HEX
Server: LiteSpeed
System: Linux houston.panomity.com 6.8.0-100-generic #100-Ubuntu SMP PREEMPT_DYNAMIC Tue Jan 13 16:40:06 UTC 2026 x86_64
User: nudepix (1011)
PHP: 7.4.33
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,pcntl_unshare,
Upload Files
File: //opt/agentcloud/webapp/src/controllers/asset.ts
'use strict';

import { dynamicResponse } from '@dr';
import { addAsset } from 'db/asset';
import toObjectId from 'lib/misc/toobjectid';
import withLogging from 'lib/misc/withlogging';
import { ObjectId } from 'mongodb';
import path from 'path';
import StorageProviderFactory from 'storage/index';
import { Asset } from 'struct/asset';

export async function uploadAssetApi(req, res) {

	if (!req.files || Object.keys(req.files).length === 0) {
		return dynamicResponse(req, res, 400, { error: 'Invalid inputs' });
	}

	const uploadedFile = req.files.file;
	let fileExtension = path.extname(uploadedFile.name);
	if (!fileExtension) {
		return dynamicResponse(req, res, 400, { error: 'Invalid file extension' });
	}

	const newAssetId = new ObjectId();
	const filename = `${newAssetId.toString()}${fileExtension}`;
	const assetBody: Asset = {
		_id: newAssetId,
		orgId: toObjectId(res.locals.matchingOrg.id),
		teamId: toObjectId(req.params.resourceSlug),
		filename,
		originalFilename: uploadedFile.name,
		mimeType: uploadedFile.mimetype,
		uploadedAt: new Date(),
	};

	const wrappedAddAsset = withLogging(addAsset, res.locals?.account?._id);
	const addedAsset = await wrappedAddAsset(assetBody);
	const storageProvider = StorageProviderFactory.getStorageProvider();
	await storageProvider.addFile(filename, uploadedFile, true);

	return dynamicResponse(req, res, 200, assetBody);

}

//TODO: get, edit, delete, etc asset api