Compare commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
22a4a32dca | ||
|
|
6f7a9b2b60 |
@@ -0,0 +1,6 @@
|
||||
.git
|
||||
.gitignore
|
||||
.dockerignore
|
||||
.env
|
||||
.env.example
|
||||
*.md
|
||||
@@ -0,0 +1,15 @@
|
||||
# Copia este archivo a .env y rellena los valores reales:
|
||||
# cp .env.example .env
|
||||
# .env está en .gitignore: nunca se sube al repositorio.
|
||||
|
||||
# Token de API (admin) de EasyAppointments.
|
||||
# Créalo en el panel de EA → Settings → API.
|
||||
# IMPORTANTE: si reutilizas un token que estuvo en git, ROTALO primero.
|
||||
EA_API_KEY=changeme-token-de-easyappointments
|
||||
|
||||
# Contraseña de MySQL (usuario root, usado por EasyAppointments).
|
||||
# Usa una cadena larga y aleatoria.
|
||||
MYSQL_ROOT_PASSWORD=changeme-contrasena-fuerte
|
||||
|
||||
# URL pública del panel de EasyAppointments (cámbiala en producción).
|
||||
EA_BASE_URL=http://localhost:8888
|
||||
@@ -0,0 +1,8 @@
|
||||
# Secretos locales (usar .env.example como plantilla)
|
||||
.env
|
||||
|
||||
# Binario compilado
|
||||
/server
|
||||
|
||||
# Runbook con secretos a purgar (NO commitear)
|
||||
SIGUIENTES-PASOS.md
|
||||
@@ -1,6 +1,6 @@
|
||||
# May Hair Care — Landing Page + EasyAppointments
|
||||
# MAY Studio — Landing Page + EasyAppointments
|
||||
|
||||
Landing page bonita para May HairCare (Horta, Barcelona) con reservas gestionadas por **EasyAppointments**.
|
||||
Landing page bonita para MAY Studio (Horta, Barcelona) con reservas gestionadas por **EasyAppointments**.
|
||||
|
||||
El frontend (HTML/JS puro) sigue siendo el de la landing, pero **las reservas, clientes y servicios se gestionan completamente con EasyAppointments**.
|
||||
|
||||
@@ -13,7 +13,16 @@ El frontend (HTML/JS puro) sigue siendo el de la landing, pero **las reservas, c
|
||||
|
||||
## Cómo ejecutar (Desarrollo y Producción)
|
||||
|
||||
### 1. Levantar todo
|
||||
### 1. Configurar secretos
|
||||
|
||||
```sh
|
||||
cp .env.example .env
|
||||
# Edita .env: pon tu EA_API_KEY y una MYSQL_ROOT_PASSWORD fuerte.
|
||||
```
|
||||
|
||||
`.env` está en `.gitignore` y nunca se sube al repositorio.
|
||||
|
||||
### 2. Levantar todo
|
||||
|
||||
```sh
|
||||
docker compose up -d --build
|
||||
@@ -22,7 +31,7 @@ docker compose up -d --build
|
||||
- Landing + reservas: **http://localhost:8234**
|
||||
- Panel de administración EasyAppointments: **http://localhost:8888**
|
||||
|
||||
### 2. Primer arranque (importante)
|
||||
### 3. Primer arranque (importante)
|
||||
|
||||
1. Abre http://localhost:8888
|
||||
2. Completa el asistente de instalación de EasyAppointments.
|
||||
@@ -33,13 +42,11 @@ docker compose up -d --build
|
||||
7. Configura el **Working Plan** del proveedor (horario).
|
||||
8. **Anota el ID del Provider** (normalmente 1) y edita `static/index.html` → línea `const PROVIDER_ID = 1;`
|
||||
|
||||
### 3. Variables importantes en compose
|
||||
### Variables (en `.env`)
|
||||
|
||||
Edita `docker-compose.yml` antes de levantar:
|
||||
|
||||
- `EA_API_USERNAME` + `EA_API_PASSWORD` (o mejor: configura **API Key** en Settings de EA y usa `EA_API_KEY`)
|
||||
- `BASE_URL` del servicio `easyappointments`
|
||||
- Contraseña de MySQL
|
||||
- `EA_API_KEY` — token de API de EasyAppointments (Settings → API en el panel).
|
||||
- `MYSQL_ROOT_PASSWORD` — contraseña de la base de datos.
|
||||
- `EA_BASE_URL` — URL pública del panel de EA (cámbiala en producción).
|
||||
|
||||
### Actualizar
|
||||
|
||||
@@ -50,12 +57,27 @@ docker compose up -d --build
|
||||
|
||||
## Notas sobre la integración
|
||||
|
||||
- Los servicios y la disponibilidad los obtiene el frontend directamente de la API de EasyAppointments.
|
||||
- Al reservar:
|
||||
- Busca o crea automáticamente el cliente usando el **email**.
|
||||
- Crea la cita en EasyAppointments (con todos los servicios seleccionados en las notas).
|
||||
**EasyAppointments es la única fuente de verdad.** El servidor Go no guarda nada:
|
||||
ni clientes, ni citas, ni servicios. Todo se lee y se escribe contra la API de EA.
|
||||
|
||||
- Los servicios y la disponibilidad los lee el frontend de EA (a través del proxy de solo lectura).
|
||||
- Al reservar, el navegador envía la selección a `POST /api/book` y **el servidor**:
|
||||
- lee los servicios de EA (fuente de verdad de nombre y duración),
|
||||
- busca o crea el cliente por **email**,
|
||||
- crea **una** cita con el servicio de mayor duración y el bloque total en las notas.
|
||||
- La gestión completa (clientes, servicios, citas, proveedores, etc.) se hace desde http://localhost:8888
|
||||
- La API antigua (carpeta `api/` + admin.html antigua + services.yml/mail.yml) ha sido eliminada completamente.
|
||||
|
||||
## Seguridad del proxy
|
||||
|
||||
El servidor Go **no** expone la API de EasyAppointments tal cual:
|
||||
|
||||
- El proxy `/ea-api/` solo deja pasar **lecturas no sensibles** (categorías, servicios,
|
||||
proveedor, disponibilidad), añadiendo la auth admin en el servidor. La lista blanca
|
||||
está en `main.go` (`eaAllowedRoutes`); cualquier otra ruta/método recibe `404`
|
||||
**antes** de inyectar credenciales.
|
||||
- Las **escrituras y la búsqueda de clientes** no pasan por el proxy: se orquestan
|
||||
server-side en `POST /api/book`. Así el navegador nunca puede listar/borrar/modificar
|
||||
clientes ni citas, ni volcar datos personales de EA.
|
||||
|
||||
## Comportamiento multiservicio
|
||||
|
||||
@@ -64,11 +86,13 @@ El formulario permite seleccionar **varios servicios** (multi-checkbox).
|
||||
Cómo funciona actualmente con EasyAppointments:
|
||||
|
||||
- **UI**: Puedes seleccionar múltiples servicios. Se muestra el resumen con nombres unidos por "+" y la duración total sumada.
|
||||
- **Comprobación de disponibilidad**: Se consulta el endpoint de EA usando el servicio de **mayor duración** de los seleccionados. EA devuelve los slots libres según ese servicio + el horario del proveedor.
|
||||
- **Comprobación de disponibilidad**: Se consulta el endpoint de EA usando el servicio de **mayor duración** de los seleccionados. Luego se filtra client-side para exigir un bloque contiguo de la **duración total** (suma de todos).
|
||||
- Ejemplo: servicios de 45min + 30min → total 75 min. Solo se ofrecen horas de inicio desde las que quepan 75 min seguidos sin solape.
|
||||
- **Al crear la reserva**:
|
||||
- Se crea **una sola cita** en EasyAppointments.
|
||||
- Se usa como `serviceId` el servicio de mayor duración (para que coincida con la disponibilidad consultada).
|
||||
- Se calcula la hora de fin sumando la **duración total** de todos los servicios seleccionados.
|
||||
- Se calcula la hora de fin sumando la **duración total** de todos los servicios seleccionados y se envía explícitamente el campo `end`. Así EA bloquea el tiempo completo en el calendario de la empleada.
|
||||
- Solo una empleada (May) por ahora → el bloque queda reservado y no se puede reservar otra cosa en ese intervalo.
|
||||
- En el campo `notes` se guarda el detalle completo:
|
||||
```
|
||||
Nombre: ...
|
||||
|
||||
@@ -6,9 +6,8 @@ services:
|
||||
ports:
|
||||
- "8234:8080"
|
||||
environment:
|
||||
- EA_API_USERNAME=admin # Usuario admin de EA (o mejor usa EA_API_KEY)
|
||||
- EA_API_PASSWORD=yourpassword
|
||||
# - EA_API_KEY=tu-api-key # Recomendado: crea API Key en Settings de EA
|
||||
# Token de API de EasyAppointments. Definido en .env (ver .env.example).
|
||||
- EA_API_KEY=${EA_API_KEY}
|
||||
depends_on:
|
||||
- easyappointments
|
||||
|
||||
@@ -20,22 +19,29 @@ services:
|
||||
ports:
|
||||
- "8888:80" # Panel admin: http://localhost:8888
|
||||
depends_on:
|
||||
- mysql
|
||||
mysql:
|
||||
condition: service_healthy
|
||||
environment:
|
||||
- BASE_URL=http://localhost:8888 # Cambia en producción
|
||||
- BASE_URL=${EA_BASE_URL:-http://localhost:8888}
|
||||
- DEBUG_MODE=FALSE
|
||||
- DB_HOST=mysql
|
||||
- DB_NAME=easyappointments
|
||||
- DB_USERNAME=root
|
||||
- DB_PASSWORD=secret # Cambia por contraseña fuerte
|
||||
- DB_PASSWORD=${MYSQL_ROOT_PASSWORD}
|
||||
|
||||
mysql:
|
||||
image: mysql:8.0
|
||||
container_name: may-ea-mysql
|
||||
restart: unless-stopped
|
||||
environment:
|
||||
- MYSQL_ROOT_PASSWORD=secret
|
||||
- MYSQL_ROOT_PASSWORD=${MYSQL_ROOT_PASSWORD}
|
||||
- MYSQL_DATABASE=easyappointments
|
||||
healthcheck:
|
||||
# EA solo arranca bien si MySQL ya está listo (no solo "iniciado").
|
||||
test: ["CMD-SHELL", "mysqladmin ping -h 127.0.0.1 -u root -p\"$$MYSQL_ROOT_PASSWORD\" --silent"]
|
||||
interval: 10s
|
||||
timeout: 5s
|
||||
retries: 10
|
||||
volumes:
|
||||
- ea-mysql-data:/var/lib/mysql
|
||||
|
||||
|
||||
@@ -1,21 +1,355 @@
|
||||
package main
|
||||
|
||||
import (
|
||||
"bytes"
|
||||
"embed"
|
||||
"encoding/json"
|
||||
"flag"
|
||||
"fmt"
|
||||
"io"
|
||||
"io/fs"
|
||||
"log"
|
||||
"net/http"
|
||||
"net/http/httputil"
|
||||
"net/url"
|
||||
"os"
|
||||
"regexp"
|
||||
"strconv"
|
||||
"strings"
|
||||
"time"
|
||||
)
|
||||
|
||||
//go:embed all:static
|
||||
var static embed.FS
|
||||
|
||||
// Endpoints de EasyAppointments de SOLO LECTURA y no sensibles que el frontend
|
||||
// puede consultar a través del proxy. Las escrituras (crear cliente y cita) y la
|
||||
// búsqueda de clientes NO están aquí: se orquestan server-side en /api/book, de
|
||||
// modo que el navegador nunca puede listar/borrar/modificar datos de EA.
|
||||
var eaAllowedRoutes = []struct {
|
||||
method string
|
||||
path *regexp.Regexp
|
||||
}{
|
||||
{http.MethodGet, regexp.MustCompile(`^/ea-api/v1/categories/?$`)},
|
||||
{http.MethodGet, regexp.MustCompile(`^/ea-api/v1/service_categories/?$`)},
|
||||
{http.MethodGet, regexp.MustCompile(`^/ea-api/v1/services/?$`)},
|
||||
{http.MethodGet, regexp.MustCompile(`^/ea-api/v1/availabilities/?$`)},
|
||||
{http.MethodGet, regexp.MustCompile(`^/ea-api/v1/providers/\d+/?$`)},
|
||||
}
|
||||
|
||||
func eaRouteAllowed(method, path string) bool {
|
||||
for _, route := range eaAllowedRoutes {
|
||||
if route.method == method && route.path.MatchString(path) {
|
||||
return true
|
||||
}
|
||||
}
|
||||
return false
|
||||
}
|
||||
|
||||
func writeJSONError(w http.ResponseWriter, status int, code string) {
|
||||
w.Header().Set("Content-Type", "application/json")
|
||||
w.WriteHeader(status)
|
||||
fmt.Fprintf(w, `{"error": %q}`, code)
|
||||
}
|
||||
|
||||
// flexInt acepta enteros que llegan como número JSON o como string ("30", 30,
|
||||
// 30.0). La API de EasyAppointments mezcla ambos formatos según el campo.
|
||||
type flexInt int
|
||||
|
||||
func (f *flexInt) UnmarshalJSON(b []byte) error {
|
||||
s := strings.Trim(string(b), `"`)
|
||||
if s == "" || s == "null" {
|
||||
*f = 0
|
||||
return nil
|
||||
}
|
||||
if n, err := strconv.Atoi(s); err == nil {
|
||||
*f = flexInt(n)
|
||||
return nil
|
||||
}
|
||||
ff, err := strconv.ParseFloat(s, 64)
|
||||
if err != nil {
|
||||
return fmt.Errorf("flexInt: valor no numérico %q", s)
|
||||
}
|
||||
*f = flexInt(ff)
|
||||
return nil
|
||||
}
|
||||
|
||||
// eaClient hace las llamadas server-side a EasyAppointments con las credenciales
|
||||
// admin. EasyAppointments es la ÚNICA fuente de verdad: este servidor no almacena
|
||||
// clientes ni citas, solo orquesta llamadas a su API REST.
|
||||
type eaClient struct {
|
||||
base string
|
||||
apiKey string
|
||||
user string
|
||||
pass string
|
||||
http *http.Client
|
||||
}
|
||||
|
||||
func newEAClient() *eaClient {
|
||||
base := "http://easyappointments:80"
|
||||
if t := os.Getenv("EA_TARGET"); t != "" {
|
||||
base = t
|
||||
}
|
||||
return &eaClient{
|
||||
base: strings.TrimRight(base, "/"),
|
||||
apiKey: os.Getenv("EA_API_KEY"),
|
||||
user: os.Getenv("EA_API_USERNAME"),
|
||||
pass: os.Getenv("EA_API_PASSWORD"),
|
||||
http: &http.Client{Timeout: 15 * time.Second},
|
||||
}
|
||||
}
|
||||
|
||||
func (c *eaClient) auth(req *http.Request) {
|
||||
if c.apiKey != "" {
|
||||
req.Header.Set("Authorization", "Bearer "+c.apiKey)
|
||||
} else if c.user != "" && c.pass != "" {
|
||||
req.SetBasicAuth(c.user, c.pass)
|
||||
}
|
||||
}
|
||||
|
||||
// do llama a la API v1 de EA y decodifica la respuesta JSON en out (si no es nil).
|
||||
// Devuelve error si el status no es 2xx.
|
||||
func (c *eaClient) do(method, path string, body, out interface{}) error {
|
||||
var reader io.Reader
|
||||
if body != nil {
|
||||
buf, err := json.Marshal(body)
|
||||
if err != nil {
|
||||
return err
|
||||
}
|
||||
reader = bytes.NewReader(buf)
|
||||
}
|
||||
req, err := http.NewRequest(method, c.base+"/index.php/api/v1"+path, reader)
|
||||
if err != nil {
|
||||
return err
|
||||
}
|
||||
if body != nil {
|
||||
req.Header.Set("Content-Type", "application/json")
|
||||
}
|
||||
c.auth(req)
|
||||
|
||||
resp, err := c.http.Do(req)
|
||||
if err != nil {
|
||||
return err
|
||||
}
|
||||
defer resp.Body.Close()
|
||||
|
||||
if resp.StatusCode < 200 || resp.StatusCode >= 300 {
|
||||
snippet, _ := io.ReadAll(io.LimitReader(resp.Body, 512))
|
||||
return fmt.Errorf("EA %s %s -> %d: %s", method, path, resp.StatusCode, strings.TrimSpace(string(snippet)))
|
||||
}
|
||||
if out != nil {
|
||||
return json.NewDecoder(resp.Body).Decode(out)
|
||||
}
|
||||
return nil
|
||||
}
|
||||
|
||||
// ---- Tipos de EA usados en la orquestación ----
|
||||
|
||||
type eaService struct {
|
||||
ID flexInt `json:"id"`
|
||||
Name string `json:"name"`
|
||||
Duration flexInt `json:"duration"`
|
||||
}
|
||||
|
||||
type eaCustomer struct {
|
||||
ID flexInt `json:"id,omitempty"`
|
||||
FirstName string `json:"firstName"`
|
||||
LastName string `json:"lastName"`
|
||||
Email string `json:"email"`
|
||||
Phone string `json:"phone"`
|
||||
Notes string `json:"notes"`
|
||||
}
|
||||
|
||||
type eaAppointment struct {
|
||||
Start string `json:"start"`
|
||||
End string `json:"end"`
|
||||
ServiceID int `json:"serviceId"`
|
||||
ProviderID int `json:"providerId"`
|
||||
CustomerID int `json:"customerId"`
|
||||
Notes string `json:"notes"`
|
||||
Status string `json:"status"`
|
||||
}
|
||||
|
||||
// ---- Petición de reserva desde el navegador ----
|
||||
|
||||
type bookRequest struct {
|
||||
Nombre string `json:"nombre"`
|
||||
Email string `json:"email"`
|
||||
Telefono string `json:"telefono"`
|
||||
Mensaje string `json:"mensaje"`
|
||||
ProviderID int `json:"providerId"`
|
||||
ServiceIDs []int `json:"serviceIds"`
|
||||
Date string `json:"date"` // YYYY-MM-DD
|
||||
Time string `json:"time"` // HH:MM
|
||||
}
|
||||
|
||||
var (
|
||||
reDate = regexp.MustCompile(`^\d{4}-\d{2}-\d{2}$`)
|
||||
reTime = regexp.MustCompile(`^\d{2}:\d{2}$`)
|
||||
)
|
||||
|
||||
// handleBook orquesta la reserva contra EasyAppointments:
|
||||
// 1. valida la entrada,
|
||||
// 2. lee los servicios de EA (fuente de verdad de nombre/duración),
|
||||
// 3. busca o crea el cliente por email,
|
||||
// 4. crea UNA cita con el servicio de mayor duración y el bloque total en notas.
|
||||
func handleBook(ea *eaClient) http.HandlerFunc {
|
||||
return func(w http.ResponseWriter, r *http.Request) {
|
||||
if r.Method != http.MethodPost {
|
||||
writeJSONError(w, http.StatusMethodNotAllowed, "method_not_allowed")
|
||||
return
|
||||
}
|
||||
|
||||
var req bookRequest
|
||||
if err := json.NewDecoder(io.LimitReader(r.Body, 1<<16)).Decode(&req); err != nil {
|
||||
writeJSONError(w, http.StatusBadRequest, "invalid_json")
|
||||
return
|
||||
}
|
||||
req.Nombre = strings.TrimSpace(req.Nombre)
|
||||
req.Email = strings.TrimSpace(req.Email)
|
||||
req.Telefono = strings.TrimSpace(req.Telefono)
|
||||
req.Mensaje = strings.TrimSpace(req.Mensaje)
|
||||
|
||||
if req.Nombre == "" || req.Email == "" || req.Telefono == "" ||
|
||||
len(req.ServiceIDs) == 0 || req.ProviderID <= 0 ||
|
||||
!reDate.MatchString(req.Date) || !reTime.MatchString(req.Time) {
|
||||
writeJSONError(w, http.StatusBadRequest, "datos_incompletos")
|
||||
return
|
||||
}
|
||||
|
||||
// 2. Servicios desde EA: no confiamos en nombres/duraciones del cliente.
|
||||
var services []eaService
|
||||
if err := ea.do(http.MethodGet, "/services", nil, &services); err != nil {
|
||||
log.Printf("book: error leyendo servicios: %v", err)
|
||||
writeJSONError(w, http.StatusBadGateway, "servicios_no_disponibles")
|
||||
return
|
||||
}
|
||||
byID := make(map[int]eaService, len(services))
|
||||
for _, s := range services {
|
||||
byID[int(s.ID)] = s
|
||||
}
|
||||
|
||||
var (
|
||||
chosen []eaService
|
||||
total int
|
||||
primary eaService
|
||||
maxDur = -1
|
||||
)
|
||||
for _, id := range req.ServiceIDs {
|
||||
s, ok := byID[id]
|
||||
if !ok {
|
||||
writeJSONError(w, http.StatusBadRequest, "servicio_invalido")
|
||||
return
|
||||
}
|
||||
dur := int(s.Duration)
|
||||
if dur <= 0 {
|
||||
dur = 30
|
||||
}
|
||||
total += dur
|
||||
chosen = append(chosen, s)
|
||||
if dur > maxDur {
|
||||
maxDur = dur
|
||||
primary = s
|
||||
}
|
||||
}
|
||||
|
||||
// 3. start/end calculados a partir de la duración total REAL de EA.
|
||||
start, err := time.Parse("2006-01-02 15:04", req.Date+" "+req.Time)
|
||||
if err != nil {
|
||||
writeJSONError(w, http.StatusBadRequest, "fecha_invalida")
|
||||
return
|
||||
}
|
||||
const layout = "2006-01-02 15:04:05"
|
||||
end := start.Add(time.Duration(total) * time.Minute)
|
||||
|
||||
// 4. notas con el detalle completo (multiservicio).
|
||||
names := make([]string, len(chosen))
|
||||
for i, s := range chosen {
|
||||
names[i] = s.Name
|
||||
}
|
||||
notesLines := []string{
|
||||
"Nombre: " + req.Nombre,
|
||||
"Email: " + req.Email,
|
||||
"Teléfono: " + req.Telefono,
|
||||
"Servicios: " + strings.Join(names, " + "),
|
||||
fmt.Sprintf("Duración total: %d min", total),
|
||||
}
|
||||
if req.Mensaje != "" {
|
||||
notesLines = append(notesLines, "Mensaje: "+req.Mensaje)
|
||||
}
|
||||
notes := strings.Join(notesLines, "\n")
|
||||
|
||||
// 5. cliente: buscar por email o crear (en EA).
|
||||
customerID, err := ea.findOrCreateCustomer(req)
|
||||
if err != nil {
|
||||
log.Printf("book: error con cliente: %v", err)
|
||||
writeJSONError(w, http.StatusBadGateway, "cliente_no_disponible")
|
||||
return
|
||||
}
|
||||
|
||||
// 6. crear la cita (en EA).
|
||||
appt := eaAppointment{
|
||||
Start: start.Format(layout),
|
||||
End: end.Format(layout),
|
||||
ServiceID: int(primary.ID),
|
||||
ProviderID: req.ProviderID,
|
||||
CustomerID: customerID,
|
||||
Notes: notes,
|
||||
Status: "booked",
|
||||
}
|
||||
if err := ea.do(http.MethodPost, "/appointments", appt, nil); err != nil {
|
||||
log.Printf("book: error creando cita: %v", err)
|
||||
writeJSONError(w, http.StatusBadGateway, "cita_no_creada")
|
||||
return
|
||||
}
|
||||
|
||||
w.Header().Set("Content-Type", "application/json")
|
||||
w.WriteHeader(http.StatusCreated)
|
||||
fmt.Fprint(w, `{"ok": true}`)
|
||||
}
|
||||
}
|
||||
|
||||
// findOrCreateCustomer busca un cliente por email en EA y, si no existe, lo crea.
|
||||
func (c *eaClient) findOrCreateCustomer(req bookRequest) (int, error) {
|
||||
var found []eaCustomer
|
||||
if err := c.do(http.MethodGet, "/customers?q="+url.QueryEscape(req.Email), nil, &found); err == nil {
|
||||
for _, cust := range found {
|
||||
if strings.EqualFold(strings.TrimSpace(cust.Email), req.Email) {
|
||||
return int(cust.ID), nil
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
first, last := splitName(req.Nombre)
|
||||
var created eaCustomer
|
||||
body := eaCustomer{
|
||||
FirstName: first,
|
||||
LastName: last,
|
||||
Email: req.Email,
|
||||
Phone: req.Telefono,
|
||||
Notes: "Creado desde web MAY Studio",
|
||||
}
|
||||
if err := c.do(http.MethodPost, "/customers", body, &created); err != nil {
|
||||
return 0, err
|
||||
}
|
||||
if int(created.ID) == 0 {
|
||||
return 0, fmt.Errorf("EA no devolvió id de cliente")
|
||||
}
|
||||
return int(created.ID), nil
|
||||
}
|
||||
|
||||
func splitName(full string) (first, last string) {
|
||||
parts := strings.Fields(full)
|
||||
switch len(parts) {
|
||||
case 0:
|
||||
return full, ""
|
||||
case 1:
|
||||
return parts[0], ""
|
||||
default:
|
||||
return parts[0], strings.Join(parts[1:], " ")
|
||||
}
|
||||
}
|
||||
|
||||
func main() {
|
||||
port := flag.Int("port", 8080, "puerto del servidor")
|
||||
flag.Parse()
|
||||
@@ -25,34 +359,63 @@ func main() {
|
||||
log.Fatal(err)
|
||||
}
|
||||
|
||||
// Proxy a EasyAppointments API
|
||||
// El frontend llama a /ea-api/v1/... y aquí se reescribe y se añade auth
|
||||
eaTarget := "http://easyappointments:80"
|
||||
if t := os.Getenv("EA_TARGET"); t != "" {
|
||||
eaTarget = t
|
||||
}
|
||||
eaURL, err := url.Parse(eaTarget)
|
||||
ea := newEAClient()
|
||||
|
||||
// Proxy de SOLO LECTURA a EasyAppointments.
|
||||
// El frontend llama a /ea-api/v1/... (servicios, categorías, proveedor,
|
||||
// disponibilidad) y aquí se reescribe la ruta y se añade la auth admin.
|
||||
eaURL, err := url.Parse(ea.base)
|
||||
if err != nil {
|
||||
log.Fatal(err)
|
||||
}
|
||||
eaProxy := httputil.NewSingleHostReverseProxy(eaURL)
|
||||
|
||||
// Evita que el navegador muestre el popup de credenciales.
|
||||
// Nunca exponemos WWW-Authenticate ni mensajes de auth del backend.
|
||||
eaProxy.ModifyResponse = func(resp *http.Response) error {
|
||||
resp.Header.Del("Www-Authenticate")
|
||||
// Evitamos que cookies de sesión de EA lleguen al navegador del usuario público
|
||||
resp.Header.Del("Set-Cookie")
|
||||
// Limpiamos cabeceras que revelan el backend
|
||||
resp.Header.Del("Server")
|
||||
resp.Header.Del("X-Powered-By")
|
||||
|
||||
if resp.StatusCode == http.StatusUnauthorized || resp.StatusCode == http.StatusForbidden {
|
||||
resp.StatusCode = http.StatusBadGateway
|
||||
resp.Status = http.StatusText(http.StatusBadGateway)
|
||||
// Reemplazamos el body para no filtrar detalles del backend
|
||||
resp.Body.Close()
|
||||
resp.Body = io.NopCloser(strings.NewReader(`{"error": "service_unavailable"}`))
|
||||
resp.ContentLength = -1
|
||||
resp.Header.Set("Content-Type", "application/json")
|
||||
resp.Header.Del("Content-Length")
|
||||
}
|
||||
return nil
|
||||
}
|
||||
|
||||
http.HandleFunc("/ea-api/", func(w http.ResponseWriter, r *http.Request) {
|
||||
// Allowlist método+ruta ANTES de inyectar credenciales: solo lecturas.
|
||||
if !eaRouteAllowed(r.Method, r.URL.Path) {
|
||||
writeJSONError(w, http.StatusNotFound, "not_found")
|
||||
return
|
||||
}
|
||||
|
||||
// /ea-api/v1/services → /index.php/api/v1/services
|
||||
r.URL.Path = strings.Replace(r.URL.Path, "/ea-api", "/index.php/api", 1)
|
||||
|
||||
// Auth (server-side, nunca se expone al navegador)
|
||||
if apiKey := os.Getenv("EA_API_KEY"); apiKey != "" {
|
||||
r.Header.Set("Authorization", "Bearer " + apiKey)
|
||||
} else if user := os.Getenv("EA_API_USERNAME"); user != "" {
|
||||
if pass := os.Getenv("EA_API_PASSWORD"); pass != "" {
|
||||
r.SetBasicAuth(user, pass)
|
||||
}
|
||||
if ea.apiKey != "" {
|
||||
r.Header.Set("Authorization", "Bearer "+ea.apiKey)
|
||||
} else if ea.user != "" && ea.pass != "" {
|
||||
r.SetBasicAuth(ea.user, ea.pass)
|
||||
}
|
||||
|
||||
eaProxy.ServeHTTP(w, r)
|
||||
})
|
||||
|
||||
// Reservas: orquestadas server-side contra EasyAppointments.
|
||||
http.HandleFunc("/api/book", handleBook(ea))
|
||||
|
||||
http.Handle("/", http.FileServer(http.FS(staticFS)))
|
||||
|
||||
addr := fmt.Sprintf(":%d", *port)
|
||||
|
||||
@@ -0,0 +1,168 @@
|
||||
package main
|
||||
|
||||
import (
|
||||
"encoding/json"
|
||||
"net/http"
|
||||
"net/http/httptest"
|
||||
"sort"
|
||||
"strings"
|
||||
"testing"
|
||||
)
|
||||
|
||||
// La allowlist del proxy debe ser SOLO de lectura: cualquier escritura o búsqueda
|
||||
// de clientes se hace server-side en /api/book, nunca por el proxy.
|
||||
func TestEaRouteAllowed(t *testing.T) {
|
||||
cases := []struct {
|
||||
method string
|
||||
path string
|
||||
want bool
|
||||
}{
|
||||
// Lecturas permitidas (las que usa el frontend)
|
||||
{"GET", "/ea-api/v1/categories", true},
|
||||
{"GET", "/ea-api/v1/service_categories", true},
|
||||
{"GET", "/ea-api/v1/services", true},
|
||||
{"GET", "/ea-api/v1/availabilities", true},
|
||||
{"GET", "/ea-api/v1/providers/1", true},
|
||||
|
||||
// Bloqueadas: clientes y citas ya NO pasan por el proxy
|
||||
{"GET", "/ea-api/v1/customers", false},
|
||||
{"POST", "/ea-api/v1/customers", false},
|
||||
{"POST", "/ea-api/v1/appointments", false},
|
||||
{"GET", "/ea-api/v1/appointments", false},
|
||||
{"DELETE", "/ea-api/v1/appointments/3", false},
|
||||
{"PUT", "/ea-api/v1/customers/5", false},
|
||||
{"GET", "/ea-api/v1/providers", false}, // listar todos
|
||||
{"GET", "/ea-api/v1/providers/abc", false}, // id no numérico
|
||||
{"GET", "/ea-api/v1/settings", false},
|
||||
{"POST", "/ea-api/v1/services", false},
|
||||
}
|
||||
for _, c := range cases {
|
||||
if got := eaRouteAllowed(c.method, c.path); got != c.want {
|
||||
t.Errorf("eaRouteAllowed(%q, %q) = %v, want %v", c.method, c.path, got, c.want)
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
func TestSplitName(t *testing.T) {
|
||||
cases := []struct{ in, first, last string }{
|
||||
{"", "", ""},
|
||||
{"Ana", "Ana", ""},
|
||||
{"Ana López", "Ana", "López"},
|
||||
{"Ana María López Gil", "Ana", "María López Gil"},
|
||||
{" Ana López ", "Ana", "López"},
|
||||
}
|
||||
for _, c := range cases {
|
||||
f, l := splitName(c.in)
|
||||
if f != c.first || l != c.last {
|
||||
t.Errorf("splitName(%q) = (%q,%q), want (%q,%q)", c.in, f, l, c.first, c.last)
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
func TestFlexIntUnmarshal(t *testing.T) {
|
||||
var s struct {
|
||||
A flexInt `json:"a"`
|
||||
B flexInt `json:"b"`
|
||||
C flexInt `json:"c"`
|
||||
D flexInt `json:"d"`
|
||||
}
|
||||
if err := json.Unmarshal([]byte(`{"a":30,"b":"45","c":"60.0","d":null}`), &s); err != nil {
|
||||
t.Fatalf("unmarshal: %v", err)
|
||||
}
|
||||
if s.A != 30 || s.B != 45 || s.C != 60 || s.D != 0 {
|
||||
t.Errorf("got %d,%d,%d,%d want 30,45,60,0", s.A, s.B, s.C, s.D)
|
||||
}
|
||||
}
|
||||
|
||||
// TestHandleBook comprueba que una reserva se orquesta ENTERAMENTE contra la API
|
||||
// de EasyAppointments: lee servicios, crea el cliente y crea la cita, calculando
|
||||
// duración total y servicio principal en el servidor.
|
||||
func TestHandleBook(t *testing.T) {
|
||||
var gotAppt eaAppointment
|
||||
var hits []string
|
||||
|
||||
mux := http.NewServeMux()
|
||||
mux.HandleFunc("/index.php/api/v1/services", func(w http.ResponseWriter, r *http.Request) {
|
||||
hits = append(hits, "GET services")
|
||||
json.NewEncoder(w).Encode([]eaService{
|
||||
{ID: 1, Name: "Corte", Duration: 30},
|
||||
{ID: 2, Name: "Tinte", Duration: 45},
|
||||
})
|
||||
})
|
||||
mux.HandleFunc("/index.php/api/v1/customers", func(w http.ResponseWriter, r *http.Request) {
|
||||
if r.Method == http.MethodGet {
|
||||
hits = append(hits, "GET customers")
|
||||
json.NewEncoder(w).Encode([]eaCustomer{}) // no existe → se crea
|
||||
return
|
||||
}
|
||||
hits = append(hits, "POST customers")
|
||||
json.NewEncoder(w).Encode(eaCustomer{ID: 99})
|
||||
})
|
||||
mux.HandleFunc("/index.php/api/v1/appointments", func(w http.ResponseWriter, r *http.Request) {
|
||||
hits = append(hits, "POST appointments")
|
||||
json.NewDecoder(r.Body).Decode(&gotAppt)
|
||||
w.WriteHeader(http.StatusCreated)
|
||||
w.Write([]byte(`{"id":5}`))
|
||||
})
|
||||
srv := httptest.NewServer(mux)
|
||||
defer srv.Close()
|
||||
|
||||
ea := &eaClient{base: srv.URL, http: srv.Client()}
|
||||
|
||||
body := `{"nombre":"Ana López","email":"ana@x.com","telefono":"600","mensaje":"hola",
|
||||
"providerId":1,"serviceIds":[1,2],"date":"2026-07-01","time":"10:00"}`
|
||||
req := httptest.NewRequest(http.MethodPost, "/api/book", strings.NewReader(body))
|
||||
rec := httptest.NewRecorder()
|
||||
handleBook(ea)(rec, req)
|
||||
|
||||
if rec.Code != http.StatusCreated {
|
||||
t.Fatalf("status = %d, want 201; body=%s", rec.Code, rec.Body.String())
|
||||
}
|
||||
// Servicio principal = el de mayor duración (Tinte, id 2).
|
||||
if gotAppt.ServiceID != 2 {
|
||||
t.Errorf("serviceId = %d, want 2 (mayor duración)", gotAppt.ServiceID)
|
||||
}
|
||||
// Fin = inicio + 30 + 45 = 75 min.
|
||||
if gotAppt.Start != "2026-07-01 10:00:00" || gotAppt.End != "2026-07-01 11:15:00" {
|
||||
t.Errorf("start/end = %q/%q, want 10:00:00/11:15:00", gotAppt.Start, gotAppt.End)
|
||||
}
|
||||
if gotAppt.CustomerID != 99 || gotAppt.ProviderID != 1 || gotAppt.Status != "booked" {
|
||||
t.Errorf("appt = %+v", gotAppt)
|
||||
}
|
||||
if !strings.Contains(gotAppt.Notes, "Duración total: 75 min") ||
|
||||
!strings.Contains(gotAppt.Notes, "Servicios: Corte + Tinte") {
|
||||
t.Errorf("notes = %q", gotAppt.Notes)
|
||||
}
|
||||
// Toda la gestión pasó por EA y nada más.
|
||||
sort.Strings(hits)
|
||||
want := []string{"GET customers", "GET services", "POST appointments", "POST customers"}
|
||||
if strings.Join(hits, ",") != strings.Join(want, ",") {
|
||||
t.Errorf("llamadas a EA = %v, want %v", hits, want)
|
||||
}
|
||||
}
|
||||
|
||||
// Servicio inválido (no existe en EA) ⇒ 400 y NO se crea ninguna cita.
|
||||
func TestHandleBookRejectsUnknownService(t *testing.T) {
|
||||
created := false
|
||||
mux := http.NewServeMux()
|
||||
mux.HandleFunc("/index.php/api/v1/services", func(w http.ResponseWriter, r *http.Request) {
|
||||
json.NewEncoder(w).Encode([]eaService{{ID: 1, Name: "Corte", Duration: 30}})
|
||||
})
|
||||
mux.HandleFunc("/index.php/api/v1/appointments", func(w http.ResponseWriter, r *http.Request) {
|
||||
created = true
|
||||
})
|
||||
srv := httptest.NewServer(mux)
|
||||
defer srv.Close()
|
||||
ea := &eaClient{base: srv.URL, http: srv.Client()}
|
||||
|
||||
body := `{"nombre":"Ana","email":"a@x.com","telefono":"600","providerId":1,"serviceIds":[999],"date":"2026-07-01","time":"10:00"}`
|
||||
rec := httptest.NewRecorder()
|
||||
handleBook(ea)(rec, httptest.NewRequest(http.MethodPost, "/api/book", strings.NewReader(body)))
|
||||
|
||||
if rec.Code != http.StatusBadRequest {
|
||||
t.Errorf("status = %d, want 400", rec.Code)
|
||||
}
|
||||
if created {
|
||||
t.Error("se creó una cita con un servicio inexistente")
|
||||
}
|
||||
}
|
||||
|
Before Width: | Height: | Size: 85 KiB After Width: | Height: | Size: 159 KiB |
|
Before Width: | Height: | Size: 41 KiB After Width: | Height: | Size: 147 KiB |
|
Before Width: | Height: | Size: 94 KiB After Width: | Height: | Size: 120 KiB |
|
Before Width: | Height: | Size: 63 KiB After Width: | Height: | Size: 149 KiB |
|
Before Width: | Height: | Size: 43 KiB After Width: | Height: | Size: 105 KiB |
|
Before Width: | Height: | Size: 32 KiB After Width: | Height: | Size: 137 KiB |
|
Before Width: | Height: | Size: 22 KiB |
|
Before Width: | Height: | Size: 38 KiB |
|
Before Width: | Height: | Size: 28 KiB |
|
After Width: | Height: | Size: 868 B |
|
After Width: | Height: | Size: 2.0 KiB |
|
After Width: | Height: | Size: 15 KiB |
@@ -3,8 +3,11 @@
|
||||
<head>
|
||||
<meta charset="UTF-8">
|
||||
<meta name="viewport" content="width=device-width, initial-scale=1.0">
|
||||
<title>May HairCare — Peluquería en Barcelona</title>
|
||||
<meta name="description" content="May HairCare, peluquería en Horta, Barcelona. Cortes, color, peinados y tratamientos para señoras, caballeros y niños.">
|
||||
<title>MAY Studio — Peluquería en Barcelona</title>
|
||||
<meta name="description" content="MAY Studio, peluquería en Horta, Barcelona. Cortes, color, peinados y tratamientos para señoras, caballeros y niños.">
|
||||
<link rel="icon" href="/favicon.ico" sizes="any">
|
||||
<link rel="icon" type="image/png" sizes="32x32" href="/favicon-32x32.png">
|
||||
<link rel="icon" type="image/png" sizes="16x16" href="/favicon-16x16.png">
|
||||
<link rel="preconnect" href="https://fonts.googleapis.com">
|
||||
<link href="https://fonts.googleapis.com/css2?family=DM+Serif+Display&family=Inter:wght@400;500;600&display=swap" rel="stylesheet">
|
||||
<link rel="stylesheet" href="/style.css">
|
||||
@@ -14,12 +17,10 @@
|
||||
<!-- NAV -->
|
||||
<nav class="nav">
|
||||
<div class="container nav-inner">
|
||||
<a href="#" class="logo">May <span>HairCare</span></a>
|
||||
<a href="#" class="logo">MAY <span>Studio</span></a>
|
||||
<ul class="nav-links">
|
||||
<li><a href="#servicios">Servicios</a></li>
|
||||
<li><a href="#galeria">Galería</a></li>
|
||||
<li><a href="#profesional">La profesional</a></li>
|
||||
<li><a href="#horario">Horario</a></li>
|
||||
<li><a href="#galeria">Nuestro trabajo</a></li>
|
||||
<li><a href="#reservar">Reservar</a></li>
|
||||
<li><a href="#contacto">Contacto</a></li>
|
||||
</ul>
|
||||
@@ -30,34 +31,42 @@
|
||||
<!-- HERO -->
|
||||
<header class="hero">
|
||||
<div class="hero-bg">
|
||||
<img src="/assets/hero.jpg" alt="Interior del salón May HairCare">
|
||||
<img src="/assets/hero.jpg" alt="Interior del salón MAY Studio">
|
||||
</div>
|
||||
<div class="container hero-content">
|
||||
<h1>May HairCare<br>Tu peluquería en Horta</h1>
|
||||
<h1>MAY Studio<br>Tu peluquería en Horta</h1>
|
||||
<p class="hero-sub">Cortes, color, peinados y tratamientos capilares para toda la familia. Un espacio pensado para ti.</p>
|
||||
<div class="hero-actions">
|
||||
<a href="#reservar" class="btn btn-primary">Reservar cita</a>
|
||||
<a href="#servicios" class="btn btn-secondary">Ver servicios</a>
|
||||
<a href="#galeria" class="btn btn-secondary">Ver nuestro trabajo</a>
|
||||
</div>
|
||||
</div>
|
||||
</header>
|
||||
|
||||
<!-- SERVICIOS -->
|
||||
<section id="servicios" class="section">
|
||||
<!-- PROFESIONAL (Mayra) -->
|
||||
<section id="profesional" class="section">
|
||||
<div class="container">
|
||||
<h2 class="section-title">Nuestros servicios</h2>
|
||||
<p class="section-subtitle">Cuidamos de tu pelo con los mejores productos y técnicas</p>
|
||||
<div class="services-grid" id="services-grid">
|
||||
<p class="services-loading">Cargando servicios…</p>
|
||||
<div class="profesional-grid">
|
||||
<div class="profesional-img">
|
||||
<img src="/assets/may.jpg" alt="Mayra, peluquera profesional en MAY Studio">
|
||||
</div>
|
||||
<div class="profesional-info">
|
||||
<h3>Mayra</h3>
|
||||
<p class="profesional-role">Peluquera & fundadora</p>
|
||||
<p>Soy Mayra, fundadora de MAY Studio, un espacio dedicado al cuidado del cabello con un enfoque personalizado.</p>
|
||||
<p>Estoy especializada en color, mechas y cortes, buscando siempre resultados naturales, equilibrados y elegantes.</p>
|
||||
<p>Cada cliente recibe una atención individualizada, analizando su cabello y su estilo para crear un resultado que sea bonito, favorecedor y fácil de mantener día a día.</p>
|
||||
<p>MAY Studio nace con la idea de ofrecer un ambiente tranquilo donde el cuidado del cabello y la atención al detalle son lo más importante.</p>
|
||||
</div>
|
||||
</div>
|
||||
</div>
|
||||
</section>
|
||||
|
||||
<!-- GALERÍA -->
|
||||
<!-- GALERÍA / Nuestro trabajo -->
|
||||
<section id="galeria" class="section section-alt">
|
||||
<div class="container">
|
||||
<h2 class="section-title">Nuestro trabajo</h2>
|
||||
<p class="section-subtitle">Algunos de los looks que hemos creado para nuestras clientas</p>
|
||||
<p class="section-subtitle">Explora algunos de los estilos y transformaciones que creamos en MAY Studio. Haz clic en cualquier imagen para ampliar.</p>
|
||||
<div class="gallery-grid">
|
||||
<div class="gallery-item"><img src="/assets/galeria-1.jpg" alt="Trabajo de peluquería"></div>
|
||||
<div class="gallery-item"><img src="/assets/galeria-2.jpg" alt="Trabajo de peluquería"></div>
|
||||
@@ -69,26 +78,15 @@
|
||||
</div>
|
||||
</section>
|
||||
|
||||
<!-- PROFESIONAL -->
|
||||
<section id="profesional" class="section">
|
||||
<!-- RESERVAR -->
|
||||
<section id="reservar" class="section">
|
||||
<div class="container">
|
||||
<div class="profesional-grid">
|
||||
<div class="profesional-img">
|
||||
<img src="/assets/may.jpg" alt="May, peluquera profesional en May HairCare">
|
||||
</div>
|
||||
<div class="profesional-info">
|
||||
<h3>May</h3>
|
||||
<p class="profesional-role">Peluquera & fundadora</p>
|
||||
<p>Con más de 15 años de experiencia en peluquería profesional, May ha hecho del cuidado del cabello su vocación. Especializada en coloración, corte y tratamientos capilares, trabaja con técnicas actuales y productos de alta calidad para ofrecer resultados duraderos. Su trato cercano y la atención personalizada a cada cliente son la base de May HairCare.</p>
|
||||
</div>
|
||||
</div>
|
||||
</div>
|
||||
</section>
|
||||
<h2 class="section-title">Reservar cita</h2>
|
||||
<p class="section-subtitle">Elige uno o varios servicios, día y hora para tu cita</p>
|
||||
|
||||
<!-- HORARIO -->
|
||||
<section id="horario" class="section section-alt">
|
||||
<div class="container">
|
||||
<h2 class="section-title">Horario</h2>
|
||||
<!-- Horario integrado -->
|
||||
<div style="max-width: 500px; margin: 0 auto 32px;">
|
||||
<h3 style="font-family: 'DM Serif Display', serif; font-size: 1.1rem; text-align: center; margin-bottom: 12px;">Horario</h3>
|
||||
<div class="schedule">
|
||||
<div class="schedule-row">
|
||||
<span>Lunes a Viernes</span>
|
||||
@@ -105,13 +103,6 @@
|
||||
</div>
|
||||
<p class="schedule-note">Llámanos o reserva online. Te atendemos con o sin cita.</p>
|
||||
</div>
|
||||
</section>
|
||||
|
||||
<!-- RESERVAR -->
|
||||
<section id="reservar" class="section">
|
||||
<div class="container">
|
||||
<h2 class="section-title">Reservar cita</h2>
|
||||
<p class="section-subtitle">Elige uno o varios servicios, día y hora para tu cita</p>
|
||||
|
||||
<!-- Service selector -->
|
||||
<div class="service-selector" id="service-selector">
|
||||
@@ -138,7 +129,7 @@
|
||||
</div>
|
||||
<!-- Right: slots + contact form -->
|
||||
<div class="cal-right">
|
||||
<div id="slots-placeholder" class="slots-placeholder">Selecciona primero el servicio que deseas</div>
|
||||
<div id="slots-placeholder" class="slots-placeholder">Selecciona primero el/los servicio(s) que deseas</div>
|
||||
<div id="slots-container" style="display:none">
|
||||
<h3 class="slots-title" id="slots-title"></h3>
|
||||
<div class="slots-grid" id="slots-grid"></div>
|
||||
@@ -195,7 +186,7 @@
|
||||
<iframe
|
||||
src="https://www.openstreetmap.org/export/embed.html?bbox=2.1550%2C41.4380%2C2.1650%2C41.4430&layer=mapnik&marker=41.4405%2C2.1600"
|
||||
width="100%" height="300" style="border:0; border-radius: 12px;"
|
||||
loading="lazy" title="Mapa May HairCare">
|
||||
loading="lazy" title="Mapa MAY Studio">
|
||||
</iframe>
|
||||
</div>
|
||||
</div>
|
||||
@@ -205,8 +196,8 @@
|
||||
<!-- FOOTER -->
|
||||
<footer class="footer">
|
||||
<div class="container footer-inner">
|
||||
<span class="logo">May <span>HairCare</span></span>
|
||||
<p>© 2026 May HairCare. Tu peluquería en Horta.</p>
|
||||
<span class="logo">MAY <span>Studio</span></span>
|
||||
<p>© 2026 MAY Studio. Tu peluquería en Horta.</p>
|
||||
</div>
|
||||
</footer>
|
||||
|
||||
@@ -221,57 +212,89 @@
|
||||
const PROVIDER_ID = 1;
|
||||
|
||||
// ---- Service selector state ----
|
||||
let selectedCategory = null;
|
||||
let selectedServices = []; // [{id, nombre, duracion}]
|
||||
let totalDuration = 0;
|
||||
let allServices = []; // cache de servicios EA
|
||||
|
||||
// ---- Services (ahora desde EasyAppointments) ----
|
||||
async function loadServices() {
|
||||
const grid = document.getElementById('services-grid');
|
||||
// ---- Categories and Services from EasyAppointments ----
|
||||
async function loadCategories() {
|
||||
try {
|
||||
const res = await fetch('/ea-api/v1/services');
|
||||
if (!res.ok) throw new Error('HTTP ' + res.status);
|
||||
const services = await res.json();
|
||||
allServices = services;
|
||||
let res = await fetch('/ea-api/v1/categories');
|
||||
if (!res.ok) {
|
||||
res = await fetch('/ea-api/v1/service_categories');
|
||||
}
|
||||
if (!res.ok) return [];
|
||||
return await res.json();
|
||||
} catch (e) {
|
||||
console.warn('No se pudieron cargar las categorías de EA');
|
||||
return [];
|
||||
}
|
||||
}
|
||||
|
||||
// Agrupamos en una categoría simple (puedes crear categorías en EA y extender esto)
|
||||
const fakeCategorias = [{
|
||||
nombre: "Servicios",
|
||||
imagen: "",
|
||||
servicios: services.map(s => ({
|
||||
async function loadServices() {
|
||||
const selectorContainer = document.getElementById('service-selector');
|
||||
try {
|
||||
const [servicesRes, categories] = await Promise.all([
|
||||
fetch('/ea-api/v1/services'),
|
||||
loadCategories()
|
||||
]);
|
||||
if (!servicesRes.ok) throw new Error('HTTP ' + servicesRes.status);
|
||||
const services = await servicesRes.json();
|
||||
|
||||
// Filter services to those assigned to this provider
|
||||
let displayServices = services;
|
||||
try {
|
||||
const provRes = await fetch(`/ea-api/v1/providers/${PROVIDER_ID}`);
|
||||
if (provRes.ok) {
|
||||
const prov = await provRes.json();
|
||||
const allowed = (prov.services || prov.service_ids || []).map(id => parseInt(id));
|
||||
if (allowed.length > 0) {
|
||||
displayServices = services.filter(s => allowed.includes(parseInt(s.id)));
|
||||
}
|
||||
}
|
||||
} catch(e) {}
|
||||
|
||||
const catMap = {};
|
||||
(categories || []).forEach(cat => {
|
||||
catMap[cat.id] = cat;
|
||||
});
|
||||
|
||||
const grouped = {};
|
||||
displayServices.forEach(s => {
|
||||
const catId = s.categoryId ?? s.serviceCategoryId ?? 'uncat';
|
||||
if (!grouped[catId]) {
|
||||
const catInfo = catMap[catId] || {};
|
||||
grouped[catId] = {
|
||||
nombre: catInfo.name || catInfo.title || 'Otros servicios',
|
||||
servicios: []
|
||||
};
|
||||
}
|
||||
grouped[catId].servicios.push({
|
||||
id: s.id,
|
||||
nombre: s.name,
|
||||
precio: (parseFloat(s.price) || 0) + " €",
|
||||
duracion: s.duration || 30
|
||||
}))
|
||||
}];
|
||||
});
|
||||
});
|
||||
|
||||
renderServices(fakeCategorias, grid);
|
||||
} catch (e) {
|
||||
console.error(e);
|
||||
grid.innerHTML = '<p class="services-loading">No se pudieron cargar los servicios desde EasyAppointments.</p>';
|
||||
}
|
||||
}
|
||||
let categorias = Object.values(grouped);
|
||||
// Sort categories alphabetically for consistent order
|
||||
categorias.sort((a, b) => a.nombre.localeCompare(b.nombre, 'es'));
|
||||
|
||||
function renderServices(categorias, grid) {
|
||||
grid.innerHTML = categorias.map(cat => `
|
||||
<div class="service-card">
|
||||
<div class="service-img">
|
||||
<img src="${esc(cat.imagen)}" alt="${esc(cat.nombre)}">
|
||||
</div>
|
||||
<div class="service-body">
|
||||
<h3>${esc(cat.nombre)}</h3>
|
||||
<ul class="service-list">
|
||||
${cat.servicios.map(s => `
|
||||
<li><span>${esc(s.nombre)}</span><span class="price">${esc(s.precio)}</span></li>
|
||||
`).join('')}
|
||||
</ul>
|
||||
</div>
|
||||
</div>
|
||||
`).join('');
|
||||
// Sort services inside each category
|
||||
categorias.forEach(cat => {
|
||||
cat.servicios.sort((a, b) => a.nombre.localeCompare(b.nombre, 'es'));
|
||||
});
|
||||
|
||||
if (categorias.length === 0 || displayServices.length === 0) {
|
||||
selectorContainer.innerHTML = '<p class="services-loading">No hay servicios asignados para este proveedor o categorías.</p>';
|
||||
return;
|
||||
}
|
||||
|
||||
renderServiceSelector(categorias);
|
||||
} catch (e) {
|
||||
console.error(e);
|
||||
if (selectorContainer) selectorContainer.innerHTML = '<p class="services-loading">No se pudieron cargar los servicios desde EasyAppointments.</p>';
|
||||
}
|
||||
}
|
||||
|
||||
function renderServiceSelector(categorias) {
|
||||
@@ -296,7 +319,10 @@
|
||||
`).join('');
|
||||
|
||||
// Listener se añade una vez desde loadServices
|
||||
if (!container.dataset.listenerAttached) {
|
||||
container.addEventListener('change', handleServiceChange);
|
||||
container.dataset.listenerAttached = 'true';
|
||||
}
|
||||
}
|
||||
|
||||
function handleServiceChange(e) {
|
||||
@@ -315,11 +341,7 @@
|
||||
totalDuration += parseInt(cb.dataset.duracion) || 30;
|
||||
});
|
||||
|
||||
// Lock to one category
|
||||
const first = document.querySelector('#service-selector input[type=checkbox]:checked');
|
||||
selectedCategory = first ? first.dataset.cat : null;
|
||||
|
||||
updateServiceDisabledState();
|
||||
// No lock to category anymore - services from different categories can be selected
|
||||
updateServiceSummary();
|
||||
|
||||
if (selectedDate) {
|
||||
@@ -331,19 +353,11 @@
|
||||
} else {
|
||||
const ph = document.getElementById('slots-placeholder');
|
||||
ph.textContent = selectedServices.length === 0
|
||||
? 'Selecciona primero el servicio que deseas'
|
||||
? 'Selecciona primero el/los servicio(s) que deseas'
|
||||
: 'Selecciona un día en el calendario';
|
||||
}
|
||||
}
|
||||
|
||||
function updateServiceDisabledState() {
|
||||
document.querySelectorAll('#service-selector .svc-cat-card').forEach(card => {
|
||||
const locked = selectedCategory !== null && card.dataset.cat !== selectedCategory;
|
||||
card.classList.toggle('svc-cat-locked', locked);
|
||||
card.querySelectorAll('input[type=checkbox]').forEach(cb => { cb.disabled = locked; });
|
||||
});
|
||||
}
|
||||
|
||||
function updateServiceSummary() {
|
||||
const bar = document.getElementById('service-summary');
|
||||
if (selectedServices.length === 0) { bar.style.display = 'none'; return; }
|
||||
@@ -556,45 +570,6 @@
|
||||
document.getElementById('booking-form').style.display = 'none';
|
||||
}
|
||||
|
||||
// Busca cliente por email o lo crea en EasyAppointments
|
||||
async function findOrCreateCustomer(nombre, email, telefono) {
|
||||
// Buscar
|
||||
try {
|
||||
const searchRes = await fetch(`/ea-api/v1/customers?q=${encodeURIComponent(email)}`);
|
||||
if (searchRes.ok) {
|
||||
const list = await searchRes.json();
|
||||
if (Array.isArray(list) && list.length > 0) {
|
||||
return list[0].id;
|
||||
}
|
||||
}
|
||||
} catch (e) { console.warn('Búsqueda de cliente falló', e); }
|
||||
|
||||
// Crear nuevo
|
||||
const parts = nombre.trim().split(/\s+/);
|
||||
const firstName = parts[0] || nombre;
|
||||
const lastName = parts.slice(1).join(' ') || '';
|
||||
|
||||
const createRes = await fetch('/ea-api/v1/customers', {
|
||||
method: 'POST',
|
||||
headers: { 'Content-Type': 'application/json' },
|
||||
body: JSON.stringify({
|
||||
firstName: firstName,
|
||||
lastName: lastName,
|
||||
email: email,
|
||||
phone: telefono || '',
|
||||
notes: 'Creado desde web May HairCare'
|
||||
})
|
||||
});
|
||||
|
||||
if (!createRes.ok) {
|
||||
const errText = await createRes.text().catch(() => '');
|
||||
throw new Error('No se pudo crear el cliente en EasyAppointments: ' + errText);
|
||||
}
|
||||
|
||||
const created = await createRes.json();
|
||||
return created.id;
|
||||
}
|
||||
|
||||
function initBookingForm() {
|
||||
document.getElementById('booking-form').addEventListener('submit', async function(e) {
|
||||
e.preventDefault();
|
||||
@@ -613,49 +588,23 @@
|
||||
result.style.display = 'none';
|
||||
|
||||
try {
|
||||
// 1. Cliente (por email)
|
||||
const customerId = await findOrCreateCustomer(
|
||||
form.nombre.value.trim(),
|
||||
email,
|
||||
form.telefono.value.trim()
|
||||
);
|
||||
|
||||
// 2. Preparar appointment (usamos el servicio principal - el de mayor duración - + notas con todos)
|
||||
const primaryServiceId = getPrimaryServiceId();
|
||||
const primaryService = selectedServices.find(s => s.id === primaryServiceId) || selectedServices[0];
|
||||
if (!primaryService || !primaryService.id) {
|
||||
throw new Error('No se encontró ID de servicio válido');
|
||||
}
|
||||
|
||||
const start = `${selectedDate} ${selectedHora}:00`;
|
||||
// Duración total (EA usará la del servicio, pero ponemos nota)
|
||||
const endDate = new Date(`${selectedDate}T${selectedHora}`);
|
||||
endDate.setMinutes(endDate.getMinutes() + totalDuration);
|
||||
const endHour = pad(endDate.getHours()) + ':' + pad(endDate.getMinutes());
|
||||
|
||||
const notes = [
|
||||
`Nombre: ${form.nombre.value.trim()}`,
|
||||
`Email: ${email}`,
|
||||
`Teléfono: ${form.telefono.value.trim()}`,
|
||||
`Servicios: ${selectedServices.map(s => s.nombre).join(' + ')}`,
|
||||
`Duración total: ${totalDuration} min`,
|
||||
form.mensaje.value.trim() ? `Mensaje: ${form.mensaje.value.trim()}` : ''
|
||||
].filter(Boolean).join('\n');
|
||||
|
||||
const appointment = {
|
||||
start: start,
|
||||
end: `${selectedDate} ${endHour}:00`,
|
||||
serviceId: primaryService.id,
|
||||
// El servidor (server-side) busca/crea el cliente y crea la cita
|
||||
// contra EasyAppointments. El navegador solo envía la selección.
|
||||
const payload = {
|
||||
nombre: form.nombre.value.trim(),
|
||||
email: email,
|
||||
telefono: form.telefono.value.trim(),
|
||||
mensaje: form.mensaje.value.trim(),
|
||||
providerId: PROVIDER_ID,
|
||||
customerId: customerId,
|
||||
notes: notes,
|
||||
status: 'booked'
|
||||
serviceIds: selectedServices.map(s => s.id).filter(Boolean),
|
||||
date: selectedDate,
|
||||
time: selectedHora
|
||||
};
|
||||
|
||||
const res = await fetch('/ea-api/v1/appointments', {
|
||||
const res = await fetch('/api/book', {
|
||||
method: 'POST',
|
||||
headers: { 'Content-Type': 'application/json' },
|
||||
body: JSON.stringify(appointment),
|
||||
body: JSON.stringify(payload),
|
||||
});
|
||||
|
||||
if (res.ok) {
|
||||
@@ -671,7 +620,7 @@
|
||||
} else {
|
||||
const err = await res.json().catch(() => ({}));
|
||||
result.className = 'booking-result booking-error';
|
||||
result.textContent = (err.message || err.error || JSON.stringify(err)) || 'Error creando la cita en EasyAppointments.';
|
||||
result.textContent = err.error || 'No se pudo crear la reserva. Inténtalo de nuevo o llámanos.';
|
||||
}
|
||||
} catch (err) {
|
||||
console.error(err);
|
||||
|
||||
@@ -108,15 +108,6 @@ img { max-width: 100%; display: block; }
|
||||
);
|
||||
}
|
||||
|
||||
/* Fallback gradient when no image is loaded */
|
||||
.hero-bg img[src=""]::before,
|
||||
.hero-bg img:not([src])::before {
|
||||
content: '';
|
||||
position: absolute;
|
||||
inset: 0;
|
||||
background: linear-gradient(160deg, var(--bg) 40%, var(--bg-alt) 100%);
|
||||
}
|
||||
|
||||
.hero-content {
|
||||
position: relative;
|
||||
z-index: 1;
|
||||
@@ -190,72 +181,6 @@ img { max-width: 100%; display: block; }
|
||||
margin-right: auto;
|
||||
}
|
||||
|
||||
/* ============ SERVICES ============ */
|
||||
.services-grid {
|
||||
display: grid;
|
||||
grid-template-columns: repeat(3, 1fr);
|
||||
gap: 24px;
|
||||
}
|
||||
|
||||
.service-card {
|
||||
background: var(--white);
|
||||
border-radius: var(--radius);
|
||||
overflow: hidden;
|
||||
border: 1px solid rgba(0,0,0,0.05);
|
||||
transition: transform 0.2s, box-shadow 0.2s;
|
||||
}
|
||||
.service-card:hover {
|
||||
transform: translateY(-3px);
|
||||
box-shadow: 0 8px 24px rgba(0,0,0,0.06);
|
||||
}
|
||||
|
||||
.service-img {
|
||||
width: 100%;
|
||||
height: 220px;
|
||||
overflow: hidden;
|
||||
background: var(--bg-alt);
|
||||
}
|
||||
|
||||
.service-img img {
|
||||
width: 100%;
|
||||
height: 100%;
|
||||
object-fit: cover;
|
||||
}
|
||||
|
||||
.service-body {
|
||||
padding: 24px;
|
||||
}
|
||||
|
||||
.service-body h3 {
|
||||
font-family: 'DM Serif Display', serif;
|
||||
font-size: 1.3rem;
|
||||
margin-bottom: 16px;
|
||||
}
|
||||
|
||||
.service-list {
|
||||
list-style: none;
|
||||
}
|
||||
|
||||
.service-list li {
|
||||
display: flex;
|
||||
justify-content: space-between;
|
||||
align-items: center;
|
||||
padding: 8px 0;
|
||||
border-bottom: 1px solid rgba(0,0,0,0.06);
|
||||
font-size: 0.9rem;
|
||||
color: var(--text-mid);
|
||||
}
|
||||
|
||||
.service-list li:last-child {
|
||||
border-bottom: none;
|
||||
}
|
||||
|
||||
.price {
|
||||
font-weight: 600;
|
||||
color: var(--accent);
|
||||
white-space: nowrap;
|
||||
}
|
||||
|
||||
/* ============ GALLERY ============ */
|
||||
.gallery-grid {
|
||||
display: grid;
|
||||
@@ -538,14 +463,6 @@ img { max-width: 100%; display: block; }
|
||||
color: var(--accent);
|
||||
}
|
||||
|
||||
.slot-occupied {
|
||||
background: var(--bg-alt);
|
||||
color: rgba(0,0,0,0.25);
|
||||
text-decoration: line-through;
|
||||
cursor: default;
|
||||
border-color: transparent;
|
||||
}
|
||||
|
||||
.slot-selected {
|
||||
background: var(--accent) !important;
|
||||
color: var(--white) !important;
|
||||
@@ -624,11 +541,6 @@ img { max-width: 100%; display: block; }
|
||||
transition: opacity 0.2s;
|
||||
}
|
||||
|
||||
.svc-cat-card.svc-cat-locked {
|
||||
opacity: 0.35;
|
||||
pointer-events: none;
|
||||
}
|
||||
|
||||
.svc-cat-title {
|
||||
font-family: 'DM Serif Display', serif;
|
||||
font-size: 1rem;
|
||||
@@ -714,9 +626,6 @@ img { max-width: 100%; display: block; }
|
||||
|
||||
/* ============ RESPONSIVE ============ */
|
||||
@media (max-width: 768px) {
|
||||
.services-grid {
|
||||
grid-template-columns: 1fr;
|
||||
}
|
||||
.gallery-grid {
|
||||
grid-template-columns: repeat(2, 1fr);
|
||||
}
|
||||
|
||||