
- FastAPI application with JWT authentication and role-based access control - Complete employee management with CRUD operations - Department management with manager assignments - Leave management system with approval workflow - Payroll processing with overtime and deductions calculation - Attendance tracking with clock in/out functionality - SQLite database with proper migrations using Alembic - Role-based permissions (Admin, HR Manager, Manager, Employee) - Comprehensive API documentation and health checks - CORS enabled for cross-origin requests Environment Variables Required: - SECRET_KEY: JWT secret key for token signing Features implemented: - User registration and authentication - Employee profile management - Department hierarchy management - Leave request creation and approval - Payroll record processing - Daily attendance tracking - Hours calculation for attendance - Proper error handling and validation
76 lines
2.7 KiB
Python
76 lines
2.7 KiB
Python
from fastapi import APIRouter, Depends, HTTPException
|
|
from sqlalchemy.orm import Session
|
|
from typing import List
|
|
from app.db.session import get_db
|
|
from app.schemas.departments import Department, DepartmentCreate, DepartmentUpdate
|
|
from app.models.departments import Department as DepartmentModel
|
|
from app.models.users import User, UserRole
|
|
from app.core.deps import require_role
|
|
|
|
router = APIRouter()
|
|
|
|
@router.post("", response_model=Department)
|
|
def create_department(
|
|
department: DepartmentCreate,
|
|
db: Session = Depends(get_db),
|
|
current_user: User = Depends(require_role([UserRole.ADMIN, UserRole.HR_MANAGER]))
|
|
):
|
|
db_department = DepartmentModel(**department.dict())
|
|
db.add(db_department)
|
|
db.commit()
|
|
db.refresh(db_department)
|
|
return db_department
|
|
|
|
@router.get("", response_model=List[Department])
|
|
def read_departments(
|
|
skip: int = 0,
|
|
limit: int = 100,
|
|
db: Session = Depends(get_db),
|
|
current_user: User = Depends(require_role([UserRole.ADMIN, UserRole.HR_MANAGER, UserRole.MANAGER]))
|
|
):
|
|
departments = db.query(DepartmentModel).offset(skip).limit(limit).all()
|
|
return departments
|
|
|
|
@router.get("/{department_id}", response_model=Department)
|
|
def read_department(
|
|
department_id: int,
|
|
db: Session = Depends(get_db),
|
|
current_user: User = Depends(require_role([UserRole.ADMIN, UserRole.HR_MANAGER, UserRole.MANAGER]))
|
|
):
|
|
department = db.query(DepartmentModel).filter(DepartmentModel.id == department_id).first()
|
|
if department is None:
|
|
raise HTTPException(status_code=404, detail="Department not found")
|
|
return department
|
|
|
|
@router.put("/{department_id}", response_model=Department)
|
|
def update_department(
|
|
department_id: int,
|
|
department_update: DepartmentUpdate,
|
|
db: Session = Depends(get_db),
|
|
current_user: User = Depends(require_role([UserRole.ADMIN, UserRole.HR_MANAGER]))
|
|
):
|
|
department = db.query(DepartmentModel).filter(DepartmentModel.id == department_id).first()
|
|
if department is None:
|
|
raise HTTPException(status_code=404, detail="Department not found")
|
|
|
|
update_data = department_update.dict(exclude_unset=True)
|
|
for field, value in update_data.items():
|
|
setattr(department, field, value)
|
|
|
|
db.commit()
|
|
db.refresh(department)
|
|
return department
|
|
|
|
@router.delete("/{department_id}")
|
|
def delete_department(
|
|
department_id: int,
|
|
db: Session = Depends(get_db),
|
|
current_user: User = Depends(require_role([UserRole.ADMIN]))
|
|
):
|
|
department = db.query(DepartmentModel).filter(DepartmentModel.id == department_id).first()
|
|
if department is None:
|
|
raise HTTPException(status_code=404, detail="Department not found")
|
|
|
|
db.delete(department)
|
|
db.commit()
|
|
return {"message": "Department deleted successfully"} |