56 lines
1.7 KiB
TypeScript

/* eslint-disable @typescript-eslint/no-explicit-any */
import { NextRequest, NextResponse } from 'next/server'
import { createClient } from '@/lib/supabase/server'
export async function PATCH(
request: NextRequest,
{ params }: { params: Promise<{ id: string }> }
) {
try {
const supabase = await createClient()
const db = supabase as any
const { data: { user }, error: authError } = await supabase.auth.getUser()
if (authError || !user) {
return NextResponse.json({ error: 'Non autorisé' }, { status: 401 })
}
const { id } = await params
const { question_text, explanation } = await request.json()
if (!question_text?.trim()) {
return NextResponse.json({ error: 'Texte de la question requis' }, { status: 400 })
}
// Vérifier que la question appartient à un quiz de l'utilisateur
const { data: question, error: fetchError } = await db
.from('questions')
.select('id, quiz:quizzes!inner(author_id)')
.eq('id', id)
.single()
if (fetchError || !question || question.quiz?.author_id !== user.id) {
return NextResponse.json({ error: 'Question introuvable ou accès refusé' }, { status: 404 })
}
const { data, error } = await db
.from('questions')
.update({
question_text: question_text.trim(),
explanation: explanation?.trim() || null,
})
.eq('id', id)
.select()
.single()
if (error) {
return NextResponse.json({ error: error.message }, { status: 500 })
}
return NextResponse.json({ success: true, question: data })
} catch (error) {
console.error('[questions/patch]', error)
return NextResponse.json({ error: 'Erreur serveur interne' }, { status: 500 })
}
}