fix(web): Sidebar as client component (no DB during SSG)

- Sidebar.tsx is now "use client" — fetches /api/docs at runtime instead of
  calling listDocuments() during SSG (CI has no DB, causes ECONNREFUSED)
- GET /api/docs added to route.ts (returns doc list for sidebar)
- Removed SidebarContent.tsx (merged into Sidebar.tsx)
- Fixed isAuthorized double-brace typo
This commit is contained in:
asepharyana
2026-08-20 17:06:16 +07:00
parent 167d95c5e8
commit 050ca518c0
2 changed files with 40 additions and 17 deletions
+11 -3
View File
@@ -1,12 +1,15 @@
import { NextRequest, NextResponse } from "next/server";
import {
createDocument,
updateDocument,
deleteDocument,
listDocuments,
} from "@mcpedia/core";
import { WEBHOOK_SECRET } from "@mcpedia/config";
import { timingSafeEqual } from "node:crypto";
// Web CRUD auth: either the `x-webhook-secret` header (API/MCP style) OR the
// `mcpedia_admin` cookie (web login). One of the two must be present + valid.
// Web CRUD auth: either the x-webhook-secret header (API/MCP style) OR the
// mcpedia_admin cookie (web login). One of the two must be valid.
function isAuthorized(req: NextRequest): boolean {
if (!WEBHOOK_SECRET) return false;
const headerSecret = req.headers.get("x-webhook-secret") ?? "";
@@ -21,8 +24,13 @@ function unauthorized() {
return NextResponse.json({ ok: false, error: "Unauthorized" }, { status: 401 });
}
// GET /api/docs — list all documents (for sidebar navigation).
export async function GET() {
const docs = await listDocuments();
return NextResponse.json(docs);
}
// POST /api/docs — Create a new document.
// Body: { slug, title, section, body, type?, status?, author?, tags? }
export async function POST(req: NextRequest) {
if (!isAuthorized(req)) return unauthorized();