pepettes/server.py

96 lines
2.9 KiB
Python
Raw Normal View History

2021-02-15 04:36:24 +01:00
#! /usr/bin/env python3.6
"""
server.py
Stripe Sample.
Python 3.6 or newer required.
"""
import stripe
import json
import os
2021-02-15 05:25:55 +01:00
import random
import string
2021-02-15 04:36:24 +01:00
2021-02-15 05:25:55 +01:00
from flask import Flask, render_template, jsonify, request, send_from_directory, session
2021-02-19 00:14:04 +01:00
from flask_babel import Babel, _
2021-02-15 05:10:36 +01:00
from flask_simple_csrf import CSRF
2021-02-15 04:36:24 +01:00
2021-02-15 05:10:36 +01:00
2021-02-15 04:36:24 +01:00
static_dir = str(os.path.abspath(os.path.join(
2021-02-19 00:14:04 +01:00
__file__, "..", 'assets')))
2021-02-15 04:36:24 +01:00
app = Flask(__name__, static_folder=static_dir,
static_url_path="", template_folder=static_dir)
2021-02-19 00:14:04 +01:00
app.config.from_pyfile('settings.py')
stripe.api_key = app.config['STRIPE_SECRET_KEY']
2021-02-15 05:25:55 +01:00
CSRF = CSRF(config={
2021-02-19 00:14:04 +01:00
'SECRET_CSRF_KEY': app.config['SECRET_CSRF_KEY']
2021-02-15 05:25:55 +01:00
})
2021-02-15 05:10:36 +01:00
app = CSRF.init_app(app)
2021-02-19 00:14:04 +01:00
babel = Babel(app)
2021-02-15 04:36:24 +01:00
2021-02-15 05:10:36 +01:00
@app.before_request
def before_request():
if 'CSRF_TOKEN' not in session or 'USER_CSRF' not in session:
2021-02-15 05:25:55 +01:00
session['USER_CSRF'] = ''.join(random.SystemRandom().choice(string.ascii_uppercase + string.digits) for _ in range(64))
2021-02-15 05:10:36 +01:00
session['CSRF_TOKEN'] = CSRF.create(session['USER_CSRF'])
2021-02-15 04:36:24 +01:00
2021-02-19 00:14:04 +01:00
@babel.localeselector
def get_locale():
return 'fr' #request.accept_languages.best_match(app.config['LANGUAGES'])
2021-02-15 04:36:24 +01:00
@app.route('/', methods=['GET'])
def get_index():
2021-02-19 00:14:04 +01:00
return render_template('index.html', **app.config['CUSTOM'],
csrf=session['USER_CSRF'])
@app.route('/success', methods=['GET'])
def get_success():
return render_template('success.html', **app.config['CUSTOM'])
2021-02-15 04:36:24 +01:00
2021-02-19 00:14:04 +01:00
@app.route('/canceled', methods=['GET'])
def get_canceled():
return render_template('canceled.html', **app.config['CUSTOM'])
2021-02-15 04:36:24 +01:00
@app.route('/create-checkout-session', methods=['POST'])
def create_checkout_session():
data = json.loads(request.data)
2021-02-19 00:14:04 +01:00
domain_url = app.config['DOMAIN']
2021-02-15 04:36:24 +01:00
try:
2021-02-19 00:14:04 +01:00
donation = app.config['DONATION']
currencies = [iso for iso, symbol in app.config['CUSTOM']['currencies']]
2021-02-15 05:25:55 +01:00
if CSRF.verify(data['user_csrf'], session['CSRF_TOKEN']) is False or \
2021-02-19 00:14:04 +01:00
data['frequency'] not in ['recuring', 'one_time'] or \
data['currency'] not in currencies or \
2021-02-15 04:53:44 +01:00
int(data['quantity']) <= 0:
return jsonify(error="Bad value"), 400
2021-02-15 04:36:24 +01:00
# Create new Checkout Session for the order
2021-02-19 00:14:04 +01:00
price = donation[data['frequency']][data['currency']]
mode = "payment" if data['frequency'] == 'one_time' else "subscription"
2021-02-15 04:36:24 +01:00
checkout_session = stripe.checkout.Session.create(
success_url=domain_url +
2021-02-19 00:14:04 +01:00
"/success?session_id={CHECKOUT_SESSION_ID}",
cancel_url=domain_url + "/canceled",
2021-02-15 04:36:24 +01:00
payment_method_types= ["card"],
mode=mode,
line_items=[
{
2021-02-19 00:14:04 +01:00
"price": price,
2021-02-15 04:36:24 +01:00
"quantity": data['quantity']
}
]
)
return jsonify({'sessionId': checkout_session['id']})
except Exception as e:
return jsonify(error=str(e)), 403
if __name__ == '__main__':
2021-02-19 00:14:04 +01:00
app.run(port=app.config['PORT'], debug=app.debug)