server_controller.py 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373
  1. import re
  2. import uuid
  3. from datetime import timedelta
  4. from math import ceil, floor
  5. from passlib.hash import sha256_crypt
  6. import model
  7. import version
  8. from connection import check_missing_attributes, BadRequest, Forbidden, PreconditionFailed, NotFound
  9. from game import OWNABLE_NAME_PATTERN, BANK_NAME
  10. def login(json_request):
  11. check_missing_attributes(json_request, ['username', 'password'])
  12. username = json_request['username']
  13. password = json_request['password']
  14. session_id = model.login(username, password)
  15. if session_id:
  16. return {'session_id': session_id}
  17. else:
  18. return Forbidden('Invalid login data')
  19. def depot(json_request):
  20. check_missing_attributes(json_request, ['session_id'])
  21. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  22. return {'data': model.get_user_ownership(user_id),
  23. 'own_wealth': f'{model.user_wealth(user_id):.2f}',
  24. 'minimum_reserve': model.required_minimum_reserve(user_id) if model.user_has_banking_license(user_id) else None,
  25. 'banking_license': model.user_has_banking_license(user_id)}
  26. def global_variables(_json_request):
  27. return model.global_control_values()
  28. def register(json_request):
  29. check_missing_attributes(json_request, ['username', 'password'])
  30. username = json_request['username'].strip()
  31. if username == '':
  32. return BadRequest('Username can not be empty.')
  33. if model.user_exists(username):
  34. return BadRequest('User already exists.')
  35. if model.register(username, json_request['password']):
  36. return {'message': "successfully registered user"}
  37. else:
  38. return BadRequest('Registration not successful')
  39. def order(json_request):
  40. check_missing_attributes(json_request, ['buy', 'session_id', 'amount', 'ownable', 'time_until_expiration'])
  41. if not model.ownable_name_exists(json_request['ownable']):
  42. return BadRequest('This kind of object can not be ordered.')
  43. buy = json_request['buy']
  44. sell = not buy
  45. if not isinstance(buy, bool):
  46. return BadRequest('`buy` must be a boolean')
  47. if 'ioc' in json_request:
  48. ioc = json_request['ioc']
  49. if not isinstance(ioc, bool):
  50. raise BadRequest('IOC must be a boolean.')
  51. else:
  52. ioc = False
  53. session_id = json_request['session_id']
  54. user_id = model.get_user_id_by_session_id(session_id)
  55. amount = json_request['amount']
  56. try:
  57. amount = float(amount) # so that something like 5e6 also works but only integers
  58. if amount != round(amount):
  59. raise ValueError
  60. amount = round(amount)
  61. except ValueError:
  62. return BadRequest('Invalid amount.')
  63. if amount < 0:
  64. return BadRequest('You can not order a negative amount.')
  65. if amount < 1:
  66. return BadRequest('The minimum order size is 1.')
  67. ownable_name = json_request['ownable']
  68. time_until_expiration = float(json_request['time_until_expiration'])
  69. if time_until_expiration < 0:
  70. return BadRequest('Invalid expiration time.')
  71. ownable_id = model.ownable_id_by_name(ownable_name)
  72. model.own(user_id, ownable_name)
  73. ownership_id = model.get_ownership_id(ownable_id, user_id)
  74. try:
  75. if json_request['limit'] == '':
  76. limit = None
  77. elif json_request['limit'] is None:
  78. limit = None
  79. else:
  80. if buy:
  81. limit = floor(float(json_request['limit']) * 10000) / 10000
  82. else:
  83. limit = ceil(float(json_request['limit']) * 10000) / 10000
  84. except ValueError: # for example when float fails
  85. return BadRequest('Invalid limit.')
  86. except KeyError: # for example when limit was not specified
  87. limit = None
  88. if limit is not None and limit < 0:
  89. return BadRequest('Limit must not be negative.')
  90. if 'stop_loss' in json_request:
  91. if json_request['stop_loss'] == '':
  92. stop_loss = None
  93. elif json_request['stop_loss'] is None:
  94. stop_loss = None
  95. else:
  96. stop_loss = json_request['stop_loss']
  97. else:
  98. stop_loss = None
  99. if stop_loss and limit is None:
  100. return BadRequest('You need to specify a limit for stop-loss orders')
  101. if ioc and stop_loss:
  102. raise BadRequest('Stop loss orders can not be IOC orders.')
  103. if sell:
  104. if not model.user_has_at_least_available(amount, user_id, ownable_id):
  105. return BadRequest('You can not sell more than you own (this also takes into account existing sell orders and, if you are a bank, required minimum reserves at the ).')
  106. try:
  107. expiry = model.current_db_timestamp() + timedelta(minutes=time_until_expiration).total_seconds()
  108. except OverflowError:
  109. return BadRequest('The expiration time is too far in the future.')
  110. model.place_order(buy, ownership_id, limit, stop_loss, amount, expiry, ioc)
  111. return {'message': "Order placed."}
  112. def gift(json_request):
  113. check_missing_attributes(json_request, ['session_id', 'amount', 'object_name', 'username'])
  114. if not model.ownable_name_exists(json_request['object_name']):
  115. return BadRequest('This kind of object can not be given away.')
  116. if json_request['username'] == BANK_NAME or not model.user_exists(json_request['username']):
  117. return BadRequest('There is no user with this name.')
  118. try:
  119. amount = float(json_request['amount'])
  120. except ValueError:
  121. return BadRequest('Invalid amount.')
  122. ownable_id = model.ownable_id_by_name(json_request['object_name'])
  123. sender_id = model.get_user_id_by_session_id(json_request['session_id'])
  124. if model.user_available_ownable(sender_id, ownable_id) == 0:
  125. return BadRequest('You do not own any of these.')
  126. if not model.user_has_at_least_available(amount, sender_id, ownable_id):
  127. # for example if you have a 1.23532143213 Kollar and want to give them all away
  128. amount = model.user_available_ownable(sender_id, ownable_id)
  129. recipient_id = model.get_user_id_by_name(json_request['username'])
  130. model.send_ownable(sender_id,
  131. recipient_id,
  132. ownable_id,
  133. amount)
  134. return {'message': f"Sent {amount} {model.ownable_name_by_id(ownable_id)} to {model.user_name_by_id(recipient_id)}."}
  135. def orders(json_request):
  136. check_missing_attributes(json_request, ['session_id'])
  137. data = model.get_user_orders(model.get_user_id_by_session_id(json_request['session_id']))
  138. return {'data': data}
  139. def loans(json_request):
  140. check_missing_attributes(json_request, ['session_id'])
  141. data = model.get_user_loans(model.get_user_id_by_session_id(json_request['session_id']))
  142. return {'data': data}
  143. def credits(json_request):
  144. if 'issuer' in json_request:
  145. issuer_id = model.get_user_id_by_name(json_request['issuer'])
  146. else:
  147. issuer_id = None
  148. if 'only_next_mro_qualified' in json_request:
  149. only_next_mro_qualified = json_request['only_next_mro_qualified']
  150. if isinstance(only_next_mro_qualified, str):
  151. raise BadRequest
  152. else:
  153. only_next_mro_qualified = False
  154. data = model.credits(issuer_id, only_next_mro_qualified)
  155. return {'data': data}
  156. def orders_on(json_request):
  157. check_missing_attributes(json_request, ['session_id', 'ownable'])
  158. if not model.ownable_name_exists(json_request['ownable']):
  159. return BadRequest('This kind of object can not be ordered.')
  160. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  161. ownable_id = model.ownable_id_by_name(json_request['ownable'])
  162. data = model.get_ownable_orders(user_id, ownable_id)
  163. return {'data': data}
  164. def old_orders(json_request):
  165. check_missing_attributes(json_request, ['session_id', 'include_canceled', 'include_executed', 'limit'])
  166. include_executed = json_request['include_executed']
  167. include_canceled = json_request['include_canceled']
  168. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  169. limit = json_request['limit']
  170. data = model.get_old_orders(user_id, include_executed, include_canceled, limit)
  171. return {'data': data}
  172. def cancel_order(json_request):
  173. check_missing_attributes(json_request, ['session_id', 'order_id'])
  174. if not model.user_has_order_with_id(json_request['session_id'], json_request['order_id']):
  175. return BadRequest('You do not have an order with that number.')
  176. model.delete_order(json_request['order_id'], 'Canceled')
  177. return {'message': "Successfully deleted order"}
  178. def change_password(json_request):
  179. check_missing_attributes(json_request, ['session_id', 'password'])
  180. salt = str(uuid.uuid4())
  181. hashed_password = sha256_crypt.encrypt(json_request['password'] + salt)
  182. model.change_password(json_request['session_id'], hashed_password, salt)
  183. model.sign_out_user(json_request['session_id'])
  184. return {'message': "Successfully changed password"}
  185. def logout(json_request):
  186. check_missing_attributes(json_request, ['session_id'])
  187. model.sign_out_user(json_request['session_id'])
  188. return {'message': "Successfully logged out"}
  189. def buy_banking_license(json_request):
  190. check_missing_attributes(json_request, ['session_id'])
  191. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  192. if model.user_has_banking_license(user_id):
  193. raise PreconditionFailed('You already have a banking license.')
  194. price = model.global_control_value('banking_license_price')
  195. if model.user_available_money(user_id) < price:
  196. raise PreconditionFailed('You do not have enough money.')
  197. model.send_ownable(user_id, model.bank_id(), model.currency_id(), price)
  198. model.assign_banking_licence(user_id)
  199. return {'message': "Successfully bought banking license"}
  200. def news(_json_request):
  201. return {'data': model.news()}
  202. def tender_calendar(_json_request):
  203. return {'data': model.tender_calendar()}
  204. def tradables(_json_request):
  205. return {'data': model.ownables()}
  206. def trades(json_request):
  207. check_missing_attributes(json_request, ['session_id', 'limit'])
  208. return {'data': model.trades(model.get_user_id_by_session_id(json_request['session_id']), json_request['limit'])}
  209. def trades_on(json_request):
  210. check_missing_attributes(json_request, ['session_id', 'ownable', 'limit'])
  211. if not model.ownable_name_exists(json_request['ownable']):
  212. return BadRequest('This kind of object can not have transactions.')
  213. return {'data': model.trades_on(model.ownable_id_by_name(json_request['ownable']), json_request['limit'])}
  214. def leaderboard(_json_request):
  215. return {'data': model.leaderboard()}
  216. def take_out_personal_loan(json_request):
  217. check_missing_attributes(json_request, ['session_id', 'amount', ])
  218. amount = json_request['amount']
  219. if not isinstance(amount, float) or amount <= 0:
  220. raise BadRequest('Amount must be a number larger than 0')
  221. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  222. model.take_out_personal_loan(user_id, amount)
  223. return {'message': "Successfully took out personal loan"}
  224. def issue_bond(json_request):
  225. check_missing_attributes(json_request, ['session_id', 'name', 'coupon', 'run_time'])
  226. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  227. coupon = json_request['coupon']
  228. if coupon == 'next_mro':
  229. coupon = model.next_mro_interest()
  230. else:
  231. try:
  232. coupon = float(coupon)
  233. except ValueError:
  234. raise BadRequest('Coupon must be a number.')
  235. ownable_name = json_request['name']
  236. if not re.fullmatch(OWNABLE_NAME_PATTERN, ownable_name):
  237. raise BadRequest('Invalid name.')
  238. run_time = json_request['run_time']
  239. if run_time == 'next_mro':
  240. maturity_dt = model.next_mro_dt()
  241. else:
  242. try:
  243. run_time = int(run_time)
  244. except ValueError:
  245. raise BadRequest('Run-time must be a positive integer number.')
  246. if run_time < 0:
  247. raise BadRequest('Run-time must be a positive integer number.')
  248. maturity_dt = model.current_db_timestamp() + 60 * run_time
  249. model.issue_bond(user_id, ownable_name, coupon, maturity_dt)
  250. return {'message': "Successfully issued bond"}
  251. def repay_loan(json_request):
  252. check_missing_attributes(json_request, ['session_id', 'amount', 'loan_id'])
  253. amount = json_request['amount']
  254. user_id = model.get_user_id_by_session_id(json_request['session_id'])
  255. loan_id = json_request['loan_id']
  256. if amount == 'all':
  257. amount = model.loan_remaining_amount(loan_id)
  258. if amount < 0:
  259. raise BadRequest('You can not repay negative amounts.')
  260. if model.user_available_money(user_id) < amount:
  261. if model.user_has_banking_license(user_id):
  262. raise PreconditionFailed('You do not have enough money. '
  263. 'If you are a bank this also takes into account the minimum reserve you need to keep at the central bank.')
  264. else:
  265. raise PreconditionFailed('You do not have enough money.')
  266. if not model.loan_id_exists(loan_id) or model.loan_recipient_id(loan_id) != user_id:
  267. raise NotFound(f'You do not have a loan with that id.')
  268. loan_volume = model.loan_remaining_amount(loan_id)
  269. if loan_volume < amount:
  270. raise PreconditionFailed(f'You can not repay more than the remaining loan volume of {loan_volume}.')
  271. model.repay_loan(loan_id, amount, known_user_id=user_id)
  272. return {'message': "Successfully repayed loan"}
  273. def server_version(_json_request):
  274. return {'version': version.__version__}
  275. def _before_request(_json_request):
  276. # update tender calendar
  277. model.update_tender_calendar()
  278. for mro_id, expiry, min_interest, mro_dt in model.triggered_mros():
  279. # pay interest rates for loans until this mro
  280. model.pay_loan_interest(until=mro_dt)
  281. # pay interest rates for credits until this mro
  282. model.pay_bond_interest(until=mro_dt)
  283. # pay deposit facility for minimum reserves until this mro
  284. model.pay_deposit_facility(until=mro_dt)
  285. # handle MROs
  286. model.mro(mro_id, expiry, min_interest)
  287. # pay interest rates for loans until current time
  288. model.pay_loan_interest()
  289. # pay interest rates for credits until current time
  290. model.pay_bond_interest()
  291. # pay deposit facility for minimum reserves until current time
  292. model.pay_deposit_facility()