- Add Hermes webhook platform support on ntfy.hallsworth.ca - Add /admin/settings form to configure webhook URL + HMAC secret - Add /admin/request/<id>/send-to-hermes action - POST request data to Hermes with V2 HMAC signature and callback URL - Hermes can reply via chat or POST the Suno prompt back to /api/prompt/<id> - Add test button, update README, bump version to 0.7.0
501 lines
20 KiB
HTML
501 lines
20 KiB
HTML
<!DOCTYPE html>
|
|
<html lang="en">
|
|
<head>
|
|
<meta charset="UTF-8">
|
|
<meta name="viewport" content="width=device-width, initial-scale=1.0">
|
|
<title>Admin Settings</title>
|
|
<style>
|
|
/*
|
|
Admin settings / maintenance page.
|
|
Two-column layout for booth open/closed status, database health,
|
|
statistics, revision limit, auto-refresh, SMTP config,
|
|
MP3 metadata defaults, database backup/restore, and system reset.
|
|
*/
|
|
:root{
|
|
--bg:#0b0f19;
|
|
--panel:#111827;
|
|
--text:#f3f4f6;
|
|
--muted:#9ca3af;
|
|
--accent:#60a5fa;
|
|
--accent-dark:#2563eb;
|
|
--danger:#dc2626;
|
|
--danger-dark:#991b1b;
|
|
--success:#10b981;
|
|
--warning:#f59e0b;
|
|
--border:#374151;
|
|
}
|
|
*{box-sizing:border-box;}
|
|
body{
|
|
margin:0;
|
|
font-family:system-ui,-apple-system,BlinkMacSystemFont,"Segoe UI",Roboto,sans-serif;
|
|
background:var(--bg);
|
|
color:var(--text);
|
|
line-height:1.5;
|
|
}
|
|
.container{max-width:1200px;margin:0 auto;padding:1.5rem;}
|
|
.topbar{
|
|
display:flex;
|
|
justify-content:space-between;
|
|
align-items:center;
|
|
margin-bottom:1.5rem;
|
|
}
|
|
h1{margin:0;font-size:1.5rem;}
|
|
.nav a{
|
|
color:var(--accent);
|
|
text-decoration:none;
|
|
margin-left:1rem;
|
|
}
|
|
.messages p{
|
|
padding:.75rem 1rem;
|
|
border-radius:.5rem;
|
|
margin:0 0 1rem;
|
|
}
|
|
.messages .success{background:#064e3b;color:#a7f3d0;}
|
|
.messages .error{background:#450a0a;color:#fca5a5;}
|
|
|
|
/* Two-column grid for settings */
|
|
.grid{
|
|
display:grid;
|
|
grid-template-columns:repeat(2, 1fr);
|
|
gap:1.5rem;
|
|
}
|
|
@media (max-width:900px){
|
|
.grid{grid-template-columns:1fr;}
|
|
}
|
|
|
|
.section{
|
|
background:var(--panel);
|
|
border:1px solid var(--border);
|
|
border-radius:.75rem;
|
|
padding:1.25rem;
|
|
}
|
|
.section h2{
|
|
margin-top:0;
|
|
font-size:1.15rem;
|
|
color:var(--accent);
|
|
}
|
|
.section p{
|
|
margin:.5rem 0;
|
|
color:var(--muted);
|
|
font-size:.95rem;
|
|
}
|
|
label{
|
|
display:block;
|
|
margin-top:.75rem;
|
|
font-size:.9rem;
|
|
color:var(--muted);
|
|
}
|
|
input[type="text"],input[type="number"],input[type="password"],textarea,select{
|
|
width:100%;
|
|
padding:.6rem;
|
|
border-radius:.4rem;
|
|
border:1px solid var(--border);
|
|
background:#1f2937;
|
|
color:var(--text);
|
|
font:inherit;
|
|
margin-top:.25rem;
|
|
}
|
|
textarea{resize:vertical;}
|
|
button{
|
|
margin-top:1rem;
|
|
padding:.65rem 1.2rem;
|
|
background:var(--accent-dark);
|
|
color:#fff;
|
|
border:none;
|
|
border-radius:.5rem;
|
|
cursor:pointer;
|
|
font-weight:600;
|
|
}
|
|
button:hover{background:var(--accent);}
|
|
|
|
/* Metadata and email config tables */
|
|
.meta-table{
|
|
width:100%;
|
|
border-collapse:collapse;
|
|
margin-top:.5rem;
|
|
}
|
|
.meta-table td{
|
|
padding:.5rem;
|
|
vertical-align:top;
|
|
border-bottom:1px solid var(--border);
|
|
}
|
|
.meta-table td:first-child{
|
|
width:30%;
|
|
font-size:.9rem;
|
|
color:var(--muted);
|
|
padding-left:0;
|
|
}
|
|
.meta-table td:last-child{padding-right:0;}
|
|
.meta-table tr:last-child td{border-bottom:none;}
|
|
.meta-table input,.meta-table textarea,.meta-table select{
|
|
margin-top:0;
|
|
}
|
|
|
|
.danger-zone{
|
|
grid-column:1 / -1;
|
|
background:#450a0a;
|
|
border:1px solid #7f1d1d;
|
|
border-radius:.75rem;
|
|
padding:1.25rem;
|
|
}
|
|
.danger-zone h2{margin-top:0;color:#fca5a5;}
|
|
.danger-zone button{
|
|
background:var(--danger);
|
|
}
|
|
.danger-zone button:hover{background:var(--danger-dark);}
|
|
|
|
.status-ok{color:var(--success);font-weight:600;}
|
|
.status-bad{color:var(--warning);font-weight:600;}
|
|
.copy-hint{font-size:.85rem;color:var(--muted);margin-top:.25rem;}
|
|
.path{word-break:break-all;font-family:monospace;font-size:.85rem;}
|
|
.version-tag{
|
|
display:inline-block;
|
|
background:#2563eb;
|
|
color:#fff;
|
|
font-size:.85rem;
|
|
font-weight:700;
|
|
padding:.25rem .6rem;
|
|
border-radius:.4rem;
|
|
margin-left:.75rem;
|
|
vertical-align:middle;
|
|
}
|
|
</style>
|
|
</head>
|
|
<body>
|
|
<div class="container">
|
|
<div class="topbar">
|
|
<h1>Admin Settings <span class="version-tag">v{{ version }}</span></h1>
|
|
<div class="nav">
|
|
<a href="{{ url_for('admin_dashboard') }}">← Back to Dashboard</a>
|
|
<a href="{{ url_for('admin_logout') }}">Log out</a>
|
|
</div>
|
|
</div>
|
|
|
|
{% with messages = get_flashed_messages(with_categories=true) %}
|
|
{% if messages %}
|
|
<div class="messages">
|
|
{% for category, message in messages %}
|
|
<p class="{{ category }}">{{ message }}</p>
|
|
{% endfor %}
|
|
</div>
|
|
{% endif %}
|
|
{% endwith %}
|
|
|
|
<div class="grid">
|
|
|
|
<!-- Database health check -->
|
|
<div class="section">
|
|
<h2>Booth Status</h2>
|
|
<p class="copy-hint">When closed, the public request page shows a "booth closed" message instead of the form.</p>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="save_booth_open">
|
|
<label for="booth_open">Booth is currently</label>
|
|
<select id="booth_open" name="booth_open">
|
|
<option value="1" {% if booth_open %}selected{% endif %}>Open ✅</option>
|
|
<option value="0" {% if not booth_open %}selected{% endif %}>Closed ❌</option>
|
|
</select>
|
|
<button type="submit">Save Booth Status</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- Database health check -->
|
|
<div class="section">
|
|
<h2>Database Health</h2>
|
|
{% if not health.ok %}
|
|
<p class="status-bad">❌ {{ health.message }}</p>
|
|
{% if health.missing_columns %}
|
|
<p>Missing columns: {{ health.missing_columns | join(', ') }}</p>
|
|
{% endif %}
|
|
{% if health.missing_tables %}
|
|
<p>Missing tables: {{ health.missing_tables | join(', ') }}</p>
|
|
{% endif %}
|
|
<form method="POST" action="{{ url_for('admin_settings') }}">
|
|
<input type="hidden" name="action" value="fix_db">
|
|
<button type="submit">Fix Database Schema</button>
|
|
</form>
|
|
{% else %}
|
|
<p class="status-ok">✅ {{ health.message }}</p>
|
|
<form method="POST" action="{{ url_for('admin_settings') }}" style="margin-top:.5rem">
|
|
<input type="hidden" name="action" value="fix_db">
|
|
<button type="submit" class="secondary">Recheck / Apply Schema</button>
|
|
</form>
|
|
{% endif %}
|
|
</div>
|
|
|
|
<!-- Database statistics -->
|
|
<div class="section">
|
|
<h2>Database Statistics</h2>
|
|
<p><strong>Total requests:</strong> {{ total_records }}</p>
|
|
<p><strong>Database size:</strong> {{ db_size }}</p>
|
|
<p><strong>Uploaded MP3s:</strong> {{ upload_file_count }} files in {{ upload_dir_count }} request folders</p>
|
|
<p><strong>Uploads total size:</strong> {{ upload_size }}</p>
|
|
{% if status_counts %}
|
|
<p><strong>Status breakdown:</strong></p>
|
|
<ul>
|
|
{% for status, count in status_counts.items() %}
|
|
<li>{{ status }}: {{ count }}</li>
|
|
{% endfor %}
|
|
</ul>
|
|
{% endif %}
|
|
<p><strong>Database path:</strong><br><span class="path">{{ db_path }}</span></p>
|
|
<p><strong>Uploads path:</strong><br><span class="path">{{ upload_path }}</span></p>
|
|
</div>
|
|
|
|
<!-- Revision limit -->
|
|
<div class="section">
|
|
<h2>Revision Limit</h2>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="save_max_revisions">
|
|
<label for="max_revisions">Maximum customer revisions allowed</label>
|
|
<input type="number" id="max_revisions" name="max_revisions" min="0" value="{{ current_max_revisions }}">
|
|
<p class="copy-hint">Set to 0 to disable customer-submitted revisions. Operators can still upload new versions manually.</p>
|
|
<button type="submit">Save Revision Limit</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- Auto refresh -->
|
|
<div class="section">
|
|
<h2>Dashboard Auto-Refresh</h2>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="save_refresh">
|
|
<label for="refresh_seconds">Refresh interval</label>
|
|
<select id="refresh_seconds" name="refresh_seconds">
|
|
<option value="0" {% if current_refresh_seconds == 0 %}selected{% endif %}>Off</option>
|
|
<option value="10" {% if current_refresh_seconds == 10 %}selected{% endif %}>10 seconds</option>
|
|
<option value="20" {% if current_refresh_seconds == 20 %}selected{% endif %}>20 seconds</option>
|
|
<option value="30" {% if current_refresh_seconds == 30 %}selected{% endif %}>30 seconds</option>
|
|
</select>
|
|
<button type="submit">Save Refresh Interval</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- Kiosk cycle -->
|
|
<div class="section">
|
|
<h2>Kiosk Display Mode</h2>
|
|
<p class="copy-hint">Set how the public <a href="{{ url_for('kiosk') }}" target="_blank" rel="noopener noreferrer">/kiosk</a> page cycles. Use -1 for QR only, 0 for pricing only, 1 for queue only, or 5+ seconds to cycle between QR, pricing, and queue.</p>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="save_kiosk_cycle">
|
|
<label for="kiosk_cycle_seconds">Kiosk cycle seconds</label>
|
|
<input type="number" id="kiosk_cycle_seconds" name="kiosk_cycle_seconds" value="{{ current_kiosk_cycle_seconds }}" min="-1">
|
|
<p class="copy-hint">Examples: -1 = QR only, 0 = pricing only, 1 = queue only, 10 = rotate QR → pricing → queue every 10 seconds.</p>
|
|
<button type="submit">Save Kiosk Mode</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- Hermes API Key display (env var only; no regeneration) -->
|
|
<div class="section">
|
|
<h2>Hermes API Key</h2>
|
|
<p class="copy-hint">Set via Portainer env var <code>HERMES_API_KEY</code>. Used for callback auth.</p>
|
|
<p><strong>Current key:</strong> <code>{{ hermes_key_masked }}</code></p>
|
|
|
|
{% if not hermes_key_set %}
|
|
<p class="status-bad">⚠️ No Hermes API key is configured. Set the HERMES_API_KEY environment variable in Portainer before using the callback workflow.</p>
|
|
{% endif %}
|
|
|
|
<hr style="border:none;border-top:1px solid var(--border);margin:1.5rem 0;">
|
|
|
|
<h3>Callback Link Expiry</h3>
|
|
<p class="copy-hint">How long the signed Hermes callback URL stays valid (in hours). Default is 168 hours (7 days).</p>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="save_callback_expiry">
|
|
<label for="callback_expiry_hours">Callback expiry (hours)</label>
|
|
<input type="number" id="callback_expiry_hours" name="callback_expiry_hours" value="{{ current_callback_expiry_hours }}" min="1">
|
|
<button type="submit">Save Callback Expiry</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- ntfy push notifications -->
|
|
<div class="section">
|
|
<h2>ntfy Notifications</h2>
|
|
<p class="copy-hint">Push notifications for new customer requests. Leave either field blank to disable.</p>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="save_ntfy">
|
|
<table class="meta-table">
|
|
<tr>
|
|
<td>ntfy Server URL</td>
|
|
<td><input type="text" id="ntfy_server" name="ntfy_server" value="{{ ntfy.get('ntfy_server', '') }}" placeholder="e.g. https://ntfy.hallsworth.ca"></td>
|
|
</tr>
|
|
<tr>
|
|
<td>ntfy Topic</td>
|
|
<td><input type="text" id="ntfy_topic" name="ntfy_topic" value="{{ ntfy.get('ntfy_topic', '') }}" placeholder="e.g. Troll-AI-ntfy"></td>
|
|
</tr>
|
|
<tr>
|
|
<td>ntfy Access Token</td>
|
|
<td>
|
|
<input type="password" id="ntfy_token" name="ntfy_token" placeholder="{% if ntfy.get('ntfy_token') %}Stored encrypted — type to replace{% else %}Enter token (optional){% endif %}">
|
|
<p class="copy-hint">Required if the topic is access-controlled. Leave blank to keep the existing stored token.</p>
|
|
</td>
|
|
</tr>
|
|
</table>
|
|
<button type="submit">Save ntfy Settings</button>
|
|
</form>
|
|
|
|
<hr style="border:none;border-top:1px solid var(--border);margin:1.5rem 0;">
|
|
|
|
<h3>Send Test Notification</h3>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="send_test_ntfy">
|
|
<button type="submit">Send Test ntfy</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- Hermes webhook integration -->
|
|
<div class="section">
|
|
<h2>Hermes Webhook</h2>
|
|
<p class="copy-hint">Push song request data to Hermes so it can generate Suno prompts automatically. The URL must include the route name (e.g. https://ntfy.hallsworth.ca/webhooks/trollgorithm-song-info). The secret is encrypted before storage.</p>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="save_hermes_webhook">
|
|
<table class="meta-table">
|
|
<tr>
|
|
<td>Webhook URL</td>
|
|
<td><input type="text" id="hermes_webhook_url" name="hermes_webhook_url" value="{{ hermes_webhook.get('url', '') }}" placeholder="https://ntfy.hallsworth.ca/webhooks/trollgorithm-song-info"></td>
|
|
</tr>
|
|
<tr>
|
|
<td>HMAC Secret</td>
|
|
<td>
|
|
<input type="password" id="hermes_webhook_secret" name="hermes_webhook_secret" placeholder="{% if hermes_webhook.get('secret') %}Stored encrypted — type to replace{% else %}Enter secret{% endif %}">
|
|
<p class="copy-hint">From the Hermes webhook subscription. Leave blank to keep the existing stored secret.</p>
|
|
</td>
|
|
</tr>
|
|
</table>
|
|
<button type="submit">Save Hermes Webhook</button>
|
|
</form>
|
|
|
|
<hr style="border:none;border-top:1px solid var(--border);margin:1.5rem 0;">
|
|
|
|
<h3>Send Test Request</h3>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="send_test_hermes_webhook">
|
|
<button type="submit">Send Test to Hermes</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- Email / SMTP configuration -->
|
|
<div class="section">
|
|
<h2>Email (SMTP) Settings</h2>
|
|
<p class="copy-hint">These settings are used to send confirmation, preview, and delivery emails to customers. The password is stored encrypted using the Flask secret key.</p>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="save_email_config">
|
|
<table class="meta-table">
|
|
<tr>
|
|
<td>SMTP Host</td>
|
|
<td><input type="text" id="smtp_host" name="smtp_host" value="{{ email_form.smtp_host }}" placeholder="e.g. mailroot8.namespro.ca"></td>
|
|
</tr>
|
|
<tr>
|
|
<td>SMTP Port</td>
|
|
<td><input type="text" id="smtp_port" name="smtp_port" value="{{ email_form.smtp_port }}" placeholder="e.g. 465"></td>
|
|
</tr>
|
|
<tr>
|
|
<td>SMTP Username</td>
|
|
<td><input type="text" id="smtp_user" name="smtp_user" value="{{ email_form.smtp_user }}" placeholder="e.g. ai@hallsworth.ca"></td>
|
|
</tr>
|
|
<tr>
|
|
<td>From Address</td>
|
|
<td><input type="text" id="smtp_from" name="smtp_from" value="{{ email_form.smtp_from }}" placeholder="e.g. ai@hallsworth.ca"></td>
|
|
</tr>
|
|
<tr>
|
|
<td>SMTP Password</td>
|
|
<td>
|
|
<input type="password" id="smtp_pass" name="smtp_pass" placeholder="{% if email_form.smtp_pass_set %}Stored encrypted — type to replace{% else %}Enter password{% endif %}">
|
|
</td>
|
|
</tr>
|
|
|
|
</table>
|
|
<button type="submit">Save Email Settings</button>
|
|
</form>
|
|
|
|
<hr style="border:none;border-top:1px solid var(--border);margin:1.5rem 0;">
|
|
|
|
<h3>Send Test Email</h3>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="send_test_email">
|
|
<label for="test_email_address">Test recipient address</label>
|
|
<input type="email" id="test_email_address" name="test_email_address" placeholder="you@example.com" required>
|
|
<button type="submit">Send Test Email</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- MP3 metadata defaults -->
|
|
<div class="section">
|
|
<h2>MP3 Metadata Tags</h2>
|
|
<p class="copy-hint">These values are written into every uploaded MP3 file. The song title from the prompt is written to the Title tag automatically. Blank fields are skipped.</p>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="save_metadata">
|
|
<table class="meta-table">
|
|
<tr>
|
|
<td>Artist</td>
|
|
<td><input type="text" id="artist" name="artist" value="{{ metadata.get('artist', '') or '' }}" placeholder="e.g. Trollgorithm"></td>
|
|
</tr>
|
|
<tr>
|
|
<td>Album</td>
|
|
<td><input type="text" id="album" name="album" value="{{ metadata.get('album', '') or '' }}" placeholder="e.g. Theme Song Booth 2026"></td>
|
|
</tr>
|
|
<tr>
|
|
<td>Year</td>
|
|
<td><input type="text" id="year" name="year" value="{{ metadata.get('year', '') or '' }}" placeholder="e.g. 2026"></td>
|
|
</tr>
|
|
<tr>
|
|
<td>Comment</td>
|
|
<td><textarea id="comment" name="comment" rows="3" placeholder="e.g. Custom theme song generated at the booth">{{ metadata.get('comment', '') or '' }}</textarea></td>
|
|
</tr>
|
|
</table>
|
|
<button type="submit">Save Metadata Defaults</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- Database backup / restore -->
|
|
<div class="section">
|
|
<h2>Database Backup / Restore</h2>
|
|
<p class="copy-hint">Download a copy of the SQLite database before the event. Upload a previous backup to restore it; the current database will be renamed as a timestamped backup.</p>
|
|
|
|
<form method="POST" style="margin-bottom:1rem">
|
|
<input type="hidden" name="action" value="download_db">
|
|
<button type="submit">Download Database Backup</button>
|
|
</form>
|
|
|
|
<form method="POST" enctype="multipart/form-data">
|
|
<input type="hidden" name="action" value="restore_db">
|
|
<label for="db_backup">Restore from backup (.db / .sqlite)</label>
|
|
<input type="file" id="db_backup" name="db_backup" accept=".db,.sqlite,.sqlite3">
|
|
<button type="submit" onclick="return confirm('This will replace the current database. The old one will be kept as a timestamped backup. Continue?')">Restore Database</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- Uploads backup -->
|
|
<div class="section">
|
|
<h2>Music Files Backup</h2>
|
|
<p class="copy-hint">Download all uploaded MP3 and archived revision files as a single ZIP.</p>
|
|
<form method="POST">
|
|
<input type="hidden" name="action" value="download_uploads_zip">
|
|
<button type="submit">Download Music Files ZIP</button>
|
|
</form>
|
|
</div>
|
|
|
|
<!-- System reset spans both columns -->
|
|
<div class="danger-zone">
|
|
<h2>⚠️ Reset System</h2>
|
|
<p>Use this only at the start of a new event. It will delete every request and every uploaded MP3 file. This cannot be undone.</p>
|
|
<form method="POST" action="{{ url_for('admin_settings') }}" onsubmit="return confirm('ARE YOU SURE? This will delete ALL requests and ALL uploaded files. This cannot be undone.')">
|
|
<input type="hidden" name="action" value="reset_system">
|
|
<button type="submit">Reset System</button>
|
|
</form>
|
|
</div>
|
|
</div>
|
|
</div>
|
|
|
|
<script>
|
|
function copyHermesKey() {
|
|
const el = document.getElementById('new-hermes-key');
|
|
if (!el) return;
|
|
const range = document.createRange();
|
|
range.selectNode(el);
|
|
const selection = window.getSelection();
|
|
selection.removeAllRanges();
|
|
selection.addRange(range);
|
|
navigator.clipboard.writeText(el.textContent).then(() => {
|
|
alert('Hermes API key copied!');
|
|
});
|
|
}
|
|
</script>
|
|
</body>
|
|
</html>
|