import { assertCustomerMatch, parseServiceAuth } from "@/lib/api/auth-context"; import { enforceRateLimits } from "@/lib/api/rate-limit"; import { fail, ok } from "@/lib/response"; import { AuthError } from "@/modules/auth/errors"; import { flockPricingOptionsSchema } from "@/modules/flock/pricing-options-validation"; import { submitFlockPricingOptions } from "@/modules/flock/pricing-options-service"; /** Flock 登录态:选档后拉取三档灵活性价(不结账) */ export async function POST(request: Request) { let auth; try { auth = await parseServiceAuth(request); } catch (error) { if (error instanceof AuthError) { return fail(error.code, error.message, error.httpStatus); } throw error; } const rateLimited = await enforceRateLimits(request, auth.customerId); if (rateLimited) return rateLimited; let body: unknown; try { body = await request.json(); } catch { return fail("VALIDATION_FAILED", "请求体格式无效", 400); } const parsed = flockPricingOptionsSchema.safeParse(body); if (!parsed.success) { return fail( "VALIDATION_FAILED", parsed.error.issues[0]?.message ?? "参数无效", 400, ); } try { assertCustomerMatch(auth, parsed.data.customer_id); const result = await submitFlockPricingOptions({ customerId: parsed.data.customer_id, quoteId: parsed.data.quote_id, preferredTier: parsed.data.preferred_tier, }); return ok(result); } catch (error) { if (error instanceof AuthError) { return fail(error.code, error.message, error.httpStatus); } const msg = error instanceof Error ? error.message : "拉取档内报价失败"; return fail("VALIDATION_FAILED", msg, 400); } }