-
-
Notifications
You must be signed in to change notification settings - Fork 12
Expand file tree
/
Copy pathproxy.ts
More file actions
73 lines (63 loc) · 1.99 KB
/
proxy.ts
File metadata and controls
73 lines (63 loc) · 1.99 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
import { createServerClient } from "@supabase/ssr";
import { NextResponse, type NextRequest } from "next/server";
export async function proxy(request: NextRequest) {
let supabaseResponse = NextResponse.next({ request });
// Support both NEXT_PUBLIC_ and non-prefixed env var names
const supabaseUrl =
process.env.NEXT_PUBLIC_SUPABASE_URL || process.env.SUPABASE_URL;
const supabaseAnonKey =
process.env.NEXT_PUBLIC_SUPABASE_ANON_KEY || process.env.SUPABASE_ANON_KEY;
if (!supabaseUrl || !supabaseAnonKey) {
// Auth not configured — block access to dashboard
const url = request.nextUrl.clone();
url.pathname = "/dashboard/login";
if (request.nextUrl.pathname !== "/dashboard/login") {
return NextResponse.redirect(url);
}
return supabaseResponse;
}
const supabase = createServerClient(supabaseUrl, supabaseAnonKey, {
cookies: {
getAll() {
return request.cookies.getAll();
},
setAll(cookiesToSet) {
cookiesToSet.forEach(({ name, value }) =>
request.cookies.set(name, value),
);
supabaseResponse = NextResponse.next({ request });
cookiesToSet.forEach(({ name, value, options }) =>
supabaseResponse.cookies.set(name, value, options),
);
},
},
});
const {
data: { user },
} = await supabase.auth.getUser();
const { pathname } = request.nextUrl;
// Allow login and auth callback pages without auth
if (
pathname === "/dashboard/login" ||
pathname.startsWith("/dashboard/auth/")
) {
// If already logged in, redirect to dashboard
if (user) {
const url = request.nextUrl.clone();
url.pathname = "/dashboard";
return NextResponse.redirect(url);
}
return supabaseResponse;
}
// Protect all other /dashboard routes
if (pathname.startsWith("/dashboard") && !user) {
const url = request.nextUrl.clone();
url.pathname = "/dashboard/login";
return NextResponse.redirect(url);
}
return supabaseResponse;
}
export const config = {
// ONLY match dashboard routes — never touch the main site
matcher: ["/dashboard/:path*"],
};