import { assertCustomerMatch, parseServiceAuth } from "@/lib/api/auth-context"; import { enforceRateLimits } from "@/lib/api/rate-limit"; import { fail, ok } from "@/lib/response"; import { AuthError } from "@/modules/auth/errors"; import { msRefineDeclineSchema } from "@/modules/mothership/refine-validation"; import { declineMsRefineHold } from "@/modules/mothership/refine-service"; /** 不继续填写二级 / 60s 决策超时 → 释放驻留 */ export async function POST(request: Request) { let auth; try { auth = await parseServiceAuth(request); } catch (error) { if (error instanceof AuthError) { return fail(error.code, error.message, error.httpStatus); } throw error; } const rateLimited = await enforceRateLimits(request, auth.customerId); if (rateLimited) return rateLimited; let body: unknown; try { body = await request.json(); } catch { return fail("VALIDATION_FAILED", "请求体格式无效", 400); } const parsed = msRefineDeclineSchema.safeParse(body); if (!parsed.success) { return fail( "VALIDATION_FAILED", parsed.error.issues[0]?.message ?? "参数无效", 400, ); } try { assertCustomerMatch(auth, parsed.data.customer_id); const result = await declineMsRefineHold({ customerId: parsed.data.customer_id, quoteId: parsed.data.quote_id, sessionId: parsed.data.quote_session_id, }); return ok(result); } catch (error) { if (error instanceof AuthError) { return fail(error.code, error.message, error.httpStatus); } const msg = error instanceof Error ? error.message : "释放失败"; return fail("VALIDATION_FAILED", msg, 400); } }