be a positive integer number.')
  249. if run_time < 0:
  250. raise BadRequest('Run-time must be a positive integer number.')
  251. maturity_dt = model.current_db_timestamp() + 60 * run_time
  252. model.issue_bond(user_id, ownable_name, coupon, maturity_dt)
  253. return {'message': "Successfully issued bond"}
  254. def repay_loan(json_request):
  255. check_missing_attributes(json_request, ['session_id', 'amount', 'loan_id'])
  256. amount = json_request['amount']
  257. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  258. loan_id = json_request['loan_id']
  259. if not model.user_has_loan_with_id(user_id, loan_id, ):
  260. raise NotFound('Unknown loan ID.')
  261. if amount == 'all':
  262. amount = model.loan_remaining_amount(loan_id)
  263. if amount < 0:
  264. raise BadRequest('You can not repay negative amounts.')
  265. if model.user_available_money(user_id) < amount:
  266. if model.user_has_banking_license(user_id):
  267. raise PreconditionFailed('You do not have enough money. '
  268. 'If you are a bank this also takes into account the minimum reserve you need to keep at the central bank.')
  269. else:
  270. raise PreconditionFailed('You do not have enough money.')
  271. if not model.loan_id_exists(loan_id) or model.loan_recipient_id(loan_id) != user_id:
  272. raise NotFound(f'You do not have a loan with that id.')
  273. loan_volume = model.loan_remaining_amount(loan_id)
  274. if loan_volume < amount:
  275. raise PreconditionFailed(f'You can not repay more than the remaining loan volume of {loan_volume}.')
  276. model.repay_loan(loan_id, amount, known_user_id=user_id)
  277. return {'message': "Successfully repayed loan"}
  278. def server_version(_json_request):
  279. return {'version': version.__version__}
  280. def _before_request(_json_request):
  281. # update tender calendar
  282. model.update_tender_calendar()
  283. for mro_id, maturity_dt, min_interest, mro_dt in model.triggered_mros():
  284. assert maturity_dt > mro_dt
  285. # pay interest rates for loans until this mro
  286. model.pay_loan_interest(until=mro_dt)
  287. # pay interest rates for credits until this mro
  288. model.pay_bond_interest(until=mro_dt)
  289. # pay deposit facility for minimum reserves until this mro
  290. model.pay_deposit_facility(until=mro_dt)
  291. # handle MROs
  292. model.mro(mro_id, maturity_dt, min_interest)
  293. # pay interest rates for loans until current time
  294. model.pay_loan_interest()
  295. # pay interest rates for credits until current time
  296. model.pay_bond_interest()
  297. # pay deposit facility for minimum reserves until current time
  298. model.pay_deposit_facility()