Backend - payment_sessions → payment_requests rename across DB schema + 29 files - payment.service.js becomes product-agnostic owner: EventEmitter + Xendit wrapper + requestPayment / confirmPayment public API; legacy aliases retained for existing chat callers - Webhook handler at POST /api/shared/payment/webhooks/xendit, with constant-time token verification (8 vitest cases) - Server-driven pairing: payment.service emits payment_request.confirmed → pairing subscriber starts the blast. Legacy POST /chat/request still works during the cutover. - Reconciliation sweeper extended (re-emits events for confirmed rows with no chat session) - SIGTERM drain + startup reconciliation pass in server.js Customer app - waiting_payment_screen opens xendit_invoice_url via LaunchMode.inAppBrowserView - searching / no-bestie / targeted-waiting / pairing-notifier updated to consume the new payment_request_id contract - pending_payments_provider + bestie-unavailable dialog migrated Dev / testing - XENDIT_ENABLED=false is the safe default; .env.example documents the four new vars - backend/.dev/xendit-fake-webhook.sh exercises the handler without ngrok - 90/92 backend tests pass (two pre-existing session-timer flakes, unrelated); client_app analyzer clean - requirement/phase5-xendit-plan.md is the canonical reference Stage 8 (live E2E) blocked on Xendit test-mode keys. The dashboard's single-webhook-URL constraint will be worked around via a self-poll script next session. Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>
40 lines
1.0 KiB
JSON
40 lines
1.0 KiB
JSON
{
|
|
"name": "halo-bestie-backend",
|
|
"version": "1.0.0",
|
|
"description": "Halo Bestie backend API",
|
|
"main": "src/server.js",
|
|
"type": "module",
|
|
"scripts": {
|
|
"dev": "node --watch src/server.js",
|
|
"start": "node src/server.js",
|
|
"db:migrate": "node src/db/migrate.js",
|
|
"db:seed": "node src/db/seed.js",
|
|
"test": "vitest run",
|
|
"test:watch": "vitest",
|
|
"test:coverage": "vitest run --coverage"
|
|
},
|
|
"dependencies": {
|
|
"@fastify/cookie": "^11.0.2",
|
|
"@fastify/cors": "^11.0.0",
|
|
"@fastify/sensible": "^6.0.0",
|
|
"@fastify/websocket": "^11.0.0",
|
|
"bcrypt": "^5.1.1",
|
|
"dotenv": "^16.4.5",
|
|
"fastify": "^5.0.0",
|
|
"firebase-admin": "^12.2.0",
|
|
"google-auth-library": "^9.15.1",
|
|
"ioredis": "^5.4.1",
|
|
"jsonwebtoken": "^9.0.3",
|
|
"jwks-rsa": "^3.2.2",
|
|
"pg": "^8.12.0",
|
|
"postgres": "^3.4.4",
|
|
"xendit-node": "^7.0.0",
|
|
"zod": "^3.23.8"
|
|
},
|
|
"devDependencies": {
|
|
"@types/pg": "^8.11.6",
|
|
"@vitest/coverage-v8": "^4.1.5",
|
|
"vitest": "^4.1.5"
|
|
}
|
|
}
|