feat: 구매/안전 시스템 전면 개편 — tkpurchase 개편 + tksafety 신규 + 권한 보강

Phase 1: tkuser 협력업체 CRUD 이관 (읽기전용 → 전체 CRUD)
Phase 2: tkpurchase 개편 — 일용공 신청/확정, 작업일정, 업무현황, 계정관리, 협력업체 포털
Phase 3: tksafety 신규 시스템 — 방문관리 + 안전교육 신고
Phase 4: SSO 인증 보강 (partner_company_id JWT, 만료일 체크), 권한 테이블 기반 접근 제어

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
This commit is contained in:
Hyungi Ahn
2026-03-12 17:42:59 +09:00
parent a195dd1d50
commit b800792152
63 changed files with 5548 additions and 262 deletions

View File

@@ -26,6 +26,47 @@ async function getById(req, res) {
}
}
async function create(req, res) {
try {
const { company_name } = req.body;
if (!company_name || !company_name.trim()) {
return res.status(400).json({ success: false, error: '업체명은 필수입니다' });
}
const company = await partnerModel.create(req.body);
res.status(201).json({ success: true, data: company });
} catch (err) {
if (err.code === 'ER_DUP_ENTRY') {
return res.status(400).json({ success: false, error: '이미 등록된 사업자번호입니다' });
}
console.error('Partner create error:', err);
res.status(500).json({ success: false, error: err.message });
}
}
async function update(req, res) {
try {
const company = await partnerModel.update(req.params.id, req.body);
if (!company) return res.status(404).json({ success: false, error: '업체를 찾을 수 없습니다' });
res.json({ success: true, data: company });
} catch (err) {
if (err.code === 'ER_DUP_ENTRY') {
return res.status(400).json({ success: false, error: '이미 등록된 사업자번호입니다' });
}
console.error('Partner update error:', err);
res.status(500).json({ success: false, error: err.message });
}
}
async function deactivate(req, res) {
try {
await partnerModel.deactivate(req.params.id);
res.json({ success: true, message: '비활성화 완료' });
} catch (err) {
console.error('Partner deactivate error:', err);
res.status(500).json({ success: false, error: err.message });
}
}
async function listWorkers(req, res) {
try {
const rows = await partnerModel.findWorkersByCompany(req.params.id);
@@ -36,4 +77,49 @@ async function listWorkers(req, res) {
}
}
module.exports = { list, getById, listWorkers };
async function createWorker(req, res) {
try {
const { worker_name, is_team_leader, phone } = req.body;
if (!worker_name || !worker_name.trim()) {
return res.status(400).json({ success: false, error: '작업자명은 필수입니다' });
}
if (is_team_leader && (!phone || !phone.trim())) {
return res.status(400).json({ success: false, error: '팀장급은 연락처 필수입니다' });
}
const worker = await partnerModel.createWorker(req.params.id, req.body);
res.status(201).json({ success: true, data: worker });
} catch (err) {
console.error('Worker create error:', err);
res.status(500).json({ success: false, error: err.message });
}
}
async function updateWorker(req, res) {
try {
const { is_team_leader, phone } = req.body;
if (is_team_leader && (!phone || !phone.trim())) {
return res.status(400).json({ success: false, error: '팀장급은 연락처 필수입니다' });
}
const worker = await partnerModel.updateWorker(req.params.id, req.body);
if (!worker) return res.status(404).json({ success: false, error: '작업자를 찾을 수 없습니다' });
res.json({ success: true, data: worker });
} catch (err) {
console.error('Worker update error:', err);
res.status(500).json({ success: false, error: err.message });
}
}
async function deactivateWorker(req, res) {
try {
await partnerModel.deactivateWorker(req.params.id);
res.json({ success: true, message: '비활성화 완료' });
} catch (err) {
console.error('Worker deactivate error:', err);
res.status(500).json({ success: false, error: err.message });
}
}
module.exports = {
list, getById, create, update, deactivate,
listWorkers, createWorker, updateWorker, deactivateWorker
};

View File

@@ -1,5 +1,7 @@
const { getPool } = require('./userModel');
// ===== 협력업체 =====
async function findAll({ search, is_active } = {}) {
const db = getPool();
let sql = 'SELECT * FROM partner_companies WHERE 1=1';
@@ -17,6 +19,47 @@ async function findById(id) {
return rows[0] || null;
}
async function create(data) {
const db = getPool();
const [result] = await db.query(
`INSERT INTO partner_companies (company_name, business_number, representative, contact_name, contact_phone, address, business_type, insurance_number, insurance_expiry, notes)
VALUES (?, ?, ?, ?, ?, ?, ?, ?, ?, ?)`,
[data.company_name, data.business_number || null, data.representative || null,
data.contact_name || null, data.contact_phone || null, data.address || null,
data.business_type ? JSON.stringify(data.business_type) : null,
data.insurance_number || null, data.insurance_expiry || null, data.notes || null]
);
return findById(result.insertId);
}
async function update(id, data) {
const db = getPool();
const fields = [];
const values = [];
if (data.company_name !== undefined) { fields.push('company_name = ?'); values.push(data.company_name); }
if (data.business_number !== undefined) { fields.push('business_number = ?'); values.push(data.business_number || null); }
if (data.representative !== undefined) { fields.push('representative = ?'); values.push(data.representative || null); }
if (data.contact_name !== undefined) { fields.push('contact_name = ?'); values.push(data.contact_name || null); }
if (data.contact_phone !== undefined) { fields.push('contact_phone = ?'); values.push(data.contact_phone || null); }
if (data.address !== undefined) { fields.push('address = ?'); values.push(data.address || null); }
if (data.business_type !== undefined) { fields.push('business_type = ?'); values.push(data.business_type ? JSON.stringify(data.business_type) : null); }
if (data.insurance_number !== undefined) { fields.push('insurance_number = ?'); values.push(data.insurance_number || null); }
if (data.insurance_expiry !== undefined) { fields.push('insurance_expiry = ?'); values.push(data.insurance_expiry || null); }
if (data.notes !== undefined) { fields.push('notes = ?'); values.push(data.notes || null); }
if (data.is_active !== undefined) { fields.push('is_active = ?'); values.push(data.is_active); }
if (fields.length === 0) return findById(id);
values.push(id);
await db.query(`UPDATE partner_companies SET ${fields.join(', ')} WHERE id = ?`, values);
return findById(id);
}
async function deactivate(id) {
const db = getPool();
await db.query('UPDATE partner_companies SET is_active = FALSE WHERE id = ?', [id]);
}
// ===== 작업자 =====
async function findWorkersByCompany(companyId) {
const db = getPool();
const [rows] = await db.query(
@@ -26,4 +69,47 @@ async function findWorkersByCompany(companyId) {
return rows;
}
module.exports = { findAll, findById, findWorkersByCompany };
async function findWorkerById(id) {
const db = getPool();
const [rows] = await db.query('SELECT * FROM partner_workers WHERE id = ?', [id]);
return rows[0] || null;
}
async function createWorker(companyId, data) {
const db = getPool();
const [result] = await db.query(
`INSERT INTO partner_workers (company_id, worker_name, position, is_team_leader, phone, safety_training_date, notes)
VALUES (?, ?, ?, ?, ?, ?, ?)`,
[companyId, data.worker_name, data.position || null,
data.is_team_leader || false, data.phone || null,
data.safety_training_date || null, data.notes || null]
);
return findWorkerById(result.insertId);
}
async function updateWorker(id, data) {
const db = getPool();
const fields = [];
const values = [];
if (data.worker_name !== undefined) { fields.push('worker_name = ?'); values.push(data.worker_name); }
if (data.position !== undefined) { fields.push('position = ?'); values.push(data.position || null); }
if (data.is_team_leader !== undefined) { fields.push('is_team_leader = ?'); values.push(data.is_team_leader); }
if (data.phone !== undefined) { fields.push('phone = ?'); values.push(data.phone || null); }
if (data.safety_training_date !== undefined) { fields.push('safety_training_date = ?'); values.push(data.safety_training_date || null); }
if (data.notes !== undefined) { fields.push('notes = ?'); values.push(data.notes || null); }
if (data.is_active !== undefined) { fields.push('is_active = ?'); values.push(data.is_active); }
if (fields.length === 0) return findWorkerById(id);
values.push(id);
await db.query(`UPDATE partner_workers SET ${fields.join(', ')} WHERE id = ?`, values);
return findWorkerById(id);
}
async function deactivateWorker(id) {
const db = getPool();
await db.query('UPDATE partner_workers SET is_active = FALSE WHERE id = ?', [id]);
}
module.exports = {
findAll, findById, create, update, deactivate,
findWorkersByCompany, findWorkerById, createWorker, updateWorker, deactivateWorker
};

View File

@@ -55,8 +55,16 @@ const DEFAULT_PAGES = {
'ai_assistant': { title: 'AI 어시스턴트', system: 'system3', group: 'AI', default_access: false },
// ===== tkpurchase - 구매 관리 =====
'purchasing_visit': { title: '방문 관리', system: 'tkpurchase', group: '구매 관리', default_access: false },
'purchasing_partner': { title: '협력업체 관리', system: 'tkpurchase', group: '구매 관리', default_access: false },
'purchasing_daylabor': { title: '일용공 관리', system: 'tkpurchase', group: '구매 관리', default_access: false },
'purchasing_schedule': { title: '작업일정 관리', system: 'tkpurchase', group: '구매 관리', default_access: false },
'purchasing_workreport': { title: '업무현황 관리', system: 'tkpurchase', group: '구매 관리', default_access: false },
'purchasing_accounts': { title: '협력업체 계정', system: 'tkpurchase', group: '구매 관리', default_access: false },
'purchasing_partner_portal': { title: '협력업체 포털', system: 'tkpurchase', group: '협력업체', default_access: false },
'purchasing_partner_checkin': { title: '협력업체 체크인', system: 'tkpurchase', group: '협력업체', default_access: false },
// ===== tksafety - 안전 관리 =====
'safety_visit': { title: '방문 관리', system: 'tksafety', group: '안전 관리', default_access: false },
'safety_education': { title: '안전교육 관리', system: 'tksafety', group: '안전 관리', default_access: false },
};
/**

View File

@@ -97,7 +97,7 @@ async function findById(userId) {
async function findAll() {
const db = getPool();
const [rows] = await db.query(
'SELECT user_id, username, name, department, department_id, role, system1_access, system2_access, system3_access, is_active, last_login, created_at FROM sso_users ORDER BY user_id'
'SELECT user_id, username, name, department, department_id, role, system1_access, system2_access, system3_access, is_active, last_login, created_at FROM sso_users WHERE partner_company_id IS NULL ORDER BY user_id'
);
return rows;
}

View File

@@ -1,12 +1,19 @@
const express = require('express');
const router = express.Router();
const { requireAuth } = require('../middleware/auth');
const { requireAuth, requireAdmin } = require('../middleware/auth');
const ctrl = require('../controllers/partnerController');
router.use(requireAuth);
router.get('/', ctrl.list);
router.get('/:id', ctrl.getById);
router.post('/', requireAdmin, ctrl.create);
router.put('/:id', requireAdmin, ctrl.update);
router.delete('/:id', requireAdmin, ctrl.deactivate);
router.get('/:id/workers', ctrl.listWorkers);
router.post('/:id/workers', requireAdmin, ctrl.createWorker);
router.put('/workers/:id', requireAdmin, ctrl.updateWorker);
router.delete('/workers/:id', requireAdmin, ctrl.deactivateWorker);
module.exports = router;

View File

@@ -210,6 +210,18 @@
</div>
<div id="dept-tkpurchase-perms" class="p-4 border border-t-0 border-green-100 rounded-b-lg space-y-4"></div>
</div>
<!-- tksafety -->
<div>
<div class="flex items-center justify-between bg-orange-50 px-4 py-2 rounded-t-lg border border-orange-100">
<h4 class="font-semibold text-orange-800"><i class="fas fa-hard-hat mr-2"></i>안전 관리 (tksafety)</h4>
<div class="flex gap-2">
<button onclick="toggleDeptSystemAll('tksafety', true)" class="text-xs text-orange-600 hover:underline">전체 허용</button>
<span class="text-gray-300">|</span>
<button onclick="toggleDeptSystemAll('tksafety', false)" class="text-xs text-orange-600 hover:underline">전체 해제</button>
</div>
</div>
<div id="dept-tksafety-perms" class="p-4 border border-t-0 border-orange-100 rounded-b-lg space-y-4"></div>
</div>
<!-- 저장 -->
<div class="flex items-center gap-3 pt-2">
<button id="saveDeptPermBtn" class="px-6 py-2.5 bg-slate-700 text-white rounded-lg hover:bg-slate-800 text-sm font-medium">
@@ -285,6 +297,18 @@
</div>
<div id="tkpurchase-perms" class="p-4 border border-t-0 border-green-100 rounded-b-lg space-y-4"></div>
</div>
<!-- tksafety -->
<div>
<div class="flex items-center justify-between bg-orange-50 px-4 py-2 rounded-t-lg border border-orange-100">
<h4 class="font-semibold text-orange-800"><i class="fas fa-hard-hat mr-2"></i>안전 관리 (tksafety)</h4>
<div class="flex gap-2">
<button onclick="toggleSystemAll('tksafety', true)" class="text-xs text-orange-600 hover:underline">전체 허용</button>
<span class="text-gray-300">|</span>
<button onclick="toggleSystemAll('tksafety', false)" class="text-xs text-orange-600 hover:underline">전체 해제</button>
</div>
</div>
<div id="tksafety-perms" class="p-4 border border-t-0 border-orange-100 rounded-b-lg space-y-4"></div>
</div>
<!-- 저장 버튼 -->
<div class="flex items-center gap-3 pt-2">
@@ -1423,7 +1447,12 @@
<div class="grid lg:grid-cols-5 gap-6">
<!-- 업체 목록 -->
<div class="lg:col-span-2 bg-white rounded-xl shadow-sm p-5">
<h2 class="text-base font-semibold text-gray-800 mb-4"><i class="fas fa-building text-emerald-500 mr-2"></i>협력업체</h2>
<div class="flex items-center justify-between mb-4">
<h2 class="text-base font-semibold text-gray-800"><i class="fas fa-building text-emerald-500 mr-2"></i>협력업체</h2>
<button id="btnAddPartnerTkuser" onclick="openAddPartnerTkuser()" class="hidden px-3 py-1.5 bg-slate-700 text-white rounded-lg text-xs hover:bg-slate-800">
<i class="fas fa-plus mr-1"></i>업체 등록
</button>
</div>
<div class="flex gap-2 mb-3">
<input type="text" id="partnerSearchTkuser" class="input-field flex-1 px-3 py-1.5 rounded-lg text-sm" placeholder="업체명/사업자번호 검색">
<select id="partnerFilterActiveTkuser" class="input-field px-2 py-1.5 rounded-lg text-sm">
@@ -1442,12 +1471,216 @@
<div id="partnerEmptyTkuser" class="text-center text-gray-400 py-16">
<i class="fas fa-building text-4xl mb-3"></i>
<p>업체를 선택하면 상세 정보를 볼 수 있습니다</p>
<p class="text-xs mt-2">협력업체 등록/수정은 <a href="https://tkpurchase.technicalkorea.net/partner.html" target="_blank" class="text-emerald-600 underline">tkpurchase</a>에서 관리합니다.</p>
</div>
</div>
</div>
</div>
<!-- 협력업체 등록 모달 -->
<div id="addPartnerModalTkuser" class="hidden fixed inset-0 bg-black bg-opacity-40 z-50 flex items-center justify-center p-4" onclick="if(event.target===this)closeAddPartnerTkuser()">
<div class="bg-white rounded-xl shadow-xl max-w-lg w-full p-6">
<div class="flex justify-between items-center mb-4">
<h3 class="text-lg font-semibold">협력업체 등록</h3>
<button onclick="closeAddPartnerTkuser()" class="text-gray-400 hover:text-gray-600"><i class="fas fa-times"></i></button>
</div>
<form id="addPartnerFormTkuser">
<div class="grid grid-cols-2 gap-3">
<div class="col-span-2">
<label class="block text-xs font-medium text-gray-600 mb-1">업체명 <span class="text-red-400">*</span></label>
<input type="text" id="newPartnerCompanyNameTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm" required>
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">사업자번호</label>
<input type="text" id="newPartnerBusinessNumberTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm" placeholder="000-00-00000">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">대표자</label>
<input type="text" id="newPartnerRepresentativeTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">담당자명</label>
<input type="text" id="newPartnerContactNameTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">담당자 연락처</label>
<input type="text" id="newPartnerContactPhoneTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div class="col-span-2">
<label class="block text-xs font-medium text-gray-600 mb-1">주소</label>
<input type="text" id="newPartnerAddressTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">업종 (콤마 구분)</label>
<input type="text" id="newPartnerBusinessTypeTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm" placeholder="배관, 용접">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">산재보험 관리번호</label>
<input type="text" id="newPartnerInsuranceNumberTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">산재보험 만료일</label>
<input type="date" id="newPartnerInsuranceExpiryTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">비고</label>
<input type="text" id="newPartnerNotesTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
</div>
<div class="flex justify-end mt-4 gap-2">
<button type="button" onclick="closeAddPartnerTkuser()" class="px-4 py-2 border rounded-lg text-sm hover:bg-gray-50">취소</button>
<button type="submit" class="px-4 py-2 bg-slate-700 text-white rounded-lg text-sm hover:bg-slate-800">등록</button>
</div>
</form>
</div>
</div>
<!-- 협력업체 수정 모달 -->
<div id="editPartnerModalTkuser" class="hidden fixed inset-0 bg-black bg-opacity-40 z-50 flex items-center justify-center p-4" onclick="if(event.target===this)closeEditPartnerTkuser()">
<div class="bg-white rounded-xl shadow-xl max-w-lg w-full p-6">
<div class="flex justify-between items-center mb-4">
<h3 class="text-lg font-semibold">협력업체 수정</h3>
<button onclick="closeEditPartnerTkuser()" class="text-gray-400 hover:text-gray-600"><i class="fas fa-times"></i></button>
</div>
<form id="editPartnerFormTkuser">
<input type="hidden" id="editPartnerIdTkuser">
<div class="grid grid-cols-2 gap-3">
<div class="col-span-2">
<label class="block text-xs font-medium text-gray-600 mb-1">업체명 <span class="text-red-400">*</span></label>
<input type="text" id="editPartnerCompanyNameTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm" required>
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">사업자번호</label>
<input type="text" id="editPartnerBusinessNumberTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">대표자</label>
<input type="text" id="editPartnerRepresentativeTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">담당자명</label>
<input type="text" id="editPartnerContactNameTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">담당자 연락처</label>
<input type="text" id="editPartnerContactPhoneTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div class="col-span-2">
<label class="block text-xs font-medium text-gray-600 mb-1">주소</label>
<input type="text" id="editPartnerAddressTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">업종 (콤마 구분)</label>
<input type="text" id="editPartnerBusinessTypeTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">산재보험 관리번호</label>
<input type="text" id="editPartnerInsuranceNumberTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">산재보험 만료일</label>
<input type="date" id="editPartnerInsuranceExpiryTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">비고</label>
<input type="text" id="editPartnerNotesTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
</div>
<div class="flex justify-end mt-4 gap-2">
<button type="button" onclick="closeEditPartnerTkuser()" class="px-4 py-2 border rounded-lg text-sm hover:bg-gray-50">취소</button>
<button type="submit" class="px-4 py-2 bg-slate-700 text-white rounded-lg text-sm hover:bg-slate-800">저장</button>
</div>
</form>
</div>
</div>
<!-- 작업자 등록 모달 -->
<div id="addWorkerModalTkuser" class="hidden fixed inset-0 bg-black bg-opacity-40 z-50 flex items-center justify-center p-4" onclick="if(event.target===this)closeAddWorkerTkuser()">
<div class="bg-white rounded-xl shadow-xl max-w-md w-full p-6">
<div class="flex justify-between items-center mb-4">
<h3 class="text-lg font-semibold">작업자 등록</h3>
<button onclick="closeAddWorkerTkuser()" class="text-gray-400 hover:text-gray-600"><i class="fas fa-times"></i></button>
</div>
<form id="addWorkerFormTkuser">
<div class="grid grid-cols-2 gap-3">
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">성명 <span class="text-red-400">*</span></label>
<input type="text" id="newWorkerNameTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm" required>
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">직위</label>
<input type="text" id="newWorkerPositionTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div class="flex items-end pb-1">
<label class="flex items-center gap-2 cursor-pointer">
<input type="checkbox" id="newWorkerIsLeaderTkuser" class="h-4 w-4 text-slate-600 rounded">
<span class="text-sm">팀장급</span>
</label>
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">연락처</label>
<input type="text" id="newWorkerPhoneTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm" placeholder="팀장급 필수">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">안전교육 이수일</label>
<input type="date" id="newWorkerSafetyDateTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">비고</label>
<input type="text" id="newWorkerNotesTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
</div>
<div class="flex justify-end mt-4 gap-2">
<button type="button" onclick="closeAddWorkerTkuser()" class="px-4 py-2 border rounded-lg text-sm hover:bg-gray-50">취소</button>
<button type="submit" class="px-4 py-2 bg-slate-700 text-white rounded-lg text-sm hover:bg-slate-800">등록</button>
</div>
</form>
</div>
</div>
<!-- 작업자 수정 모달 -->
<div id="editWorkerModalTkuser" class="hidden fixed inset-0 bg-black bg-opacity-40 z-50 flex items-center justify-center p-4" onclick="if(event.target===this)closeEditWorkerTkuser()">
<div class="bg-white rounded-xl shadow-xl max-w-md w-full p-6">
<div class="flex justify-between items-center mb-4">
<h3 class="text-lg font-semibold">작업자 수정</h3>
<button onclick="closeEditWorkerTkuser()" class="text-gray-400 hover:text-gray-600"><i class="fas fa-times"></i></button>
</div>
<form id="editWorkerFormTkuser">
<div class="grid grid-cols-2 gap-3">
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">성명</label>
<input type="text" id="editWorkerNameTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm" required>
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">직위</label>
<input type="text" id="editWorkerPositionTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div class="flex items-end pb-1">
<label class="flex items-center gap-2 cursor-pointer">
<input type="checkbox" id="editWorkerIsLeaderTkuser" class="h-4 w-4 text-slate-600 rounded">
<span class="text-sm">팀장급</span>
</label>
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">연락처</label>
<input type="text" id="editWorkerPhoneTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">안전교육 이수일</label>
<input type="date" id="editWorkerSafetyDateTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
<div>
<label class="block text-xs font-medium text-gray-600 mb-1">비고</label>
<input type="text" id="editWorkerNotesTkuser" class="input-field w-full px-3 py-2 rounded-lg text-sm">
</div>
</div>
<div class="flex justify-end mt-4 gap-2">
<button type="button" onclick="closeEditWorkerTkuser()" class="px-4 py-2 border rounded-lg text-sm hover:bg-gray-50">취소</button>
<button type="submit" class="px-4 py-2 bg-slate-700 text-white rounded-lg text-sm hover:bg-slate-800">저장</button>
</div>
</form>
</div>
</div>
<!-- 사진 확대 모달 -->
<div id="photoViewModal" class="fixed inset-0 bg-black bg-opacity-80 hidden z-[60] flex items-center justify-center p-4 cursor-pointer" onclick="this.classList.add('hidden')">
<img id="photoViewImage" class="max-w-full max-h-[90vh] rounded-lg shadow-2xl">

View File

@@ -92,7 +92,16 @@ async function init() {
// 쿠키에서 읽었으면 localStorage에도 백업 (다음 방문 시 쿠키 소실 대비)
if (!localStorage.getItem('sso_token')) localStorage.setItem('sso_token', token);
currentUser = { id: decoded.user_id||decoded.id, username: decoded.username||decoded.sub, name: decoded.name||decoded.full_name, role: (decoded.role||decoded.access_level||'').toLowerCase() };
currentUser = { id: decoded.user_id||decoded.id, username: decoded.username||decoded.sub, name: decoded.name||decoded.full_name, role: (decoded.role||decoded.access_level||'').toLowerCase(), partner_company_id: decoded.partner_company_id || null };
// 협력업체 계정 차단
if (currentUser.partner_company_id) {
location.href = location.hostname.includes('technicalkorea.net')
? 'https://tkpurchase.technicalkorea.net/partner-portal.html'
: location.protocol + '//' + location.hostname + ':30480/partner-portal.html';
return;
}
const dn = currentUser.name || currentUser.username;
document.getElementById('headerUserName').textContent = dn;
document.getElementById('headerUserRole').textContent = currentUser.role === 'admin' ? '관리자' : '사용자';

View File

@@ -1,11 +1,16 @@
/* ===== tkuser 협력업체 조회 (읽기 전용) ===== */
/* ===== tkuser 협력업체 CRUD ===== */
let partnersLoaded = false;
let partnersList = [];
let partnerWorkersList = [];
let selectedPartnerIdTkuser = null;
let editingWorkerIdTkuser = null;
async function loadPartnersTab() {
if (partnersLoaded) return;
partnersLoaded = true;
if (currentUser && ['admin', 'system'].includes(currentUser.role)) {
document.getElementById('btnAddPartnerTkuser')?.classList.remove('hidden');
}
await loadPartnersList();
}
@@ -30,6 +35,7 @@ function renderPartnersListTkuser() {
c.innerHTML = '<p class="text-gray-400 text-center py-4 text-sm">등록된 협력업체가 없습니다.</p>';
return;
}
const isAdmin = currentUser && ['admin', 'system'].includes(currentUser.role);
c.innerHTML = partnersList.map(p => {
const types = tryParseJsonTkuser(p.business_type) || [];
const typeStr = types.map(t => `<span class="px-1.5 py-0.5 rounded text-xs bg-blue-50 text-blue-600">${escHtml(t)}</span>`).join(' ');
@@ -47,6 +53,10 @@ function renderPartnersListTkuser() {
${typeStr}
</div>
</div>
${isAdmin ? `<div class="flex gap-1 ml-2 flex-shrink-0">
<button onclick="event.stopPropagation(); openEditPartnerTkuser(${p.id})" class="p-1.5 text-slate-500 hover:text-slate-700 hover:bg-slate-200 rounded" title="수정"><i class="fas fa-pen text-xs"></i></button>
${p.is_active ? `<button onclick="event.stopPropagation(); deactivatePartnerTkuser(${p.id}, '${escHtml(p.company_name).replace(/'/g, "\\'")}')" class="p-1.5 text-red-400 hover:text-red-600 hover:bg-red-100 rounded" title="비활성화"><i class="fas fa-ban text-xs"></i></button>` : ''}
</div>` : ''}
</div>`;
}).join('');
}
@@ -57,6 +67,7 @@ async function selectPartnerTkuser(id) {
try {
const r = await api(`/partners/${id}`);
const p = r.data;
partnerWorkersList = p.workers || [];
renderPartnerDetailTkuser(p);
document.getElementById('partnerDetailTkuser').classList.remove('hidden');
document.getElementById('partnerEmptyTkuser').classList.add('hidden');
@@ -68,6 +79,7 @@ async function selectPartnerTkuser(id) {
function renderPartnerDetailTkuser(p) {
const types = tryParseJsonTkuser(p.business_type) || [];
const workers = p.workers || [];
const isAdmin = currentUser && ['admin', 'system'].includes(currentUser.role);
document.getElementById('partnerDetailTkuser').innerHTML = `
<div class="bg-white rounded-xl shadow-sm p-5 mb-4">
<h3 class="text-lg font-semibold text-gray-800 mb-3">${escHtml(p.company_name)}</h3>
@@ -83,7 +95,10 @@ function renderPartnerDetailTkuser(p) {
</div>
</div>
<div class="bg-white rounded-xl shadow-sm p-5">
<h4 class="text-base font-semibold text-gray-800 mb-3"><i class="fas fa-users text-gray-400 mr-2"></i>소속 작업자 (${workers.length}명)</h4>
<div class="flex items-center justify-between mb-3">
<h4 class="text-base font-semibold text-gray-800"><i class="fas fa-users text-gray-400 mr-2"></i>소속 작업자 (${workers.length}명)</h4>
${isAdmin ? `<button onclick="openAddWorkerTkuser()" class="px-3 py-1.5 bg-slate-700 text-white rounded-lg text-xs hover:bg-slate-800"><i class="fas fa-user-plus mr-1"></i>작업자 등록</button>` : ''}
</div>
${workers.length ? workers.map(w => `
<div class="flex items-center justify-between p-2 bg-gray-50 rounded hover:bg-gray-100 mb-1">
<div>
@@ -91,19 +106,178 @@ function renderPartnerDetailTkuser(p) {
${w.is_team_leader ? '<span class="px-1.5 py-0.5 rounded text-xs bg-amber-50 text-amber-600 ml-1">팀장</span>' : ''}
${!w.is_active ? '<span class="px-1.5 py-0.5 rounded text-xs bg-gray-100 text-gray-400 ml-1">비활성</span>' : ''}
</div>
<div class="text-xs text-gray-500 flex gap-2">
${w.position ? `<span>${escHtml(w.position)}</span>` : ''}
${w.phone ? `<span>${escHtml(w.phone)}</span>` : ''}
${w.safety_training_date ? `<span>안전교육: ${formatDate(w.safety_training_date)}</span>` : ''}
<div class="flex items-center gap-2">
<div class="text-xs text-gray-500 flex gap-2">
${w.position ? `<span>${escHtml(w.position)}</span>` : ''}
${w.phone ? `<span>${escHtml(w.phone)}</span>` : ''}
${w.safety_training_date ? `<span>안전교육: ${formatDate(w.safety_training_date)}</span>` : ''}
</div>
${isAdmin ? `<div class="flex gap-1 ml-2">
<button onclick="openEditWorkerTkuser(${w.id})" class="p-1 text-slate-500 hover:text-slate-700 rounded" title="수정"><i class="fas fa-pen text-xs"></i></button>
${w.is_active ? `<button onclick="deactivateWorkerTkuser(${w.id})" class="p-1 text-red-400 hover:text-red-600 rounded" title="비활성화"><i class="fas fa-ban text-xs"></i></button>` : ''}
</div>` : ''}
</div>
</div>`).join('') : '<p class="text-gray-400 text-center py-4 text-sm">등록된 작업자가 없습니다</p>'}
</div>
<div class="mt-3 p-3 bg-emerald-50 rounded-lg text-sm text-emerald-700 flex items-center gap-2">
<i class="fas fa-info-circle"></i>
<span>협력업체 등록/수정은 <a href="https://tkpurchase.technicalkorea.net/partner.html" target="_blank" class="underline font-medium">tkpurchase</a>에서 관리합니다.</span>
</div>`;
}
/* ===== 업체 등록 ===== */
function openAddPartnerTkuser() { document.getElementById('addPartnerModalTkuser').classList.remove('hidden'); }
function closeAddPartnerTkuser() { document.getElementById('addPartnerModalTkuser').classList.add('hidden'); document.getElementById('addPartnerFormTkuser').reset(); }
async function submitAddPartnerTkuser(e) {
e.preventDefault();
const typesRaw = document.getElementById('newPartnerBusinessTypeTkuser').value.trim();
const data = {
company_name: document.getElementById('newPartnerCompanyNameTkuser').value.trim(),
business_number: document.getElementById('newPartnerBusinessNumberTkuser').value.trim() || null,
representative: document.getElementById('newPartnerRepresentativeTkuser').value.trim() || null,
contact_name: document.getElementById('newPartnerContactNameTkuser').value.trim() || null,
contact_phone: document.getElementById('newPartnerContactPhoneTkuser').value.trim() || null,
address: document.getElementById('newPartnerAddressTkuser').value.trim() || null,
business_type: typesRaw ? typesRaw.split(',').map(s => s.trim()).filter(Boolean) : null,
insurance_number: document.getElementById('newPartnerInsuranceNumberTkuser').value.trim() || null,
insurance_expiry: document.getElementById('newPartnerInsuranceExpiryTkuser').value || null,
notes: document.getElementById('newPartnerNotesTkuser').value.trim() || null,
};
if (!data.company_name) { showToast('업체명은 필수입니다', 'error'); return; }
try {
await api('/partners', { method: 'POST', body: JSON.stringify(data) });
showToast('업체가 등록되었습니다');
closeAddPartnerTkuser();
await loadPartnersList();
} catch (e) { showToast(e.message, 'error'); }
}
/* ===== 업체 수정 ===== */
function openEditPartnerTkuser(id) {
const p = partnersList.find(x => x.id === id);
if (!p) return;
const types = tryParseJsonTkuser(p.business_type) || [];
document.getElementById('editPartnerIdTkuser').value = p.id;
document.getElementById('editPartnerCompanyNameTkuser').value = p.company_name;
document.getElementById('editPartnerBusinessNumberTkuser').value = p.business_number || '';
document.getElementById('editPartnerRepresentativeTkuser').value = p.representative || '';
document.getElementById('editPartnerContactNameTkuser').value = p.contact_name || '';
document.getElementById('editPartnerContactPhoneTkuser').value = p.contact_phone || '';
document.getElementById('editPartnerAddressTkuser').value = p.address || '';
document.getElementById('editPartnerBusinessTypeTkuser').value = types.join(', ');
document.getElementById('editPartnerInsuranceNumberTkuser').value = p.insurance_number || '';
document.getElementById('editPartnerInsuranceExpiryTkuser').value = p.insurance_expiry ? formatDate(p.insurance_expiry) : '';
document.getElementById('editPartnerNotesTkuser').value = p.notes || '';
document.getElementById('editPartnerModalTkuser').classList.remove('hidden');
}
function closeEditPartnerTkuser() { document.getElementById('editPartnerModalTkuser').classList.add('hidden'); }
async function submitEditPartnerTkuser(e) {
e.preventDefault();
const id = document.getElementById('editPartnerIdTkuser').value;
const typesRaw = document.getElementById('editPartnerBusinessTypeTkuser').value.trim();
const data = {
company_name: document.getElementById('editPartnerCompanyNameTkuser').value.trim(),
business_number: document.getElementById('editPartnerBusinessNumberTkuser').value.trim() || null,
representative: document.getElementById('editPartnerRepresentativeTkuser').value.trim() || null,
contact_name: document.getElementById('editPartnerContactNameTkuser').value.trim() || null,
contact_phone: document.getElementById('editPartnerContactPhoneTkuser').value.trim() || null,
address: document.getElementById('editPartnerAddressTkuser').value.trim() || null,
business_type: typesRaw ? typesRaw.split(',').map(s => s.trim()).filter(Boolean) : null,
insurance_number: document.getElementById('editPartnerInsuranceNumberTkuser').value.trim() || null,
insurance_expiry: document.getElementById('editPartnerInsuranceExpiryTkuser').value || null,
notes: document.getElementById('editPartnerNotesTkuser').value.trim() || null,
};
try {
await api(`/partners/${id}`, { method: 'PUT', body: JSON.stringify(data) });
showToast('수정되었습니다');
closeEditPartnerTkuser();
await loadPartnersList();
if (selectedPartnerIdTkuser == id) selectPartnerTkuser(id);
} catch (e) { showToast(e.message, 'error'); }
}
/* ===== 업체 비활성화 ===== */
async function deactivatePartnerTkuser(id, name) {
if (!confirm(`"${name}" 업체를 비활성화하시겠습니까?`)) return;
try {
await api(`/partners/${id}`, { method: 'DELETE' });
showToast('비활성화 완료');
await loadPartnersList();
if (selectedPartnerIdTkuser === id) {
document.getElementById('partnerDetailTkuser').classList.add('hidden');
document.getElementById('partnerEmptyTkuser').classList.remove('hidden');
selectedPartnerIdTkuser = null;
}
} catch (e) { showToast(e.message, 'error'); }
}
/* ===== 작업자 등록 ===== */
function openAddWorkerTkuser() {
if (!selectedPartnerIdTkuser) { showToast('업체를 먼저 선택해주세요', 'error'); return; }
document.getElementById('addWorkerModalTkuser').classList.remove('hidden');
}
function closeAddWorkerTkuser() { document.getElementById('addWorkerModalTkuser').classList.add('hidden'); document.getElementById('addWorkerFormTkuser').reset(); }
async function submitAddWorkerTkuser(e) {
e.preventDefault();
const data = {
worker_name: document.getElementById('newWorkerNameTkuser').value.trim(),
position: document.getElementById('newWorkerPositionTkuser').value.trim() || null,
is_team_leader: document.getElementById('newWorkerIsLeaderTkuser').checked,
phone: document.getElementById('newWorkerPhoneTkuser').value.trim() || null,
safety_training_date: document.getElementById('newWorkerSafetyDateTkuser').value || null,
notes: document.getElementById('newWorkerNotesTkuser').value.trim() || null,
};
if (!data.worker_name) { showToast('작업자명은 필수입니다', 'error'); return; }
try {
await api(`/partners/${selectedPartnerIdTkuser}/workers`, { method: 'POST', body: JSON.stringify(data) });
showToast('작업자가 등록되었습니다');
closeAddWorkerTkuser();
await selectPartnerTkuser(selectedPartnerIdTkuser);
} catch (e) { showToast(e.message, 'error'); }
}
/* ===== 작업자 수정 ===== */
function openEditWorkerTkuser(id) {
const w = partnerWorkersList.find(x => x.id === id);
if (!w) return;
editingWorkerIdTkuser = id;
document.getElementById('editWorkerNameTkuser').value = w.worker_name;
document.getElementById('editWorkerPositionTkuser').value = w.position || '';
document.getElementById('editWorkerIsLeaderTkuser').checked = w.is_team_leader;
document.getElementById('editWorkerPhoneTkuser').value = w.phone || '';
document.getElementById('editWorkerSafetyDateTkuser').value = w.safety_training_date ? formatDate(w.safety_training_date) : '';
document.getElementById('editWorkerNotesTkuser').value = w.notes || '';
document.getElementById('editWorkerModalTkuser').classList.remove('hidden');
}
function closeEditWorkerTkuser() { document.getElementById('editWorkerModalTkuser').classList.add('hidden'); editingWorkerIdTkuser = null; }
async function submitEditWorkerTkuser(e) {
e.preventDefault();
if (!editingWorkerIdTkuser) return;
const data = {
worker_name: document.getElementById('editWorkerNameTkuser').value.trim(),
position: document.getElementById('editWorkerPositionTkuser').value.trim() || null,
is_team_leader: document.getElementById('editWorkerIsLeaderTkuser').checked,
phone: document.getElementById('editWorkerPhoneTkuser').value.trim() || null,
safety_training_date: document.getElementById('editWorkerSafetyDateTkuser').value || null,
notes: document.getElementById('editWorkerNotesTkuser').value.trim() || null,
};
try {
await api(`/partners/workers/${editingWorkerIdTkuser}`, { method: 'PUT', body: JSON.stringify(data) });
showToast('수정되었습니다');
closeEditWorkerTkuser();
await selectPartnerTkuser(selectedPartnerIdTkuser);
} catch (e) { showToast(e.message, 'error'); }
}
async function deactivateWorkerTkuser(id) {
if (!confirm('이 작업자를 비활성화하시겠습니까?')) return;
try {
await api(`/partners/workers/${id}`, { method: 'DELETE' });
showToast('비활성화 완료');
await selectPartnerTkuser(selectedPartnerIdTkuser);
} catch (e) { showToast(e.message, 'error'); }
}
function tryParseJsonTkuser(val) {
if (!val) return null;
if (Array.isArray(val)) return val;
@@ -118,7 +292,7 @@ function isInsuranceExpiringSoonTkuser(expiry) {
return diff <= 30 && diff >= 0;
}
// 검색/필터 이벤트
// 검색/필터 이벤트 + 모달 폼 이벤트
document.addEventListener('DOMContentLoaded', () => {
let searchTimeout;
const searchEl = document.getElementById('partnerSearchTkuser');
@@ -128,4 +302,9 @@ document.addEventListener('DOMContentLoaded', () => {
});
const filterEl = document.getElementById('partnerFilterActiveTkuser');
if (filterEl) filterEl.addEventListener('change', loadPartnersList);
document.getElementById('addPartnerFormTkuser')?.addEventListener('submit', submitAddPartnerTkuser);
document.getElementById('editPartnerFormTkuser')?.addEventListener('submit', submitEditPartnerTkuser);
document.getElementById('addWorkerFormTkuser')?.addEventListener('submit', submitAddWorkerTkuser);
document.getElementById('editWorkerFormTkuser')?.addEventListener('submit', submitEditWorkerTkuser);
});

View File

@@ -61,8 +61,21 @@ const SYSTEM3_PAGES = {
const TKPURCHASE_PAGES = {
'구매 관리': [
{ key: 'purchasing_visit', title: '방문 관리', icon: 'fa-door-open', def: false },
{ key: 'purchasing_partner', title: '협력업체 관리', icon: 'fa-building', def: false },
{ key: 'purchasing_daylabor', title: '일용공 관리', icon: 'fa-hard-hat', def: false },
{ key: 'purchasing_schedule', title: '작업일정 관리', icon: 'fa-calendar-alt', def: false },
{ key: 'purchasing_workreport', title: '업무현황 관리', icon: 'fa-clipboard-list', def: false },
{ key: 'purchasing_accounts', title: '협력업체 계정', icon: 'fa-user-shield', def: false },
],
'협력업체': [
{ key: 'purchasing_partner_portal', title: '협력업체 포털', icon: 'fa-building', def: false },
{ key: 'purchasing_partner_checkin', title: '협력업체 체크인', icon: 'fa-check-circle', def: false },
]
};
const TKSAFETY_PAGES = {
'안전 관리': [
{ key: 'safety_visit', title: '방문 관리', icon: 'fa-door-open', def: false },
{ key: 'safety_education', title: '안전교육 관리', icon: 'fa-graduation-cap', def: false },
]
};
@@ -191,7 +204,7 @@ document.getElementById('permissionUserSelect').addEventListener('change', async
async function loadUserPermissions(userId) {
currentPermissions = {};
currentPermSources = {};
const allDefs = { ...SYSTEM1_PAGES, ...SYSTEM3_PAGES, ...TKPURCHASE_PAGES };
const allDefs = { ...SYSTEM1_PAGES, ...SYSTEM3_PAGES, ...TKPURCHASE_PAGES, ...TKSAFETY_PAGES };
Object.values(allDefs).flat().forEach(p => { currentPermissions[p.key] = p.def; currentPermSources[p.key] = 'default'; });
try {
const result = await api(`/permissions/users/${userId}/effective-permissions`);
@@ -208,6 +221,7 @@ function renderPermissionGrid() {
renderSystemPerms('s1-perms', SYSTEM1_PAGES, 'blue');
renderSystemPerms('s3-perms', SYSTEM3_PAGES, 'purple');
renderSystemPerms('tkpurchase-perms', TKPURCHASE_PAGES, 'green');
renderSystemPerms('tksafety-perms', TKSAFETY_PAGES, 'orange');
}
function sourceLabel(src) {
@@ -303,7 +317,7 @@ document.getElementById('savePermissionsBtn').addEventListener('click', async ()
btn.disabled = true; btn.innerHTML = '<i class="fas fa-spinner fa-spin mr-2"></i>저장 중...';
try {
const allPages = [...Object.values(SYSTEM1_PAGES).flat(), ...Object.values(SYSTEM3_PAGES).flat(), ...Object.values(TKPURCHASE_PAGES).flat()];
const allPages = [...Object.values(SYSTEM1_PAGES).flat(), ...Object.values(SYSTEM3_PAGES).flat(), ...Object.values(TKPURCHASE_PAGES).flat(), ...Object.values(TKSAFETY_PAGES).flat()];
const permissions = allPages.map(p => {
const cb = document.getElementById('perm_' + p.key);
return { page_name: p.key, can_access: cb ? cb.checked : false };
@@ -351,7 +365,7 @@ document.addEventListener('DOMContentLoaded', () => {
async function loadDeptPermissions(deptId) {
deptPermissions = {};
const allDefs = { ...SYSTEM1_PAGES, ...SYSTEM3_PAGES, ...TKPURCHASE_PAGES };
const allDefs = { ...SYSTEM1_PAGES, ...SYSTEM3_PAGES, ...TKPURCHASE_PAGES, ...TKSAFETY_PAGES };
Object.values(allDefs).flat().forEach(p => { deptPermissions[p.key] = p.def; });
try {
const result = await api(`/permissions/departments/${deptId}/permissions`);
@@ -363,6 +377,7 @@ function renderDeptPermissionGrid() {
renderDeptSystemPerms('dept-s1-perms', SYSTEM1_PAGES, 'blue');
renderDeptSystemPerms('dept-s3-perms', SYSTEM3_PAGES, 'purple');
renderDeptSystemPerms('dept-tkpurchase-perms', TKPURCHASE_PAGES, 'green');
renderDeptSystemPerms('dept-tksafety-perms', TKSAFETY_PAGES, 'orange');
}
function renderDeptSystemPerms(containerId, pageDef, color) {
@@ -441,7 +456,7 @@ async function saveDeptPermissions() {
btn.disabled = true; btn.innerHTML = '<i class="fas fa-spinner fa-spin mr-2"></i>저장 중...';
try {
const allPages = [...Object.values(SYSTEM1_PAGES).flat(), ...Object.values(SYSTEM3_PAGES).flat(), ...Object.values(TKPURCHASE_PAGES).flat()];
const allPages = [...Object.values(SYSTEM1_PAGES).flat(), ...Object.values(SYSTEM3_PAGES).flat(), ...Object.values(TKPURCHASE_PAGES).flat(), ...Object.values(TKSAFETY_PAGES).flat()];
const permissions = allPages.map(p => {
const cb = document.getElementById('dperm_' + p.key);
return { page_name: p.key, can_access: cb ? cb.checked : false };