Aplikasi kehadiran KTM ambil peti undi (SPR 2026)

Sistem untuk admin DUN merekod waktu KTM (Ketua Tempat Mengundi) hadir
mengambil peti undi. Data KTM dibaca daripada DB sppm (spr2026) melalui
connection kedua — hanya penempatan berjawatan KTM yang dipaparkan.

- Dashboard: senarai KTM ikut pusat mengundi (asc) & saluran (asc),
  status BELUM HADIR (merah) / HADIR (hijau) + tarikh & masa
- Carian nama/no. KP, tapisan pusat mengundi & status
- Tanda hadir / batal dengan kawalan DUN (admin terhad ke DUN sendiri)
- Eksport Excel (worksheet Hadir & Belum Hadir) guna SimpleXlsx
- Peranan: superadmin (urus pengguna, semua DUN) & admin DUN
- Docker: nginx + php-fpm + queue + scheduler + webhook deploy,
  port 127.0.0.1:8009, TZ Asia/Kuala_Lumpur di semua container
- Zon waktu aplikasi: Asia/Kuala_Lumpur (APP_TIMEZONE)

Berasaskan scaffold spr2026_taklimat.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
This commit is contained in:
Saufi
2026-07-11 02:40:00 +08:00
commit dfd22ff2af
95 changed files with 14681 additions and 0 deletions

34
.dockerignore Normal file
View File

@@ -0,0 +1,34 @@
# Version control / tooling
.git
.gitignore
.gitattributes
.editorconfig
.claude
.vscode
.idea
# Local env (provide env at runtime via .env.docker / compose)
.env
.env.backup
.env.production
# Dependencies & build artifacts (rebuilt inside the image)
vendor
node_modules
public/build
public/hot
public/storage
# Runtime / logs / caches
storage/logs/*
storage/framework/cache/data/*
storage/framework/sessions/*
storage/framework/views/*
storage/pail
*.log
# Docs / tests not needed in the image
README.md
DOCKER.md
phpunit.xml
tests

18
.editorconfig Normal file
View File

@@ -0,0 +1,18 @@
root = true
[*]
charset = utf-8
end_of_line = lf
indent_size = 4
indent_style = space
insert_final_newline = true
trim_trailing_whitespace = true
[*.md]
trim_trailing_whitespace = false
[*.{yml,yaml}]
indent_size = 2
[{compose,docker-compose}.{yml,yaml}]
indent_size = 4

51
.env.docker.example Normal file
View File

@@ -0,0 +1,51 @@
# Salin ke .env.docker dan isi nilai sebenar sebelum `docker compose up`.
# Fail .env.docker TIDAK dikommit (lihat .gitignore).
APP_NAME="Kehadiran KTM SPR 2026"
APP_ENV=production
APP_KEY= # jana: php artisan key:generate --show
APP_DEBUG=false
APP_URL=https://ktmspr.apps.mbip.my
APP_TIMEZONE=Asia/Kuala_Lumpur
APP_LOCALE=ms
APP_FALLBACK_LOCALE=en
BCRYPT_ROUNDS=12
LOG_CHANNEL=stack
LOG_STACK=single
LOG_LEVEL=warning
# Pangkalan data aplikasi ini (users + kehadiran_ktm) — MySQL pada host
DB_CONNECTION=mysql
DB_HOST=host.docker.internal
DB_PORT=3306
DB_DATABASE=sppm_ktm
DB_USERNAME=ktm
DB_PASSWORD=CHANGE_ME
# Pangkalan data sistem pengurusan pusat mengundi (spr2026) — baca sahaja
SPPM_DB_HOST=host.docker.internal
SPPM_DB_PORT=3306
SPPM_DB_DATABASE=sppm
SPPM_DB_USERNAME=ktm
SPPM_DB_PASSWORD=CHANGE_ME
SESSION_DRIVER=database
SESSION_LIFETIME=120
SESSION_ENCRYPT=false
SESSION_PATH=/
SESSION_DOMAIN=null
BROADCAST_CONNECTION=log
FILESYSTEM_DISK=local
QUEUE_CONNECTION=database
CACHE_STORE=database
MAIL_MAILER=log
MAIL_FROM_ADDRESS="ktmspr@apps.mbip.my"
MAIL_FROM_NAME="${APP_NAME}"
# Webhook deploy (GitHub push -> /hooks/deploy)
WEBHOOK_SECRET=CHANGE_ME

74
.env.example Normal file
View File

@@ -0,0 +1,74 @@
APP_NAME="Kehadiran KTM SPR 2026"
APP_ENV=local
APP_KEY=
APP_DEBUG=true
APP_URL=http://localhost
APP_TIMEZONE=Asia/Kuala_Lumpur
APP_LOCALE=ms
APP_FALLBACK_LOCALE=en
APP_FAKER_LOCALE=ms_MY
APP_MAINTENANCE_DRIVER=file
# APP_MAINTENANCE_STORE=database
# PHP_CLI_SERVER_WORKERS=4
BCRYPT_ROUNDS=12
LOG_CHANNEL=stack
LOG_STACK=single
LOG_DEPRECATIONS_CHANNEL=null
LOG_LEVEL=debug
# Pangkalan data aplikasi ini (users + kehadiran_ktm)
DB_CONNECTION=mysql
DB_HOST=127.0.0.1
DB_PORT=3306
DB_DATABASE=sppm_ktm
DB_USERNAME=root
DB_PASSWORD=
# Pangkalan data sistem pengurusan pusat mengundi (spr2026) — baca sahaja
SPPM_DB_HOST=127.0.0.1
SPPM_DB_PORT=3306
SPPM_DB_DATABASE=sppm
SPPM_DB_USERNAME=root
SPPM_DB_PASSWORD=
SESSION_DRIVER=database
SESSION_LIFETIME=120
SESSION_ENCRYPT=false
SESSION_PATH=/
SESSION_DOMAIN=null
BROADCAST_CONNECTION=log
FILESYSTEM_DISK=local
QUEUE_CONNECTION=database
CACHE_STORE=database
# CACHE_PREFIX=
MEMCACHED_HOST=127.0.0.1
REDIS_CLIENT=phpredis
REDIS_HOST=127.0.0.1
REDIS_PASSWORD=null
REDIS_PORT=6379
MAIL_MAILER=log
MAIL_SCHEME=null
MAIL_HOST=127.0.0.1
MAIL_PORT=2525
MAIL_USERNAME=null
MAIL_PASSWORD=null
MAIL_FROM_ADDRESS="hello@example.com"
MAIL_FROM_NAME="${APP_NAME}"
AWS_ACCESS_KEY_ID=
AWS_SECRET_ACCESS_KEY=
AWS_DEFAULT_REGION=us-east-1
AWS_BUCKET=
AWS_USE_PATH_STYLE_ENDPOINT=false
VITE_APP_NAME="${APP_NAME}"

11
.gitattributes vendored Normal file
View File

@@ -0,0 +1,11 @@
* text=auto eol=lf
*.blade.php diff=html
*.css diff=css
*.html diff=html
*.md diff=markdown
*.php diff=php
/.github export-ignore
CHANGELOG.md export-ignore
.styleci.yml export-ignore

28
.gitignore vendored Normal file
View File

@@ -0,0 +1,28 @@
*.log
.DS_Store
.env
.env.backup
.env.production
.env.docker
.phpactor.json
.phpunit.result.cache
/.codex
/.cursor/
/.idea
/.nova
/.phpunit.cache
/.vscode
/.zed
/auth.json
/node_modules
/public/build
/public/fonts-manifest.dev.json
/public/hot
/public/storage
/storage/*.key
/storage/pail
/vendor
_ide_helper.php
Homestead.json
Homestead.yaml
Thumbs.db

2
.npmrc Normal file
View File

@@ -0,0 +1,2 @@
ignore-scripts=true
audit=true

161
DOCKER.md Normal file
View File

@@ -0,0 +1,161 @@
# Running with Docker
This app is packaged as a small Docker stack and is designed to run **behind
the host's existing Nginx**, connecting to the **host's existing MySQL** (where
both `sppm_ktm` and the external `sppm` database live).
```
Internet
host nginx (ktmspr.apps.mbip.my, port 80) ← reverse proxy
│ proxy_pass 127.0.0.1:8009
web container (nginx) ──fastcgi──► app container (php-fpm 8.4)
▼ host.docker.internal:3306
host MySQL (sppm_ktm, sppm)
```
Containers:
| Service | Image | Role |
|-------------|--------------------|-------------------------------------------------|
| `web` | `ktmspr-web` | nginx, serves static assets, proxies PHP. Binds `127.0.0.1:8009`. |
| `app` | `ktmspr-app` | PHP 8.4-FPM. Runs migrations on boot. |
| `queue` | `ktmspr-app` | `queue:work` (database queue). |
| `scheduler` | `ktmspr-app` | `schedule:work` (Laravel scheduler). |
---
## Prerequisites on the host (Ubuntu 24.04)
- Docker Engine + Compose plugin:
```bash
sudo apt-get update
sudo apt-get install -y docker.io docker-compose-v2
sudo systemctl enable --now docker
```
- The existing Nginx and MySQL services already installed on the host.
---
## 1. Configure host MySQL to accept connections from containers
On Linux, `host.docker.internal` resolves to the Docker bridge gateway (e.g.
`172.17.0.1`) via the `host-gateway` mapping already set in
`docker-compose.yml`. The host MySQL must accept connections on that interface.
**a) Listen on all interfaces** — edit
`/etc/mysql/mysql.conf.d/mysqld.cnf`:
```ini
bind-address = 0.0.0.0
```
Then restart: `sudo systemctl restart mysql`.
**b) Allow the app user from the Docker subnet.** Prefer a dedicated user over
`root` (and then set the credentials in `.env.docker`):
```sql
CREATE USER 'ktm'@'172.%' IDENTIFIED BY 'CHANGE_ME_STRONG';
GRANT ALL PRIVILEGES ON sppm_ktm.* TO 'ktm'@'172.%';
GRANT SELECT ON sppm.* TO 'ktm'@'172.%';
FLUSH PRIVILEGES;
```
Make sure the `sppm_ktm` database exists:
```sql
CREATE DATABASE IF NOT EXISTS sppm_ktm
CHARACTER SET utf8mb4 COLLATE utf8mb4_unicode_ci;
```
**c) Firewall** — if `ufw` is active, allow MySQL from the Docker subnet only:
```bash
sudo ufw allow from 172.16.0.0/12 to any port 3306 proto tcp
```
---
## 2. Set the container environment
`.env.docker` holds the runtime config (it is git-ignored because it contains
credentials). Review it and update at least:
- `DB_USERNAME` / `DB_PASSWORD` and `SPPM_DB_*` to match step 1b.
- `APP_KEY` is pre-filled; to rotate it run
`docker compose run --rm app php artisan key:generate --show` and paste the
result.
`DB_HOST` / `SPPM_DB_HOST` are already set to `host.docker.internal` — leave them.
---
## 3. Build and start
```bash
docker compose build
docker compose up -d
```
On boot the `app` container waits for MySQL, caches config/routes/views, runs
`php artisan migrate --force`, and starts php-fpm. Check it:
```bash
docker compose ps
docker compose logs -f app
curl -I http://127.0.0.1:8009 # should return HTTP 200/302
```
---
## 4. Point host Nginx at the stack
```bash
sudo cp docker/host-nginx/ktmspr.apps.mbip.my.conf \
/etc/nginx/sites-available/ktmspr.apps.mbip.my
sudo ln -s /etc/nginx/sites-available/ktmspr.apps.mbip.my \
/etc/nginx/sites-enabled/
sudo nginx -t && sudo systemctl reload nginx
```
The app should now be reachable at <http://ktmspr.apps.mbip.my>.
---
## Common operations
```bash
# Tail logs
docker compose logs -f app web queue
# Artisan / composer inside the app container
docker compose exec app php artisan about
docker compose exec app php artisan tinker
# Re-cache config after editing .env.docker
docker compose exec app php artisan config:cache
# Rebuild & redeploy after pulling new code
docker compose build && docker compose up -d
```
---
## Notes & limitations
- **Static uploads:** `web` (nginx) serves a baked copy of `public/`. Files
written at runtime to `storage/app/public` (the `public` disk + `storage:link`)
live only in the `app` container and are **not** served by nginx. The current
app renders QR codes as inline SVG, so this isn't needed today — but if you
later serve uploaded files via `/storage`, switch `web` to share the app's
public/storage via a volume.
- **Persistent data:** the named volume `app_storage` keeps logs, compiled
views, and `storage/app` across restarts. Application/session data lives in
MySQL.
- **TLS:** terminate HTTPS at the host Nginx (e.g. with certbot) if/when the
domain moves to `https://`. Then add `SESSION_SECURE_COOKIE=true` and
`APP_URL=https://...` in `.env.docker`.
- **HEALTHCHECK / scheduler:** there are currently no scheduled commands, but
the `scheduler` service is included so future `app/Console` schedules work
without changing the stack. Remove it if you prefer.

56
README.md Normal file
View File

@@ -0,0 +1,56 @@
# Kehadiran KTM — Peti Undi SPR 2026
Aplikasi untuk admin DUN merekodkan waktu KTM (Ketua Tempat Mengundi) hadir
mengambil peti undi. Data KTM dibaca terus daripada pangkalan data
Sistem Pengurusan Pusat Mengundi (`spr2026` / DB `sppm`) — hanya KTM yang
telah di-assign sahaja dipaparkan.
## Aliran
1. Dashboard memaparkan semua KTM dalam DUN, disusun ikut pusat mengundi (asc)
dan saluran (asc). Yang belum hadir bertanda **BELUM HADIR** (merah).
2. Admin mencari nama KTM dan/atau pusat mengundi. Paparan menunjukkan nama,
no. KP, no. telefon, jawatan, pusat mengundi dan saluran.
3. Admin menandakan KTM sebagai hadir — tarikh dan masa direkodkan, status
bertukar **HADIR** (hijau). Rekod boleh dibatalkan jika tersilap.
4. Senarai kehadiran boleh dimuat turun dalam bentuk Excel (worksheet
"Hadir" dan "Belum Hadir").
## Peranan
| Peranan | Kebenaran |
|--------------|--------------------------------------------------------------|
| `superadmin` | Cipta pengguna; lihat/urus kehadiran semua DUN; eksport |
| `admin` | Admin DUN: daftar kehadiran KTM & eksport untuk DUN sendiri |
## Pangkalan data
- `sppm_ktm` (connection `mysql`) — `users`, `kehadiran_ktm`, sesi/cache/queue.
- `sppm` (connection `sppm`, baca sahaja) — `petugas_assignments`,
`petugas_permohonan`, `pusat_mengundi`, `saluran`, `jawatan_tetapan`, `dun`.
KTM dikenal pasti melalui `petugas_assignments` yang jawatannya berkod `KTM`.
## Pembangunan tempatan
```bash
composer install
cp .env.example .env # isi DB_* dan SPPM_DB_*
php artisan key:generate
php artisan migrate --seed # superadmin@spr.gov.my / password
php artisan serve
```
Zon waktu ialah `Asia/Kuala_Lumpur` (lalai `APP_TIMEZONE`).
## Docker
Lihat [DOCKER.md](DOCKER.md). Ringkasnya:
```bash
cp .env.docker.example .env.docker # isi APP_KEY, kata laluan DB, WEBHOOK_SECRET
docker compose up -d --build
```
Web container terikat pada `127.0.0.1:8009`; nginx host membuat reverse proxy
domain awam ke port tersebut. Semua container ditetapkan `TZ=Asia/Kuala_Lumpur`.

View File

@@ -0,0 +1,45 @@
<?php
namespace App\Http\Controllers;
use Illuminate\Http\Request;
use Illuminate\Support\Facades\Auth;
class AuthController extends Controller
{
public function showLogin()
{
if (Auth::check()) {
return redirect()->route('dashboard');
}
return view('auth.login');
}
public function login(Request $request)
{
$credentials = $request->validate([
'email' => ['required', 'email'],
'password' => ['required'],
]);
if (Auth::attempt($credentials, $request->boolean('remember'))) {
$request->session()->regenerate();
return redirect()->intended(route('dashboard'));
}
return back()->withErrors([
'email' => 'Emel atau kata laluan tidak sah.',
])->onlyInput('email');
}
public function logout(Request $request)
{
Auth::logout();
$request->session()->invalidate();
$request->session()->regenerateToken();
return redirect()->route('login');
}
}

View File

@@ -0,0 +1,8 @@
<?php
namespace App\Http\Controllers;
abstract class Controller
{
//
}

View File

@@ -0,0 +1,90 @@
<?php
namespace App\Http\Controllers;
use App\Models\KehadiranKtm;
use App\Models\Sppm\Dun;
use App\Models\Sppm\PetugasAssignment;
use App\Models\Sppm\PusatMengundi;
use Illuminate\Http\Request;
class DashboardController extends Controller
{
/**
* Papar semua KTM yang telah diassign dalam DUN, disusun ikut
* pusat mengundi (asc) dan saluran (asc). Boleh ditapis dengan
* carian nama/no. KP dan pusat mengundi.
*/
public function index(Request $request)
{
$user = $request->user();
$dunId = $this->dunTerpilih($request);
$senaraiDun = $user->isSuperadmin()
? Dun::where('is_active', true)->orderBy('code')->get()
: collect();
$assignments = PetugasAssignment::ktm()
->when($dunId, fn ($q) => $q->untukDun($dunId))
->when($request->filled('q'), function ($q) use ($request) {
$cari = trim($request->input('q'));
$q->whereHas('permohonan', function ($qq) use ($cari) {
$qq->where('nama_ic', 'like', "%{$cari}%")
->orWhere('no_kp', 'like', "%{$cari}%");
});
})
->when($request->filled('pusat_id'), fn ($q) => $q->where('pusat_mengundi_id', $request->integer('pusat_id')))
->with(['permohonan', 'pusatMengundi.dun', 'saluran', 'jawatan'])
->get()
->sortBy([
fn ($a, $b) => strcmp($a->pusatMengundi?->nama ?? '', $b->pusatMengundi?->nama ?? ''),
fn ($a, $b) => ($a->saluran?->nombor_saluran ?? 0) <=> ($b->saluran?->nombor_saluran ?? 0),
])
->values();
$kehadiran = KehadiranKtm::whereIn('assignment_id', $assignments->pluck('id'))
->get()
->keyBy('assignment_id');
// Tapis ikut status selepas kehadiran diketahui
if (in_array($request->input('status'), ['hadir', 'belum'], true)) {
$mahuHadir = $request->input('status') === 'hadir';
$assignments = $assignments
->filter(fn ($a) => $kehadiran->has($a->id) === $mahuHadir)
->values();
}
$senaraiPusat = PusatMengundi::when($dunId, fn ($q) => $q->where('dun_id', $dunId))
->orderBy('nama')
->get(['id', 'nama']);
$jumlahSemua = $assignments->count();
$jumlahHadir = $assignments->filter(fn ($a) => $kehadiran->has($a->id))->count();
return view('dashboard', [
'assignments' => $assignments,
'kehadiran' => $kehadiran,
'senaraiPusat' => $senaraiPusat,
'senaraiDun' => $senaraiDun,
'dunId' => $dunId,
'jumlahSemua' => $jumlahSemua,
'jumlahHadir' => $jumlahHadir,
'jumlahBelum' => $jumlahSemua - $jumlahHadir,
]);
}
/**
* DUN yang dipaparkan: admin DUN terikat pada DUN sendiri; superadmin
* boleh pilih (null = semua DUN).
*/
private function dunTerpilih(Request $request): ?int
{
$user = $request->user();
if (! $user->isSuperadmin()) {
return (int) $user->dun_id;
}
return $request->filled('dun_id') ? $request->integer('dun_id') : null;
}
}

View File

@@ -0,0 +1,93 @@
<?php
namespace App\Http\Controllers;
use App\Models\KehadiranKtm;
use App\Models\Sppm\PetugasAssignment;
use App\Support\SimpleXlsx;
use Illuminate\Http\Request;
use Symfony\Component\HttpFoundation\Response;
class EksportKehadiranController extends Controller
{
private const PENGEPALA = [
'Bil', 'DUN', 'Pusat Mengundi', 'Saluran', 'Nama', 'No. KP',
'No. Telefon', 'Jawatan', 'Status', 'Tarikh Hadir', 'Masa Hadir', 'Dicatat Oleh',
];
/**
* Eksport senarai kehadiran KTM ke Excel: worksheet "Hadir" dan
* "Belum Hadir". Admin DUN dihadkan kepada DUN sendiri; superadmin
* boleh eksport semua atau DUN terpilih (?dun_id=).
*/
public function __invoke(Request $request): Response
{
$user = $request->user();
$dunId = $user->isSuperadmin()
? ($request->filled('dun_id') ? $request->integer('dun_id') : null)
: (int) $user->dun_id;
$assignments = PetugasAssignment::ktm()
->when($dunId, fn ($q) => $q->untukDun($dunId))
->with(['permohonan', 'pusatMengundi.dun', 'saluran', 'jawatan'])
->get()
->sortBy([
fn ($a, $b) => strcmp($a->pusatMengundi?->dun?->code ?? '', $b->pusatMengundi?->dun?->code ?? ''),
fn ($a, $b) => strcmp($a->pusatMengundi?->nama ?? '', $b->pusatMengundi?->nama ?? ''),
fn ($a, $b) => ($a->saluran?->nombor_saluran ?? 0) <=> ($b->saluran?->nombor_saluran ?? 0),
])
->values();
$kehadiran = KehadiranKtm::whereIn('assignment_id', $assignments->pluck('id'))
->with('dicatatOleh')
->get()
->keyBy('assignment_id');
$hadir = [self::PENGEPALA];
$belum = [self::PENGEPALA];
foreach ($assignments as $a) {
$rekod = $kehadiran->get($a->id);
$dun = $a->pusatMengundi?->dun;
// dun.nama kebiasaannya sudah bermula dengan kod (cth. "N49 Kota Iskandar")
$dunLabel = str_starts_with($dun->nama ?? '', $dun->code ?? "\0")
? ($dun->nama ?? '')
: trim(($dun->code ?? '').' '.($dun->nama ?? ''));
$baris = [
0, // Bil diisi selepas pengasingan
$dunLabel,
$a->pusatMengundi?->nama ?? '',
$a->saluran ? 'Saluran '.$a->saluran->nombor_saluran : '',
$a->permohonan?->nama_ic ?? '',
$a->permohonan?->no_kp ?? '',
$a->permohonan?->no_telefon ?? '',
$a->jawatan?->nama ?? 'Ketua Tempat Mengundi',
$rekod ? 'HADIR' : 'BELUM HADIR',
$rekod?->hadir_at?->format('d/m/Y') ?? '',
$rekod?->hadir_at?->format('h:i A') ?? '',
$rekod?->dicatatOleh?->name ?? '',
];
if ($rekod) {
$baris[0] = count($hadir);
$hadir[] = $baris;
} else {
$baris[0] = count($belum);
$belum[] = $baris;
}
}
$xlsx = (new SimpleXlsx)
->addSheet('Hadir', $hadir)
->addSheet('Belum Hadir', $belum);
$namaFail = 'Kehadiran-KTM-'.now()->format('Ymd-His').'.xlsx';
return response($xlsx->toString(), 200, [
'Content-Type' => 'application/vnd.openxmlformats-officedocument.spreadsheetml.sheet',
'Content-Disposition' => 'attachment; filename="'.$namaFail.'"',
]);
}
}

View File

@@ -0,0 +1,66 @@
<?php
namespace App\Http\Controllers;
use App\Models\KehadiranKtm;
use App\Models\Sppm\PetugasAssignment;
use Illuminate\Http\Request;
class KehadiranController extends Controller
{
/**
* Tanda KTM sebagai hadir mengambil peti undi. Rekod tarikh dan masa.
*/
public function hadir(Request $request, int $assignmentId)
{
$assignment = PetugasAssignment::ktm()
->with(['permohonan', 'pusatMengundi'])
->findOrFail($assignmentId);
$this->pastikanDunDibenarkan($request, $assignment);
KehadiranKtm::firstOrCreate(
['assignment_id' => $assignment->id],
[
'permohonan_id' => $assignment->permohonan_id,
'dun_id' => $assignment->pusatMengundi->dun_id,
'hadir_at' => now(),
'dicatat_oleh_user_id' => $request->user()->id,
],
);
return back()->with('status', ($assignment->permohonan?->nama_ic ?? 'KTM').' ditanda HADIR.');
}
/**
* Batalkan rekod kehadiran (jika tersilap tanda).
*/
public function batal(Request $request, int $assignmentId)
{
$assignment = PetugasAssignment::ktm()
->with(['permohonan', 'pusatMengundi'])
->findOrFail($assignmentId);
$this->pastikanDunDibenarkan($request, $assignment);
KehadiranKtm::where('assignment_id', $assignment->id)->delete();
return back()->with('status', 'Rekod kehadiran '.($assignment->permohonan?->nama_ic ?? 'KTM').' dibatalkan.');
}
/**
* Admin DUN hanya boleh urus KTM dalam DUN sendiri.
*/
private function pastikanDunDibenarkan(Request $request, PetugasAssignment $assignment): void
{
$user = $request->user();
if ($user->isSuperadmin()) {
return;
}
if ((int) $assignment->pusatMengundi?->dun_id !== (int) $user->dun_id) {
abort(403, 'KTM ini bukan dalam DUN anda.');
}
}
}

View File

@@ -0,0 +1,67 @@
<?php
namespace App\Http\Controllers;
use Illuminate\Http\Request;
use Illuminate\Support\Facades\Hash;
use Illuminate\Support\Facades\Password;
class PasswordResetController extends Controller
{
public function showLinkRequestForm()
{
return view('auth.lupa-katalaluan');
}
public function sendResetLink(Request $request)
{
$request->validate(['email' => ['required', 'email']]);
$status = Password::sendResetLink($request->only('email'));
return $status === Password::RESET_LINK_SENT
? back()->with('status', 'Pautan set semula kata laluan telah dihantar ke e-mel anda.')
: back()->withErrors(['email' => $this->mesejRalat($status)]);
}
public function showResetForm(Request $request, string $token)
{
return view('auth.set-kata-laluan', [
'token' => $token,
'email' => $request->query('email', ''),
]);
}
public function reset(Request $request)
{
$data = $request->validate([
'token' => ['required', 'string'],
'email' => ['required', 'email'],
'password' => ['required', 'string', 'min:8', 'confirmed'],
], [
'password.min' => 'Kata laluan perlu sekurang-kurangnya 8 aksara.',
'password.confirmed' => 'Pengesahan kata laluan tidak sepadan.',
]);
$status = Password::reset(
$data,
function ($user, $password) {
$user->forceFill(['password' => Hash::make($password)])->save();
}
);
return $status === Password::PASSWORD_RESET
? redirect()->route('login')->with('status', 'Kata laluan berjaya ditetapkan semula. Sila log masuk.')
: back()->withErrors(['email' => $this->mesejRalat($status)])->onlyInput('email');
}
private function mesejRalat(string $status): string
{
return match ($status) {
Password::INVALID_USER => 'Akaun dengan e-mel ini tidak ditemui.',
Password::RESET_THROTTLED => 'Sila tunggu sebentar sebelum cuba lagi.',
Password::INVALID_TOKEN => 'Pautan set semula tidak sah atau telah tamat tempoh.',
default => 'Gagal memproses permintaan. Sila cuba lagi.',
};
}
}

View File

@@ -0,0 +1,68 @@
<?php
namespace App\Http\Controllers;
use App\Models\Sppm\Dun;
use App\Models\User;
use Illuminate\Http\Request;
use Illuminate\Support\Facades\Hash;
use Illuminate\Validation\Rule;
class PenggunaController extends Controller
{
/**
* Peranan yang boleh didaftarkan oleh superadmin.
*/
private const PERANAN = ['superadmin', 'admin'];
public function index()
{
$pengguna = User::query()
->with('dun')
->orderBy('role')
->orderBy('name')
->get();
return view('pengguna.index', compact('pengguna'));
}
public function create()
{
$senaraiDun = Dun::where('is_active', true)->orderBy('code')->get();
return view('pengguna.create', ['senaraiDun' => $senaraiDun, 'peranan' => self::PERANAN]);
}
public function store(Request $request)
{
$data = $request->validate([
'name' => ['required', 'string', 'max:255'],
'email' => ['required', 'email', 'max:255', 'unique:users,email'],
'role' => ['required', 'string', Rule::in(self::PERANAN)],
'dun_id' => ['nullable', 'integer'],
'password' => ['required', 'string', 'min:8', 'confirmed'],
], [
'email.unique' => 'E-mel ini sudah didaftarkan.',
'password.min' => 'Kata laluan perlu sekurang-kurangnya 8 aksara.',
'password.confirmed' => 'Pengesahan kata laluan tidak sepadan.',
]);
if ($data['role'] === 'superadmin') {
$data['dun_id'] = null;
} elseif (empty($data['dun_id'])) {
return back()->withErrors(['dun_id' => 'Sila pilih DUN untuk admin DUN.'])->withInput();
} elseif (! Dun::where('id', $data['dun_id'])->where('is_active', true)->exists()) {
return back()->withErrors(['dun_id' => 'DUN tidak sah.'])->withInput();
}
User::create([
'name' => $data['name'],
'email' => $data['email'],
'role' => $data['role'],
'dun_id' => $data['dun_id'] ?? null,
'password' => Hash::make($data['password']),
]);
return redirect()->route('pengguna.index')->with('status', 'Pengguna baharu berjaya didaftarkan.');
}
}

View File

@@ -0,0 +1,37 @@
<?php
namespace App\Http\Controllers;
use Illuminate\Http\Request;
use Illuminate\Support\Facades\Hash;
class ProfilController extends Controller
{
public function edit(Request $request)
{
return view('profil.edit', ['pengguna' => $request->user()]);
}
public function updatePassword(Request $request)
{
$data = $request->validate([
'kata_laluan_semasa' => ['required', 'string'],
'kata_laluan_baharu' => ['required', 'string', 'min:8', 'confirmed'],
], [
'kata_laluan_semasa.required' => 'Sila masukkan kata laluan semasa.',
'kata_laluan_baharu.required' => 'Sila masukkan kata laluan baharu.',
'kata_laluan_baharu.min' => 'Kata laluan baharu perlu sekurang-kurangnya 8 aksara.',
'kata_laluan_baharu.confirmed' => 'Pengesahan kata laluan baharu tidak sepadan.',
]);
$user = $request->user();
if (! Hash::check($data['kata_laluan_semasa'], $user->password)) {
return back()->withErrors(['kata_laluan_semasa' => 'Kata laluan semasa tidak tepat.']);
}
$user->update(['password' => Hash::make($data['kata_laluan_baharu'])]);
return back()->with('status', 'Kata laluan berjaya dikemaskini.');
}
}

View File

@@ -0,0 +1,19 @@
<?php
namespace App\Http\Middleware;
use Closure;
use Illuminate\Http\Request;
use Symfony\Component\HttpFoundation\Response;
class EnsureRole
{
public function handle(Request $request, Closure $next, string ...$roles): Response
{
if (! $request->user() || ! in_array($request->user()->role, $roles, true)) {
abort(403, 'Anda tidak mempunyai kebenaran untuk akses halaman ini.');
}
return $next($request);
}
}

View File

@@ -0,0 +1,40 @@
<?php
namespace App\Models;
use App\Models\Sppm\PetugasAssignment;
use App\Models\Sppm\PetugasPermohonan;
use Illuminate\Database\Eloquent\Model;
use Illuminate\Database\Eloquent\Relations\BelongsTo;
class KehadiranKtm extends Model
{
protected $table = 'kehadiran_ktm';
protected $fillable = [
'assignment_id',
'permohonan_id',
'dun_id',
'hadir_at',
'dicatat_oleh_user_id',
];
protected $casts = [
'hadir_at' => 'datetime',
];
public function assignment(): BelongsTo
{
return $this->belongsTo(PetugasAssignment::class, 'assignment_id');
}
public function permohonan(): BelongsTo
{
return $this->belongsTo(PetugasPermohonan::class, 'permohonan_id');
}
public function dicatatOleh(): BelongsTo
{
return $this->belongsTo(User::class, 'dicatat_oleh_user_id');
}
}

12
app/Models/Sppm/Dun.php Normal file
View File

@@ -0,0 +1,12 @@
<?php
namespace App\Models\Sppm;
use Illuminate\Database\Eloquent\Model;
class Dun extends Model
{
protected $connection = 'sppm';
protected $table = 'dun';
protected $guarded = [];
}

View File

@@ -0,0 +1,12 @@
<?php
namespace App\Models\Sppm;
use Illuminate\Database\Eloquent\Model;
class JawatanTetapan extends Model
{
protected $connection = 'sppm';
protected $table = 'jawatan_tetapan';
protected $guarded = [];
}

View File

@@ -0,0 +1,49 @@
<?php
namespace App\Models\Sppm;
use Illuminate\Database\Eloquent\Model;
use Illuminate\Database\Eloquent\Relations\BelongsTo;
class PetugasAssignment extends Model
{
protected $connection = 'sppm';
protected $table = 'petugas_assignments';
protected $guarded = [];
public function permohonan(): BelongsTo
{
return $this->belongsTo(PetugasPermohonan::class, 'permohonan_id');
}
public function pusatMengundi(): BelongsTo
{
return $this->belongsTo(PusatMengundi::class, 'pusat_mengundi_id');
}
public function saluran(): BelongsTo
{
return $this->belongsTo(Saluran::class, 'saluran_id');
}
public function jawatan(): BelongsTo
{
return $this->belongsTo(JawatanTetapan::class, 'jawatan_tetapan_id');
}
/**
* Penempatan KTM (Ketua Tempat Mengundi) sahaja.
*/
public function scopeKtm($query)
{
return $query->whereHas('jawatan', fn ($q) => $q->where('kod', 'KTM'));
}
/**
* Penempatan dalam DUN tertentu (melalui pusat mengundi penempatan).
*/
public function scopeUntukDun($query, int $dunId)
{
return $query->whereHas('pusatMengundi', fn ($q) => $q->where('dun_id', $dunId));
}
}

View File

@@ -0,0 +1,76 @@
<?php
namespace App\Models\Sppm;
use Illuminate\Database\Eloquent\Model;
use Illuminate\Database\Eloquent\Relations\BelongsTo;
use Illuminate\Database\Eloquent\Relations\HasMany;
class PetugasPermohonan extends Model
{
protected $connection = 'sppm';
protected $table = 'petugas_permohonan';
protected $guarded = [];
/**
* Petugas berstatus 'assigned' untuk sesuatu DUN. Padanan DUN melalui
* dun_id permohonan atau dun pusat mengundi penempatan.
*/
public function scopeAssignedUntukDun($query, int $dunId)
{
return $query->where('status', 'assigned')
->where(function ($q) use ($dunId) {
$q->where('dun_id', $dunId)
->orWhereHas('assignments.pusatMengundi', fn ($qq) => $qq->where('dun_id', $dunId));
});
}
public function dun(): BelongsTo
{
return $this->belongsTo(Dun::class, 'dun_id');
}
public function assignments(): HasMany
{
return $this->hasMany(PetugasAssignment::class, 'permohonan_id');
}
/**
* Penempatan utama petugas (urutan terendah).
*/
public function assignmentUtama(): ?PetugasAssignment
{
if ($this->relationLoaded('assignments')) {
return $this->assignments->sortBy('urutan')->first();
}
return $this->assignments()
->with(['pusatMengundi', 'saluran', 'jawatan'])
->orderBy('urutan')
->first();
}
/**
* Maklumat penempatan untuk paparan: pusat mengundi, saluran, jawatan.
* Diambil daripada petugas_assignments; fallback kepada medan permohonan.
*/
public function butiranPenempatan(): array
{
$assignment = $this->assignmentUtama();
$pusatMengundi = $assignment?->pusatMengundi
?? ($this->pusat_mengundi_id ? PusatMengundi::find($this->pusat_mengundi_id) : null);
$saluran = $assignment?->saluran
?? ($this->assigned_saluran_id ? Saluran::find($this->assigned_saluran_id) : null);
$jawatan = $assignment?->jawatan
?? ($this->jawatan_id ? JawatanTetapan::find($this->jawatan_id) : null);
return [
'pusat_mengundi' => $pusatMengundi?->nama ?? '-',
'saluran' => $saluran ? 'Saluran ' . $saluran->nombor_saluran : '-',
'jawatan' => $jawatan?->nama ?? '-',
];
}
}

View File

@@ -0,0 +1,18 @@
<?php
namespace App\Models\Sppm;
use Illuminate\Database\Eloquent\Model;
use Illuminate\Database\Eloquent\Relations\BelongsTo;
class PusatMengundi extends Model
{
protected $connection = 'sppm';
protected $table = 'pusat_mengundi';
protected $guarded = [];
public function dun(): BelongsTo
{
return $this->belongsTo(Dun::class, 'dun_id');
}
}

View File

@@ -0,0 +1,12 @@
<?php
namespace App\Models\Sppm;
use Illuminate\Database\Eloquent\Model;
class Saluran extends Model
{
protected $connection = 'sppm';
protected $table = 'saluran';
protected $guarded = [];
}

58
app/Models/User.php Normal file
View File

@@ -0,0 +1,58 @@
<?php
namespace App\Models;
// use Illuminate\Contracts\Auth\MustVerifyEmail;
use App\Models\Sppm\Dun;
use App\Notifications\ResetKataLaluanNotification;
use Database\Factories\UserFactory;
use Illuminate\Database\Eloquent\Attributes\Fillable;
use Illuminate\Database\Eloquent\Attributes\Hidden;
use Illuminate\Database\Eloquent\Factories\HasFactory;
use Illuminate\Database\Eloquent\Relations\BelongsTo;
use Illuminate\Foundation\Auth\User as Authenticatable;
use Illuminate\Notifications\Notifiable;
#[Fillable(['name', 'email', 'password', 'role', 'dun_id'])]
#[Hidden(['password', 'remember_token'])]
class User extends Authenticatable
{
/** @use HasFactory<UserFactory> */
use HasFactory, Notifiable;
public function isSuperadmin(): bool
{
return $this->role === 'superadmin';
}
public function isAdminDun(): bool
{
return $this->role === 'admin';
}
public function dun(): BelongsTo
{
return $this->belongsTo(Dun::class, 'dun_id');
}
/**
* Guna e-mel dalam Bahasa Melayu untuk pautan set semula kata laluan.
*/
public function sendPasswordResetNotification(#[\SensitiveParameter] $token): void
{
$this->notify(new ResetKataLaluanNotification($token));
}
/**
* Get the attributes that should be cast.
*
* @return array<string, string>
*/
protected function casts(): array
{
return [
'email_verified_at' => 'datetime',
'password' => 'hashed',
];
}
}

View File

@@ -0,0 +1,38 @@
<?php
namespace App\Notifications;
use Illuminate\Notifications\Messages\MailMessage;
use Illuminate\Notifications\Notification;
class ResetKataLaluanNotification extends Notification
{
public function __construct(private readonly string $token)
{
}
/**
* @return array<int,string>
*/
public function via(mixed $notifiable): array
{
return ['mail'];
}
public function toMail(mixed $notifiable): MailMessage
{
$url = url(route('password.reset', [
'token' => $this->token,
'email' => $notifiable->getEmailForPasswordReset(),
], false));
$minit = config('auth.passwords.users.expire');
return (new MailMessage)
->subject('Set Semula Kata Laluan - Kehadiran KTM SPR')
->line('Kami menerima permintaan untuk set semula kata laluan akaun anda.')
->action('Set Semula Kata Laluan', $url)
->line("Pautan ini akan tamat tempoh dalam {$minit} minit.")
->line('Jika anda tidak membuat permintaan ini, sila abaikan e-mel ini.');
}
}

View File

@@ -0,0 +1,24 @@
<?php
namespace App\Providers;
use Illuminate\Support\ServiceProvider;
class AppServiceProvider extends ServiceProvider
{
/**
* Register any application services.
*/
public function register(): void
{
//
}
/**
* Bootstrap any application services.
*/
public function boot(): void
{
//
}
}

191
app/Support/SimpleXlsx.php Normal file
View File

@@ -0,0 +1,191 @@
<?php
namespace App\Support;
use ZipArchive;
/**
* Penjana .xlsx ringan tanpa kebergantungan luar. Setiap nilai sel ditulis
* sebagai "inline string" supaya nilai seperti No. KP kekal sebagai teks
* (mengekalkan sengkang / sifar di hadapan). Menyokong berbilang worksheet.
*/
class SimpleXlsx
{
/** @var array<int,array{name:string,rows:array<int,array<int,scalar|null>>}> */
private array $sheets = [];
/**
* Tambah satu worksheet. Baris pertama dianggap pengepala (huruf tebal).
*
* @param array<int,array<int,scalar|null>> $rows
*/
public function addSheet(string $name, array $rows): static
{
$this->sheets[] = ['name' => $this->namaSah($name), 'rows' => $rows];
return $this;
}
/**
* Hasilkan kandungan binari fail .xlsx.
*/
public function toString(): string
{
$tmp = tempnam(sys_get_temp_dir(), 'xlsx');
$zip = new ZipArchive;
$zip->open($tmp, ZipArchive::OVERWRITE);
$zip->addFromString('[Content_Types].xml', $this->contentTypes());
$zip->addFromString('_rels/.rels', $this->rootRels());
$zip->addFromString('xl/workbook.xml', $this->workbook());
$zip->addFromString('xl/_rels/workbook.xml.rels', $this->workbookRels());
$zip->addFromString('xl/styles.xml', $this->styles());
foreach ($this->sheets as $i => $sheet) {
$zip->addFromString('xl/worksheets/sheet'.($i + 1).'.xml', $this->sheetXml($sheet['rows']));
}
$zip->close();
$data = file_get_contents($tmp);
@unlink($tmp);
return $data;
}
private function namaSah(string $name): string
{
$name = preg_replace('/[\\\\\/\*\?\[\]:]/', ' ', $name);
return mb_substr(trim($name), 0, 31) ?: 'Sheet';
}
/**
* Tukar indeks lajur (0-asas) kepada huruf A, B, AA.
*/
private function col(int $index): string
{
$letters = '';
$index++;
while ($index > 0) {
$mod = ($index - 1) % 26;
$letters = chr(65 + $mod).$letters;
$index = intdiv($index - 1, 26);
}
return $letters;
}
private function cell(string $ref, string $value, int $style): string
{
$v = htmlspecialchars($value, ENT_QUOTES | ENT_XML1, 'UTF-8');
$s = $style > 0 ? ' s="'.$style.'"' : '';
return '<c r="'.$ref.'"'.$s.' t="inlineStr"><is><t xml:space="preserve">'.$v.'</t></is></c>';
}
/**
* @param array<int,array<int,scalar|null>> $rows
*/
private function sheetXml(array $rows): string
{
$xml = '<?xml version="1.0" encoding="UTF-8" standalone="yes"?>'
.'<worksheet xmlns="http://schemas.openxmlformats.org/spreadsheetml/2006/main"><sheetData>';
foreach ($rows as $r => $cells) {
$rowNum = $r + 1;
$style = $r === 0 ? 1 : 0;
$xml .= '<row r="'.$rowNum.'">';
foreach (array_values($cells) as $c => $val) {
$xml .= $this->cell($this->col($c).$rowNum, (string) $val, $style);
}
$xml .= '</row>';
}
return $xml.'</sheetData></worksheet>';
}
private function contentTypes(): string
{
$overrides = '';
foreach ($this->sheets as $i => $s) {
$overrides .= '<Override PartName="/xl/worksheets/sheet'.($i + 1).'.xml" '
.'ContentType="application/vnd.openxmlformats-officedocument.spreadsheetml.worksheet+xml"/>';
}
return '<?xml version="1.0" encoding="UTF-8" standalone="yes"?>'
.'<Types xmlns="http://schemas.openxmlformats.org/package/2006/content-types">'
.'<Default Extension="rels" ContentType="application/vnd.openxmlformats-package.relationships+xml"/>'
.'<Default Extension="xml" ContentType="application/xml"/>'
.'<Override PartName="/xl/workbook.xml" ContentType="application/vnd.openxmlformats-officedocument.spreadsheetml.sheet.main+xml"/>'
.'<Override PartName="/xl/styles.xml" ContentType="application/vnd.openxmlformats-officedocument.spreadsheetml.styles+xml"/>'
.$overrides
.'</Types>';
}
private function rootRels(): string
{
return '<?xml version="1.0" encoding="UTF-8" standalone="yes"?>'
.'<Relationships xmlns="http://schemas.openxmlformats.org/package/2006/relationships">'
.'<Relationship Id="rId1" Type="http://schemas.openxmlformats.org/officeDocument/2006/relationships/officeDocument" Target="xl/workbook.xml"/>'
.'</Relationships>';
}
private function workbook(): string
{
$sheetsXml = '';
foreach ($this->sheets as $i => $s) {
$name = htmlspecialchars($s['name'], ENT_QUOTES | ENT_XML1, 'UTF-8');
$sheetsXml .= '<sheet name="'.$name.'" sheetId="'.($i + 1).'" r:id="rId'.($i + 1).'"/>';
}
return '<?xml version="1.0" encoding="UTF-8" standalone="yes"?>'
.'<workbook xmlns="http://schemas.openxmlformats.org/spreadsheetml/2006/main" '
.'xmlns:r="http://schemas.openxmlformats.org/officeDocument/2006/relationships">'
.'<sheets>'.$sheetsXml.'</sheets></workbook>';
}
private function workbookRels(): string
{
$rels = '';
$count = count($this->sheets);
foreach ($this->sheets as $i => $s) {
$rels .= '<Relationship Id="rId'.($i + 1).'" '
.'Type="http://schemas.openxmlformats.org/officeDocument/2006/relationships/worksheet" '
.'Target="worksheets/sheet'.($i + 1).'.xml"/>';
}
$rels .= '<Relationship Id="rId'.($count + 1).'" '
.'Type="http://schemas.openxmlformats.org/officeDocument/2006/relationships/styles" '
.'Target="styles.xml"/>';
return '<?xml version="1.0" encoding="UTF-8" standalone="yes"?>'
.'<Relationships xmlns="http://schemas.openxmlformats.org/package/2006/relationships">'
.$rels.'</Relationships>';
}
private function styles(): string
{
return '<?xml version="1.0" encoding="UTF-8" standalone="yes"?>'
.'<styleSheet xmlns="http://schemas.openxmlformats.org/spreadsheetml/2006/main">'
.'<fonts count="2">'
.'<font><sz val="11"/><name val="Calibri"/></font>'
.'<font><b/><sz val="11"/><name val="Calibri"/></font>'
.'</fonts>'
.'<fills count="2"><fill><patternFill patternType="none"/></fill><fill><patternFill patternType="gray125"/></fill></fills>'
.'<borders count="1"><border/></borders>'
.'<cellStyleXfs count="1"><xf numFmtId="0" fontId="0" fillId="0" borderId="0"/></cellStyleXfs>'
.'<cellXfs count="2">'
.'<xf numFmtId="0" fontId="0" fillId="0" borderId="0" xfId="0"/>'
.'<xf numFmtId="0" fontId="1" fillId="0" borderId="0" xfId="0" applyFont="1"/>'
.'</cellXfs>'
.'</styleSheet>';
}
}

18
artisan Normal file
View File

@@ -0,0 +1,18 @@
#!/usr/bin/env php
<?php
use Illuminate\Foundation\Application;
use Symfony\Component\Console\Input\ArgvInput;
define('LARAVEL_START', microtime(true));
// Register the Composer autoloader...
require __DIR__.'/vendor/autoload.php';
// Bootstrap Laravel and handle the command...
/** @var Application $app */
$app = require_once __DIR__.'/bootstrap/app.php';
$status = $app->handleCommand(new ArgvInput);
exit($status);

35
bootstrap/app.php Normal file
View File

@@ -0,0 +1,35 @@
<?php
use Illuminate\Foundation\Application;
use Illuminate\Foundation\Configuration\Exceptions;
use Illuminate\Foundation\Configuration\Middleware;
use Illuminate\Http\Request;
return Application::configure(basePath: dirname(__DIR__))
->withRouting(
web: __DIR__.'/../routes/web.php',
commands: __DIR__.'/../routes/console.php',
health: '/up',
)
->withMiddleware(function (Middleware $middleware): void {
// Behind the host nginx (SSL terminator) -> web nginx -> php-fpm.
// Trust the forwarded headers so Laravel detects https and generates
// https URLs/assets (elak mixed-content bila SSL aktif).
$middleware->trustProxies(
at: '*',
headers: Request::HEADER_X_FORWARDED_FOR
| Request::HEADER_X_FORWARDED_HOST
| Request::HEADER_X_FORWARDED_PORT
| Request::HEADER_X_FORWARDED_PROTO,
);
$middleware->alias([
'role' => \App\Http\Middleware\EnsureRole::class,
]);
$middleware->redirectGuestsTo('/login');
})
->withExceptions(function (Exceptions $exceptions): void {
$exceptions->shouldRenderJsonWhen(
fn (Request $request) => $request->is('api/*'),
);
})->create();

2
bootstrap/cache/.gitignore vendored Normal file
View File

@@ -0,0 +1,2 @@
*
!.gitignore

7
bootstrap/providers.php Normal file
View File

@@ -0,0 +1,7 @@
<?php
use App\Providers\AppServiceProvider;
return [
AppServiceProvider::class,
];

86
composer.json Normal file
View File

@@ -0,0 +1,86 @@
{
"$schema": "https://getcomposer.org/schema.json",
"name": "laravel/laravel",
"type": "project",
"description": "The skeleton application for the Laravel framework.",
"keywords": ["laravel", "framework"],
"license": "MIT",
"require": {
"php": "^8.3",
"laravel/framework": "^13.8",
"laravel/tinker": "^3.0"
},
"require-dev": {
"fakerphp/faker": "^1.23",
"laravel/pail": "^1.2.5",
"laravel/pao": "^1.0.6",
"laravel/pint": "^1.27",
"mockery/mockery": "^1.6",
"nunomaduro/collision": "^8.6",
"phpunit/phpunit": "^12.5.12"
},
"autoload": {
"psr-4": {
"App\\": "app/",
"Database\\Factories\\": "database/factories/",
"Database\\Seeders\\": "database/seeders/"
}
},
"autoload-dev": {
"psr-4": {
"Tests\\": "tests/"
}
},
"scripts": {
"setup": [
"composer install",
"@php -r \"file_exists('.env') || copy('.env.example', '.env');\"",
"@php artisan key:generate",
"@php artisan migrate --force",
"npm install --ignore-scripts",
"npm run build"
],
"dev": [
"Composer\\Config::disableProcessTimeout",
"npx concurrently -c \"#93c5fd,#c4b5fd,#fb7185,#fdba74\" \"php artisan serve\" \"php artisan queue:listen --tries=1 --timeout=0\" \"php artisan pail --timeout=0\" \"npm run dev\" --names=server,queue,logs,vite --kill-others"
],
"test": [
"@php artisan config:clear --ansi @no_additional_args",
"@php artisan test"
],
"post-autoload-dump": [
"Illuminate\\Foundation\\ComposerScripts::postAutoloadDump",
"@php artisan package:discover --ansi"
],
"post-update-cmd": [
"@php artisan vendor:publish --tag=laravel-assets --ansi --force"
],
"post-root-package-install": [
"@php -r \"file_exists('.env') || copy('.env.example', '.env');\""
],
"post-create-project-cmd": [
"@php artisan key:generate --ansi",
"@php -r \"file_exists('database/database.sqlite') || touch('database/database.sqlite');\"",
"@php artisan migrate --graceful --ansi"
],
"pre-package-uninstall": [
"Illuminate\\Foundation\\ComposerScripts::prePackageUninstall"
]
},
"extra": {
"laravel": {
"dont-discover": []
}
},
"config": {
"optimize-autoloader": true,
"preferred-install": "dist",
"sort-packages": true,
"allow-plugins": {
"pestphp/pest-plugin": true,
"php-http/discovery": true
}
},
"minimum-stability": "stable",
"prefer-stable": true
}

8296
composer.lock generated Normal file

File diff suppressed because it is too large Load Diff

126
config/app.php Normal file
View File

@@ -0,0 +1,126 @@
<?php
return [
/*
|--------------------------------------------------------------------------
| Application Name
|--------------------------------------------------------------------------
|
| This value is the name of your application, which will be used when the
| framework needs to place the application's name in a notification or
| other UI elements where an application name needs to be displayed.
|
*/
'name' => env('APP_NAME', 'Laravel'),
/*
|--------------------------------------------------------------------------
| Application Environment
|--------------------------------------------------------------------------
|
| This value determines the "environment" your application is currently
| running in. This may determine how you prefer to configure various
| services the application utilizes. Set this in your ".env" file.
|
*/
'env' => env('APP_ENV', 'production'),
/*
|--------------------------------------------------------------------------
| Application Debug Mode
|--------------------------------------------------------------------------
|
| When your application is in debug mode, detailed error messages with
| stack traces will be shown on every error that occurs within your
| application. If disabled, a simple generic error page is shown.
|
*/
'debug' => (bool) env('APP_DEBUG', false),
/*
|--------------------------------------------------------------------------
| Application URL
|--------------------------------------------------------------------------
|
| This URL is used by the console to properly generate URLs when using
| the Artisan command line tool. You should set this to the root of
| the application so that it's available within Artisan commands.
|
*/
'url' => env('APP_URL', 'http://localhost'),
/*
|--------------------------------------------------------------------------
| Application Timezone
|--------------------------------------------------------------------------
|
| Here you may specify the default timezone for your application, which
| will be used by the PHP date and date-time functions. The timezone
| is set to "UTC" by default as it is suitable for most use cases.
|
*/
'timezone' => env('APP_TIMEZONE', 'Asia/Kuala_Lumpur'),
/*
|--------------------------------------------------------------------------
| Application Locale Configuration
|--------------------------------------------------------------------------
|
| The application locale determines the default locale that will be used
| by Laravel's translation / localization methods. This option can be
| set to any locale for which you plan to have translation strings.
|
*/
'locale' => env('APP_LOCALE', 'en'),
'fallback_locale' => env('APP_FALLBACK_LOCALE', 'en'),
'faker_locale' => env('APP_FAKER_LOCALE', 'en_US'),
/*
|--------------------------------------------------------------------------
| Encryption Key
|--------------------------------------------------------------------------
|
| This key is utilized by Laravel's encryption services and should be set
| to a random, 32 character string to ensure that all encrypted values
| are secure. You should do this prior to deploying the application.
|
*/
'cipher' => 'AES-256-CBC',
'key' => env('APP_KEY'),
'previous_keys' => [
...array_filter(
explode(',', (string) env('APP_PREVIOUS_KEYS', ''))
),
],
/*
|--------------------------------------------------------------------------
| Maintenance Mode Driver
|--------------------------------------------------------------------------
|
| These configuration options determine the driver used to determine and
| manage Laravel's "maintenance mode" status. The "cache" driver will
| allow maintenance mode to be controlled across multiple machines.
|
| Supported drivers: "file", "cache"
|
*/
'maintenance' => [
'driver' => env('APP_MAINTENANCE_DRIVER', 'file'),
'store' => env('APP_MAINTENANCE_STORE', 'database'),
],
];

117
config/auth.php Normal file
View File

@@ -0,0 +1,117 @@
<?php
use App\Models\User;
return [
/*
|--------------------------------------------------------------------------
| Authentication Defaults
|--------------------------------------------------------------------------
|
| This option defines the default authentication "guard" and password
| reset "broker" for your application. You may change these values
| as required, but they're a perfect start for most applications.
|
*/
'defaults' => [
'guard' => env('AUTH_GUARD', 'web'),
'passwords' => env('AUTH_PASSWORD_BROKER', 'users'),
],
/*
|--------------------------------------------------------------------------
| Authentication Guards
|--------------------------------------------------------------------------
|
| Next, you may define every authentication guard for your application.
| Of course, a great default configuration has been defined for you
| which utilizes session storage plus the Eloquent user provider.
|
| All authentication guards have a user provider, which defines how the
| users are actually retrieved out of your database or other storage
| system used by the application. Typically, Eloquent is utilized.
|
| Supported: "session"
|
*/
'guards' => [
'web' => [
'driver' => 'session',
'provider' => 'users',
],
],
/*
|--------------------------------------------------------------------------
| User Providers
|--------------------------------------------------------------------------
|
| All authentication guards have a user provider, which defines how the
| users are actually retrieved out of your database or other storage
| system used by the application. Typically, Eloquent is utilized.
|
| If you have multiple user tables or models you may configure multiple
| providers to represent the model / table. These providers may then
| be assigned to any extra authentication guards you have defined.
|
| Supported: "database", "eloquent"
|
*/
'providers' => [
'users' => [
'driver' => 'eloquent',
'model' => env('AUTH_MODEL', User::class),
],
// 'users' => [
// 'driver' => 'database',
// 'table' => 'users',
// ],
],
/*
|--------------------------------------------------------------------------
| Resetting Passwords
|--------------------------------------------------------------------------
|
| These configuration options specify the behavior of Laravel's password
| reset functionality, including the table utilized for token storage
| and the user provider that is invoked to actually retrieve users.
|
| The expiry time is the number of minutes that each reset token will be
| considered valid. This security feature keeps tokens short-lived so
| they have less time to be guessed. You may change this as needed.
|
| The throttle setting is the number of seconds a user must wait before
| generating more password reset tokens. This prevents the user from
| quickly generating a very large amount of password reset tokens.
|
*/
'passwords' => [
'users' => [
'provider' => 'users',
'table' => env('AUTH_PASSWORD_RESET_TOKEN_TABLE', 'password_reset_tokens'),
'expire' => 60,
'throttle' => 60,
],
],
/*
|--------------------------------------------------------------------------
| Password Confirmation Timeout
|--------------------------------------------------------------------------
|
| Here you may define the number of seconds before a password confirmation
| window expires and users are asked to re-enter their password via the
| confirmation screen. By default, the timeout lasts for three hours.
|
*/
'password_timeout' => env('AUTH_PASSWORD_TIMEOUT', 10800),
];

136
config/cache.php Normal file
View File

@@ -0,0 +1,136 @@
<?php
use Illuminate\Support\Str;
return [
/*
|--------------------------------------------------------------------------
| Default Cache Store
|--------------------------------------------------------------------------
|
| This option controls the default cache store that will be used by the
| framework. This connection is utilized if another isn't explicitly
| specified when running a cache operation inside the application.
|
*/
'default' => env('CACHE_STORE', 'database'),
/*
|--------------------------------------------------------------------------
| Cache Stores
|--------------------------------------------------------------------------
|
| Here you may define all of the cache "stores" for your application as
| well as their drivers. You may even define multiple stores for the
| same cache driver to group types of items stored in your caches.
|
| Supported drivers: "array", "database", "file", "memcached",
| "redis", "dynamodb", "storage", "octane",
| "session", "failover", "null"
|
*/
'stores' => [
'array' => [
'driver' => 'array',
'serialize' => false,
],
'database' => [
'driver' => 'database',
'connection' => env('DB_CACHE_CONNECTION'),
'table' => env('DB_CACHE_TABLE', 'cache'),
'lock_connection' => env('DB_CACHE_LOCK_CONNECTION'),
'lock_table' => env('DB_CACHE_LOCK_TABLE'),
],
'file' => [
'driver' => 'file',
'path' => storage_path('framework/cache/data'),
'lock_path' => storage_path('framework/cache/data'),
],
'storage' => [
'driver' => 'storage',
'disk' => env('CACHE_STORAGE_DISK'),
'path' => env('CACHE_STORAGE_PATH', 'framework/cache/data'),
],
'memcached' => [
'driver' => 'memcached',
'persistent_id' => env('MEMCACHED_PERSISTENT_ID'),
'sasl' => [
env('MEMCACHED_USERNAME'),
env('MEMCACHED_PASSWORD'),
],
'options' => [
// Memcached::OPT_CONNECT_TIMEOUT => 2000,
],
'servers' => [
[
'host' => env('MEMCACHED_HOST', '127.0.0.1'),
'port' => env('MEMCACHED_PORT', 11211),
'weight' => 100,
],
],
],
'redis' => [
'driver' => 'redis',
'connection' => env('REDIS_CACHE_CONNECTION', 'cache'),
'lock_connection' => env('REDIS_CACHE_LOCK_CONNECTION', 'default'),
],
'dynamodb' => [
'driver' => 'dynamodb',
'key' => env('AWS_ACCESS_KEY_ID'),
'secret' => env('AWS_SECRET_ACCESS_KEY'),
'region' => env('AWS_DEFAULT_REGION', 'us-east-1'),
'table' => env('DYNAMODB_CACHE_TABLE', 'cache'),
'endpoint' => env('DYNAMODB_ENDPOINT'),
],
'octane' => [
'driver' => 'octane',
],
'failover' => [
'driver' => 'failover',
'stores' => [
'database',
'array',
],
],
],
/*
|--------------------------------------------------------------------------
| Cache Key Prefix
|--------------------------------------------------------------------------
|
| When utilizing the APC, database, memcached, Redis, and DynamoDB cache
| stores, there might be other applications using the same cache. For
| that reason, you may prefix every cache key to avoid collisions.
|
*/
'prefix' => env('CACHE_PREFIX', Str::slug((string) env('APP_NAME', 'laravel')).'-cache-'),
/*
|--------------------------------------------------------------------------
| Serializable Classes
|--------------------------------------------------------------------------
|
| This value determines the classes that can be unserialized from cache
| storage. By default, no PHP classes will be unserialized from your
| cache to prevent gadget chain attacks if your APP_KEY is leaked.
|
*/
'serializable_classes' => false,
];

203
config/database.php Normal file
View File

@@ -0,0 +1,203 @@
<?php
use Illuminate\Support\Str;
use Pdo\Mysql;
return [
/*
|--------------------------------------------------------------------------
| Default Database Connection Name
|--------------------------------------------------------------------------
|
| Here you may specify which of the database connections below you wish
| to use as your default connection for database operations. This is
| the connection which will be utilized unless another connection
| is explicitly specified when you execute a query / statement.
|
*/
'default' => env('DB_CONNECTION', 'sqlite'),
/*
|--------------------------------------------------------------------------
| Database Connections
|--------------------------------------------------------------------------
|
| Below are all of the database connections defined for your application.
| An example configuration is provided for each database system which
| is supported by Laravel. You're free to add / remove connections.
|
*/
'connections' => [
'sqlite' => [
'driver' => 'sqlite',
'url' => env('DB_URL'),
'database' => env('DB_DATABASE', database_path('database.sqlite')),
'prefix' => '',
'foreign_key_constraints' => env('DB_FOREIGN_KEYS', true),
'busy_timeout' => null,
'journal_mode' => null,
'synchronous' => null,
'transaction_mode' => 'DEFERRED',
],
'mysql' => [
'driver' => 'mysql',
'url' => env('DB_URL'),
'host' => env('DB_HOST', '127.0.0.1'),
'port' => env('DB_PORT', '3306'),
'database' => env('DB_DATABASE', 'laravel'),
'username' => env('DB_USERNAME', 'root'),
'password' => env('DB_PASSWORD', ''),
'unix_socket' => env('DB_SOCKET', ''),
'charset' => env('DB_CHARSET', 'utf8mb4'),
'collation' => env('DB_COLLATION', 'utf8mb4_unicode_ci'),
'prefix' => '',
'prefix_indexes' => true,
'strict' => true,
'engine' => null,
'options' => extension_loaded('pdo_mysql') ? array_filter([
Mysql::ATTR_SSL_CA => env('MYSQL_ATTR_SSL_CA'),
]) : [],
],
'sppm' => [
'driver' => 'mysql',
'host' => env('SPPM_DB_HOST', '127.0.0.1'),
'port' => env('SPPM_DB_PORT', '3306'),
'database' => env('SPPM_DB_DATABASE', 'sppm'),
'username' => env('SPPM_DB_USERNAME', 'root'),
'password' => env('SPPM_DB_PASSWORD', ''),
'unix_socket' => env('DB_SOCKET', ''),
'charset' => env('DB_CHARSET', 'utf8mb4'),
'collation' => env('DB_COLLATION', 'utf8mb4_unicode_ci'),
'prefix' => '',
'prefix_indexes' => true,
'strict' => true,
'engine' => null,
'options' => extension_loaded('pdo_mysql') ? array_filter([
Mysql::ATTR_SSL_CA => env('MYSQL_ATTR_SSL_CA'),
]) : [],
],
'mariadb' => [
'driver' => 'mariadb',
'url' => env('DB_URL'),
'host' => env('DB_HOST', '127.0.0.1'),
'port' => env('DB_PORT', '3306'),
'database' => env('DB_DATABASE', 'laravel'),
'username' => env('DB_USERNAME', 'root'),
'password' => env('DB_PASSWORD', ''),
'unix_socket' => env('DB_SOCKET', ''),
'charset' => env('DB_CHARSET', 'utf8mb4'),
'collation' => env('DB_COLLATION', 'utf8mb4_unicode_ci'),
'prefix' => '',
'prefix_indexes' => true,
'strict' => true,
'engine' => null,
'options' => extension_loaded('pdo_mysql') ? array_filter([
Mysql::ATTR_SSL_CA => env('MYSQL_ATTR_SSL_CA'),
]) : [],
],
'pgsql' => [
'driver' => 'pgsql',
'url' => env('DB_URL'),
'host' => env('DB_HOST', '127.0.0.1'),
'port' => env('DB_PORT', '5432'),
'database' => env('DB_DATABASE', 'laravel'),
'username' => env('DB_USERNAME', 'root'),
'password' => env('DB_PASSWORD', ''),
'charset' => env('DB_CHARSET', 'utf8'),
'prefix' => '',
'prefix_indexes' => true,
'search_path' => 'public',
'sslmode' => env('DB_SSLMODE', 'prefer'),
],
'sqlsrv' => [
'driver' => 'sqlsrv',
'url' => env('DB_URL'),
'host' => env('DB_HOST', 'localhost'),
'port' => env('DB_PORT', '1433'),
'database' => env('DB_DATABASE', 'laravel'),
'username' => env('DB_USERNAME', 'root'),
'password' => env('DB_PASSWORD', ''),
'charset' => env('DB_CHARSET', 'utf8'),
'prefix' => '',
'prefix_indexes' => true,
// 'encrypt' => env('DB_ENCRYPT', 'yes'),
// 'trust_server_certificate' => env('DB_TRUST_SERVER_CERTIFICATE', 'false'),
],
],
/*
|--------------------------------------------------------------------------
| Migration Repository Table
|--------------------------------------------------------------------------
|
| This table keeps track of all the migrations that have already run for
| your application. Using this information, we can determine which of
| the migrations on disk haven't actually been run on the database.
|
*/
'migrations' => [
'table' => 'migrations',
'update_date_on_publish' => true,
],
/*
|--------------------------------------------------------------------------
| Redis Databases
|--------------------------------------------------------------------------
|
| Redis is an open source, fast, and advanced key-value store that also
| provides a richer body of commands than a typical key-value system
| such as Memcached. You may define your connection settings here.
|
*/
'redis' => [
'client' => env('REDIS_CLIENT', 'phpredis'),
'options' => [
'cluster' => env('REDIS_CLUSTER', 'redis'),
'prefix' => env('REDIS_PREFIX', Str::slug((string) env('APP_NAME', 'laravel')).'-database-'),
'persistent' => env('REDIS_PERSISTENT', false),
],
'default' => [
'url' => env('REDIS_URL'),
'host' => env('REDIS_HOST', '127.0.0.1'),
'username' => env('REDIS_USERNAME'),
'password' => env('REDIS_PASSWORD'),
'port' => env('REDIS_PORT', '6379'),
'database' => env('REDIS_DB', '0'),
'max_retries' => env('REDIS_MAX_RETRIES', 3),
'backoff_algorithm' => env('REDIS_BACKOFF_ALGORITHM', 'decorrelated_jitter'),
'backoff_base' => env('REDIS_BACKOFF_BASE', 100),
'backoff_cap' => env('REDIS_BACKOFF_CAP', 1000),
],
'cache' => [
'url' => env('REDIS_URL'),
'host' => env('REDIS_HOST', '127.0.0.1'),
'username' => env('REDIS_USERNAME'),
'password' => env('REDIS_PASSWORD'),
'port' => env('REDIS_PORT', '6379'),
'database' => env('REDIS_CACHE_DB', '1'),
'max_retries' => env('REDIS_MAX_RETRIES', 3),
'backoff_algorithm' => env('REDIS_BACKOFF_ALGORITHM', 'decorrelated_jitter'),
'backoff_base' => env('REDIS_BACKOFF_BASE', 100),
'backoff_cap' => env('REDIS_BACKOFF_CAP', 1000),
],
],
];

80
config/filesystems.php Normal file
View File

@@ -0,0 +1,80 @@
<?php
return [
/*
|--------------------------------------------------------------------------
| Default Filesystem Disk
|--------------------------------------------------------------------------
|
| Here you may specify the default filesystem disk that should be used
| by the framework. The "local" disk, as well as a variety of cloud
| based disks are available to your application for file storage.
|
*/
'default' => env('FILESYSTEM_DISK', 'local'),
/*
|--------------------------------------------------------------------------
| Filesystem Disks
|--------------------------------------------------------------------------
|
| Below you may configure as many filesystem disks as necessary, and you
| may even configure multiple disks for the same driver. Examples for
| most supported storage drivers are configured here for reference.
|
| Supported drivers: "local", "ftp", "sftp", "s3"
|
*/
'disks' => [
'local' => [
'driver' => 'local',
'root' => storage_path('app/private'),
'serve' => true,
'throw' => false,
'report' => false,
],
'public' => [
'driver' => 'local',
'root' => storage_path('app/public'),
'url' => rtrim(env('APP_URL', 'http://localhost'), '/').'/storage',
'visibility' => 'public',
'throw' => false,
'report' => false,
],
's3' => [
'driver' => 's3',
'key' => env('AWS_ACCESS_KEY_ID'),
'secret' => env('AWS_SECRET_ACCESS_KEY'),
'region' => env('AWS_DEFAULT_REGION'),
'bucket' => env('AWS_BUCKET'),
'url' => env('AWS_URL'),
'endpoint' => env('AWS_ENDPOINT'),
'use_path_style_endpoint' => env('AWS_USE_PATH_STYLE_ENDPOINT', false),
'throw' => false,
'report' => false,
],
],
/*
|--------------------------------------------------------------------------
| Symbolic Links
|--------------------------------------------------------------------------
|
| Here you may configure the symbolic links that will be created when the
| `storage:link` Artisan command is executed. The array keys should be
| the locations of the links and the values should be their targets.
|
*/
'links' => [
public_path('storage') => storage_path('app/public'),
],
];

132
config/logging.php Normal file
View File

@@ -0,0 +1,132 @@
<?php
use Monolog\Handler\NullHandler;
use Monolog\Handler\StreamHandler;
use Monolog\Handler\SyslogUdpHandler;
use Monolog\Processor\PsrLogMessageProcessor;
return [
/*
|--------------------------------------------------------------------------
| Default Log Channel
|--------------------------------------------------------------------------
|
| This option defines the default log channel that is utilized to write
| messages to your logs. The value provided here should match one of
| the channels present in the list of "channels" configured below.
|
*/
'default' => env('LOG_CHANNEL', 'stack'),
/*
|--------------------------------------------------------------------------
| Deprecations Log Channel
|--------------------------------------------------------------------------
|
| This option controls the log channel that should be used to log warnings
| regarding deprecated PHP and library features. This allows you to get
| your application ready for upcoming major versions of dependencies.
|
*/
'deprecations' => [
'channel' => env('LOG_DEPRECATIONS_CHANNEL', 'null'),
'trace' => env('LOG_DEPRECATIONS_TRACE', false),
],
/*
|--------------------------------------------------------------------------
| Log Channels
|--------------------------------------------------------------------------
|
| Here you may configure the log channels for your application. Laravel
| utilizes the Monolog PHP logging library, which includes a variety
| of powerful log handlers and formatters that you're free to use.
|
| Available drivers: "single", "daily", "slack", "syslog",
| "errorlog", "monolog", "custom", "stack"
|
*/
'channels' => [
'stack' => [
'driver' => 'stack',
'channels' => explode(',', (string) env('LOG_STACK', 'single')),
'ignore_exceptions' => false,
],
'single' => [
'driver' => 'single',
'path' => storage_path('logs/laravel.log'),
'level' => env('LOG_LEVEL', 'debug'),
'replace_placeholders' => true,
],
'daily' => [
'driver' => 'daily',
'path' => storage_path('logs/laravel.log'),
'level' => env('LOG_LEVEL', 'debug'),
'days' => env('LOG_DAILY_DAYS', 14),
'replace_placeholders' => true,
],
'slack' => [
'driver' => 'slack',
'url' => env('LOG_SLACK_WEBHOOK_URL'),
'username' => env('LOG_SLACK_USERNAME', env('APP_NAME', 'Laravel')),
'emoji' => env('LOG_SLACK_EMOJI', ':boom:'),
'level' => env('LOG_LEVEL', 'critical'),
'replace_placeholders' => true,
],
'papertrail' => [
'driver' => 'monolog',
'level' => env('LOG_LEVEL', 'debug'),
'handler' => env('LOG_PAPERTRAIL_HANDLER', SyslogUdpHandler::class),
'handler_with' => [
'host' => env('PAPERTRAIL_URL'),
'port' => env('PAPERTRAIL_PORT'),
'connectionString' => 'tls://'.env('PAPERTRAIL_URL').':'.env('PAPERTRAIL_PORT'),
],
'processors' => [PsrLogMessageProcessor::class],
],
'stderr' => [
'driver' => 'monolog',
'level' => env('LOG_LEVEL', 'debug'),
'handler' => StreamHandler::class,
'handler_with' => [
'stream' => 'php://stderr',
],
'formatter' => env('LOG_STDERR_FORMATTER'),
'processors' => [PsrLogMessageProcessor::class],
],
'syslog' => [
'driver' => 'syslog',
'level' => env('LOG_LEVEL', 'debug'),
'facility' => env('LOG_SYSLOG_FACILITY', LOG_USER),
'replace_placeholders' => true,
],
'errorlog' => [
'driver' => 'errorlog',
'level' => env('LOG_LEVEL', 'debug'),
'replace_placeholders' => true,
],
'null' => [
'driver' => 'monolog',
'handler' => NullHandler::class,
],
'emergency' => [
'path' => storage_path('logs/laravel.log'),
],
],
];

118
config/mail.php Normal file
View File

@@ -0,0 +1,118 @@
<?php
return [
/*
|--------------------------------------------------------------------------
| Default Mailer
|--------------------------------------------------------------------------
|
| This option controls the default mailer that is used to send all email
| messages unless another mailer is explicitly specified when sending
| the message. All additional mailers can be configured within the
| "mailers" array. Examples of each type of mailer are provided.
|
*/
'default' => env('MAIL_MAILER', 'log'),
/*
|--------------------------------------------------------------------------
| Mailer Configurations
|--------------------------------------------------------------------------
|
| Here you may configure all of the mailers used by your application plus
| their respective settings. Several examples have been configured for
| you and you are free to add your own as your application requires.
|
| Laravel supports a variety of mail "transport" drivers that can be used
| when delivering an email. You may specify which one you're using for
| your mailers below. You may also add additional mailers if needed.
|
| Supported: "smtp", "sendmail", "mailgun", "ses", "ses-v2",
| "postmark", "resend", "log", "array",
| "failover", "roundrobin"
|
*/
'mailers' => [
'smtp' => [
'transport' => 'smtp',
'scheme' => env('MAIL_SCHEME'),
'url' => env('MAIL_URL'),
'host' => env('MAIL_HOST', '127.0.0.1'),
'port' => env('MAIL_PORT', 2525),
'username' => env('MAIL_USERNAME'),
'password' => env('MAIL_PASSWORD'),
'timeout' => null,
'local_domain' => env('MAIL_EHLO_DOMAIN', parse_url((string) env('APP_URL', 'http://localhost'), PHP_URL_HOST)),
],
'ses' => [
'transport' => 'ses',
],
'postmark' => [
'transport' => 'postmark',
// 'message_stream_id' => env('POSTMARK_MESSAGE_STREAM_ID'),
// 'client' => [
// 'timeout' => 5,
// ],
],
'resend' => [
'transport' => 'resend',
],
'sendmail' => [
'transport' => 'sendmail',
'path' => env('MAIL_SENDMAIL_PATH', '/usr/sbin/sendmail -bs -i'),
],
'log' => [
'transport' => 'log',
'channel' => env('MAIL_LOG_CHANNEL'),
],
'array' => [
'transport' => 'array',
],
'failover' => [
'transport' => 'failover',
'mailers' => [
'smtp',
'log',
],
'retry_after' => 60,
],
'roundrobin' => [
'transport' => 'roundrobin',
'mailers' => [
'ses',
'postmark',
],
'retry_after' => 60,
],
],
/*
|--------------------------------------------------------------------------
| Global "From" Address
|--------------------------------------------------------------------------
|
| You may wish for all emails sent by your application to be sent from
| the same address. Here you may specify a name and address that is
| used globally for all emails that are sent by your application.
|
*/
'from' => [
'address' => env('MAIL_FROM_ADDRESS', 'hello@example.com'),
'name' => env('MAIL_FROM_NAME', env('APP_NAME', 'Laravel')),
],
];

129
config/queue.php Normal file
View File

@@ -0,0 +1,129 @@
<?php
return [
/*
|--------------------------------------------------------------------------
| Default Queue Connection Name
|--------------------------------------------------------------------------
|
| Laravel's queue supports a variety of backends via a single, unified
| API, giving you convenient access to each backend using identical
| syntax for each. The default queue connection is defined below.
|
*/
'default' => env('QUEUE_CONNECTION', 'database'),
/*
|--------------------------------------------------------------------------
| Queue Connections
|--------------------------------------------------------------------------
|
| Here you may configure the connection options for every queue backend
| used by your application. An example configuration is provided for
| each backend supported by Laravel. You're also free to add more.
|
| Drivers: "sync", "database", "beanstalkd", "sqs", "redis",
| "deferred", "background", "failover", "null"
|
*/
'connections' => [
'sync' => [
'driver' => 'sync',
],
'database' => [
'driver' => 'database',
'connection' => env('DB_QUEUE_CONNECTION'),
'table' => env('DB_QUEUE_TABLE', 'jobs'),
'queue' => env('DB_QUEUE', 'default'),
'retry_after' => (int) env('DB_QUEUE_RETRY_AFTER', 90),
'after_commit' => false,
],
'beanstalkd' => [
'driver' => 'beanstalkd',
'host' => env('BEANSTALKD_QUEUE_HOST', 'localhost'),
'queue' => env('BEANSTALKD_QUEUE', 'default'),
'retry_after' => (int) env('BEANSTALKD_QUEUE_RETRY_AFTER', 90),
'block_for' => 0,
'after_commit' => false,
],
'sqs' => [
'driver' => 'sqs',
'key' => env('AWS_ACCESS_KEY_ID'),
'secret' => env('AWS_SECRET_ACCESS_KEY'),
'prefix' => env('SQS_PREFIX', 'https://sqs.us-east-1.amazonaws.com/your-account-id'),
'queue' => env('SQS_QUEUE', 'default'),
'suffix' => env('SQS_SUFFIX'),
'region' => env('AWS_DEFAULT_REGION', 'us-east-1'),
'after_commit' => false,
],
'redis' => [
'driver' => 'redis',
'connection' => env('REDIS_QUEUE_CONNECTION', 'default'),
'queue' => env('REDIS_QUEUE', 'default'),
'retry_after' => (int) env('REDIS_QUEUE_RETRY_AFTER', 90),
'block_for' => null,
'after_commit' => false,
],
'deferred' => [
'driver' => 'deferred',
],
'background' => [
'driver' => 'background',
],
'failover' => [
'driver' => 'failover',
'connections' => [
'database',
'deferred',
],
],
],
/*
|--------------------------------------------------------------------------
| Job Batching
|--------------------------------------------------------------------------
|
| The following options configure the database and table that store job
| batching information. These options can be updated to any database
| connection and table which has been defined by your application.
|
*/
'batching' => [
'database' => env('DB_CONNECTION', 'sqlite'),
'table' => 'job_batches',
],
/*
|--------------------------------------------------------------------------
| Failed Queue Jobs
|--------------------------------------------------------------------------
|
| These options configure the behavior of failed queue job logging so you
| can control how and where failed jobs are stored. Laravel ships with
| support for storing failed jobs in a simple file or in a database.
|
| Supported drivers: "database-uuids", "dynamodb", "file", "null"
|
*/
'failed' => [
'driver' => env('QUEUE_FAILED_DRIVER', 'database-uuids'),
'database' => env('DB_CONNECTION', 'sqlite'),
'table' => 'failed_jobs',
],
];

38
config/services.php Normal file
View File

@@ -0,0 +1,38 @@
<?php
return [
/*
|--------------------------------------------------------------------------
| Third Party Services
|--------------------------------------------------------------------------
|
| This file is for storing the credentials for third party services such
| as Mailgun, Postmark, AWS and more. This file provides the de facto
| location for this type of information, allowing packages to have
| a conventional file to locate the various service credentials.
|
*/
'postmark' => [
'key' => env('POSTMARK_API_KEY'),
],
'resend' => [
'key' => env('RESEND_API_KEY'),
],
'ses' => [
'key' => env('AWS_ACCESS_KEY_ID'),
'secret' => env('AWS_SECRET_ACCESS_KEY'),
'region' => env('AWS_DEFAULT_REGION', 'us-east-1'),
],
'slack' => [
'notifications' => [
'bot_user_oauth_token' => env('SLACK_BOT_USER_OAUTH_TOKEN'),
'channel' => env('SLACK_BOT_USER_DEFAULT_CHANNEL'),
],
],
];

233
config/session.php Normal file
View File

@@ -0,0 +1,233 @@
<?php
use Illuminate\Support\Str;
return [
/*
|--------------------------------------------------------------------------
| Default Session Driver
|--------------------------------------------------------------------------
|
| This option determines the default session driver that is utilized for
| incoming requests. Laravel supports a variety of storage options to
| persist session data. Database storage is a great default choice.
|
| Supported: "file", "cookie", "database", "memcached",
| "redis", "dynamodb", "array"
|
*/
'driver' => env('SESSION_DRIVER', 'database'),
/*
|--------------------------------------------------------------------------
| Session Lifetime
|--------------------------------------------------------------------------
|
| Here you may specify the number of minutes that you wish the session
| to be allowed to remain idle before it expires. If you want them
| to expire immediately when the browser is closed then you may
| indicate that via the expire_on_close configuration option.
|
*/
'lifetime' => (int) env('SESSION_LIFETIME', 120),
'expire_on_close' => env('SESSION_EXPIRE_ON_CLOSE', false),
/*
|--------------------------------------------------------------------------
| Session Encryption
|--------------------------------------------------------------------------
|
| This option allows you to easily specify that all of your session data
| should be encrypted before it's stored. All encryption is performed
| automatically by Laravel and you may use the session like normal.
|
*/
'encrypt' => env('SESSION_ENCRYPT', false),
/*
|--------------------------------------------------------------------------
| Session File Location
|--------------------------------------------------------------------------
|
| When utilizing the "file" session driver, the session files are placed
| on disk. The default storage location is defined here; however, you
| are free to provide another location where they should be stored.
|
*/
'files' => storage_path('framework/sessions'),
/*
|--------------------------------------------------------------------------
| Session Database Connection
|--------------------------------------------------------------------------
|
| When using the "database" or "redis" session drivers, you may specify a
| connection that should be used to manage these sessions. This should
| correspond to a connection in your database configuration options.
|
*/
'connection' => env('SESSION_CONNECTION'),
/*
|--------------------------------------------------------------------------
| Session Database Table
|--------------------------------------------------------------------------
|
| When using the "database" session driver, you may specify the table to
| be used to store sessions. Of course, a sensible default is defined
| for you; however, you're welcome to change this to another table.
|
*/
'table' => env('SESSION_TABLE', 'sessions'),
/*
|--------------------------------------------------------------------------
| Session Cache Store
|--------------------------------------------------------------------------
|
| When using one of the framework's cache driven session backends, you may
| define the cache store which should be used to store the session data
| between requests. This must match one of your defined cache stores.
|
| Affects: "dynamodb", "memcached", "redis"
|
*/
'store' => env('SESSION_STORE'),
/*
|--------------------------------------------------------------------------
| Session Sweeping Lottery
|--------------------------------------------------------------------------
|
| Some session drivers must manually sweep their storage location to get
| rid of old sessions from storage. Here are the chances that it will
| happen on a given request. By default, the odds are 2 out of 100.
|
*/
'lottery' => [2, 100],
/*
|--------------------------------------------------------------------------
| Session Cookie Name
|--------------------------------------------------------------------------
|
| Here you may change the name of the session cookie that is created by
| the framework. Typically, you should not need to change this value
| since doing so does not grant a meaningful security improvement.
|
*/
'cookie' => env(
'SESSION_COOKIE',
Str::slug((string) env('APP_NAME', 'laravel')).'-session'
),
/*
|--------------------------------------------------------------------------
| Session Cookie Path
|--------------------------------------------------------------------------
|
| The session cookie path determines the path for which the cookie will
| be regarded as available. Typically, this will be the root path of
| your application, but you're free to change this when necessary.
|
*/
'path' => env('SESSION_PATH', '/'),
/*
|--------------------------------------------------------------------------
| Session Cookie Domain
|--------------------------------------------------------------------------
|
| This value determines the domain and subdomains the session cookie is
| available to. By default, the cookie will be available to the root
| domain without subdomains. Typically, this shouldn't be changed.
|
*/
'domain' => env('SESSION_DOMAIN'),
/*
|--------------------------------------------------------------------------
| HTTPS Only Cookies
|--------------------------------------------------------------------------
|
| By setting this option to true, session cookies will only be sent back
| to the server if the browser has a HTTPS connection. This will keep
| the cookie from being sent to you when it can't be done securely.
|
*/
'secure' => env('SESSION_SECURE_COOKIE'),
/*
|--------------------------------------------------------------------------
| HTTP Access Only
|--------------------------------------------------------------------------
|
| Setting this value to true will prevent JavaScript from accessing the
| value of the cookie and the cookie will only be accessible through
| the HTTP protocol. It's unlikely you should disable this option.
|
*/
'http_only' => env('SESSION_HTTP_ONLY', true),
/*
|--------------------------------------------------------------------------
| Same-Site Cookies
|--------------------------------------------------------------------------
|
| This option determines how your cookies behave when cross-site requests
| take place, and can be used to mitigate CSRF attacks. By default, we
| will set this value to "lax" to permit secure cross-site requests.
|
| See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Set-Cookie#samesitesamesite-value
|
| Supported: "lax", "strict", "none", null
|
*/
'same_site' => env('SESSION_SAME_SITE', 'lax'),
/*
|--------------------------------------------------------------------------
| Partitioned Cookies
|--------------------------------------------------------------------------
|
| Setting this value to true will tie the cookie to the top-level site for
| a cross-site context. Partitioned cookies are accepted by the browser
| when flagged "secure" and the Same-Site attribute is set to "none".
|
*/
'partitioned' => env('SESSION_PARTITIONED_COOKIE', false),
/*
|--------------------------------------------------------------------------
| Session Serialization
|--------------------------------------------------------------------------
|
| This value controls the serialization strategy for session data, which
| is JSON by default. Setting this to "php" allows the storage of PHP
| objects in the session but can make an application vulnerable to
| "gadget chain" serialization attacks if the APP_KEY is leaked.
|
| Supported: "json", "php"
|
*/
'serialization' => 'json',
];

1
database/.gitignore vendored Normal file
View File

@@ -0,0 +1 @@
*.sqlite*

View File

@@ -0,0 +1,45 @@
<?php
namespace Database\Factories;
use App\Models\User;
use Illuminate\Database\Eloquent\Factories\Factory;
use Illuminate\Support\Facades\Hash;
use Illuminate\Support\Str;
/**
* @extends Factory<User>
*/
class UserFactory extends Factory
{
/**
* The current password being used by the factory.
*/
protected static ?string $password;
/**
* Define the model's default state.
*
* @return array<string, mixed>
*/
public function definition(): array
{
return [
'name' => fake()->name(),
'email' => fake()->unique()->safeEmail(),
'email_verified_at' => now(),
'password' => static::$password ??= Hash::make('password'),
'remember_token' => Str::random(10),
];
}
/**
* Indicate that the model's email address should be unverified.
*/
public function unverified(): static
{
return $this->state(fn (array $attributes) => [
'email_verified_at' => null,
]);
}
}

View File

@@ -0,0 +1,49 @@
<?php
use Illuminate\Database\Migrations\Migration;
use Illuminate\Database\Schema\Blueprint;
use Illuminate\Support\Facades\Schema;
return new class extends Migration
{
/**
* Run the migrations.
*/
public function up(): void
{
Schema::create('users', function (Blueprint $table) {
$table->id();
$table->string('name');
$table->string('email')->unique();
$table->timestamp('email_verified_at')->nullable();
$table->string('password');
$table->rememberToken();
$table->timestamps();
});
Schema::create('password_reset_tokens', function (Blueprint $table) {
$table->string('email')->primary();
$table->string('token');
$table->timestamp('created_at')->nullable();
});
Schema::create('sessions', function (Blueprint $table) {
$table->string('id')->primary();
$table->foreignId('user_id')->nullable()->index();
$table->string('ip_address', 45)->nullable();
$table->text('user_agent')->nullable();
$table->longText('payload');
$table->integer('last_activity')->index();
});
}
/**
* Reverse the migrations.
*/
public function down(): void
{
Schema::dropIfExists('users');
Schema::dropIfExists('password_reset_tokens');
Schema::dropIfExists('sessions');
}
};

View File

@@ -0,0 +1,35 @@
<?php
use Illuminate\Database\Migrations\Migration;
use Illuminate\Database\Schema\Blueprint;
use Illuminate\Support\Facades\Schema;
return new class extends Migration
{
/**
* Run the migrations.
*/
public function up(): void
{
Schema::create('cache', function (Blueprint $table) {
$table->string('key')->primary();
$table->mediumText('value');
$table->bigInteger('expiration')->index();
});
Schema::create('cache_locks', function (Blueprint $table) {
$table->string('key')->primary();
$table->string('owner');
$table->bigInteger('expiration')->index();
});
}
/**
* Reverse the migrations.
*/
public function down(): void
{
Schema::dropIfExists('cache');
Schema::dropIfExists('cache_locks');
}
};

View File

@@ -0,0 +1,59 @@
<?php
use Illuminate\Database\Migrations\Migration;
use Illuminate\Database\Schema\Blueprint;
use Illuminate\Support\Facades\Schema;
return new class extends Migration
{
/**
* Run the migrations.
*/
public function up(): void
{
Schema::create('jobs', function (Blueprint $table) {
$table->id();
$table->string('queue')->index();
$table->longText('payload');
$table->unsignedSmallInteger('attempts');
$table->unsignedInteger('reserved_at')->nullable();
$table->unsignedInteger('available_at');
$table->unsignedInteger('created_at');
});
Schema::create('job_batches', function (Blueprint $table) {
$table->string('id')->primary();
$table->string('name');
$table->integer('total_jobs');
$table->integer('pending_jobs');
$table->integer('failed_jobs');
$table->longText('failed_job_ids');
$table->mediumText('options')->nullable();
$table->integer('cancelled_at')->nullable();
$table->integer('created_at');
$table->integer('finished_at')->nullable();
});
Schema::create('failed_jobs', function (Blueprint $table) {
$table->id();
$table->string('uuid')->unique();
$table->string('connection');
$table->string('queue');
$table->longText('payload');
$table->longText('exception');
$table->timestamp('failed_at')->useCurrent();
$table->index(['connection', 'queue', 'failed_at']);
});
}
/**
* Reverse the migrations.
*/
public function down(): void
{
Schema::dropIfExists('jobs');
Schema::dropIfExists('job_batches');
Schema::dropIfExists('failed_jobs');
}
};

View File

@@ -0,0 +1,31 @@
<?php
use Illuminate\Database\Migrations\Migration;
use Illuminate\Database\Schema\Blueprint;
use Illuminate\Support\Facades\Schema;
return new class extends Migration
{
/**
* Peranan:
* superadmin - urus pengguna (dan boleh akses semua DUN)
* admin - admin DUN: rekod kehadiran KTM & eksport (dun_id wajib)
*/
public function up(): void
{
Schema::table('users', function (Blueprint $table) {
$table->string('role', 20)->default('admin')->after('password');
// Rujuk sppm.dun.id (pangkalan data berasingan, tiada FK sebenar)
$table->unsignedBigInteger('dun_id')->nullable()->after('role');
$table->index(['role', 'dun_id']);
});
}
public function down(): void
{
Schema::table('users', function (Blueprint $table) {
$table->dropIndex(['role', 'dun_id']);
$table->dropColumn(['role', 'dun_id']);
});
}
};

View File

@@ -0,0 +1,31 @@
<?php
use Illuminate\Database\Migrations\Migration;
use Illuminate\Database\Schema\Blueprint;
use Illuminate\Support\Facades\Schema;
return new class extends Migration
{
/**
* Rekod kehadiran KTM mengambil peti undi. Satu rekod = satu penempatan
* KTM (sppm.petugas_assignments) yang telah hadir.
*/
public function up(): void
{
Schema::create('kehadiran_ktm', function (Blueprint $table) {
$table->id();
// Rujukan ke pangkalan data sppm (tiada FK sebenar merentas DB)
$table->unsignedBigInteger('assignment_id')->unique();
$table->unsignedBigInteger('permohonan_id')->index();
$table->unsignedBigInteger('dun_id')->index();
$table->dateTime('hadir_at');
$table->foreignId('dicatat_oleh_user_id')->constrained('users');
$table->timestamps();
});
}
public function down(): void
{
Schema::dropIfExists('kehadiran_ktm');
}
};

View File

@@ -0,0 +1,50 @@
<?php
namespace Database\Seeders;
use App\Models\User;
use Illuminate\Database\Console\Seeds\WithoutModelEvents;
use Illuminate\Database\Seeder;
use Illuminate\Support\Facades\Hash;
class DatabaseSeeder extends Seeder
{
use WithoutModelEvents;
/**
* Seed the application's database.
*/
public function run(): void
{
User::updateOrCreate(
['email' => 'superadmin@spr.gov.my'],
[
'name' => 'Superadmin',
'password' => Hash::make('password'),
'role' => 'superadmin',
'dun_id' => null,
],
);
// Admin DUN — dun_id merujuk kepada sppm.dun.id
User::updateOrCreate(
['email' => 'admin.n49@spr.gov.my'],
[
'name' => 'Admin DUN N49',
'password' => Hash::make('password'),
'role' => 'admin',
'dun_id' => 1,
],
);
User::updateOrCreate(
['email' => 'admin.n48@spr.gov.my'],
[
'name' => 'Admin DUN N48',
'password' => Hash::make('password'),
'role' => 'admin',
'dun_id' => 2,
],
);
}
}

31
deploy.sh Normal file
View File

@@ -0,0 +1,31 @@
#!/bin/bash
# Kehadiran KTM SPR — Production Deploy Script
# Dipanggil oleh container webhook selepas git push ke GitHub (branch main).
set -e
PROJECT_DIR="/srv/spr2026_ktm"
LOG="$PROJECT_DIR/deploy.log"
log() { echo "[$(date '+%Y-%m-%d %H:%M:%S')] $1" | tee -a "$LOG"; }
log "=== Deploy dimulakan ==="
cd "$PROJECT_DIR"
# git jalan sebagai root dlm container; repo milik user host -> elak "dubious ownership".
git config --global --add safe.directory "$PROJECT_DIR"
log "git pull..."
git pull origin main
# Kod di-bake dalam image (bukan bind-mount) -> perlu build semula.
# Hanya service aplikasi yg di-recreate; container 'webhook' SENGAJA tidak
# disenaraikan supaya ia tidak bunuh dirinya sendiri di tengah deploy.
# Entrypoint app jalankan migrate + config/route/view:cache automatik masa boot.
log "build & recreate (app, web, queue, scheduler)..."
docker compose up -d --build --force-recreate app web queue scheduler
log "buang image lama yg tidak digunakan..."
docker image prune -f
log "=== Deploy selesai ==="

93
docker-compose.yml Normal file
View File

@@ -0,0 +1,93 @@
# Docker stack for "Kehadiran KTM SPR" (Laravel 13 / PHP 8.4)
#
# Topology:
# web (nginx) -> exposes 127.0.0.1:8009, host nginx reverse-proxies the
# domain http://ktmspr.apps.mbip.my to it.
# app (fpm) -> PHP 8.4-FPM, runs migrations on boot.
# queue -> database queue worker.
# scheduler -> Laravel scheduler.
#
# Databases (sppm_ktm + the existing sppm DB) live on the HOST MySQL and
# are reached via host.docker.internal (see extra_hosts below + DOCKER.md).
x-app-build: &app-build
context: .
dockerfile: docker/Dockerfile
target: app
x-app-common: &app-common
build: *app-build
image: ktmspr-app:latest
restart: unless-stopped
env_file:
- .env.docker
extra_hosts:
- "host.docker.internal:host-gateway"
volumes:
- app_storage:/var/www/html/storage
services:
app:
<<: *app-common
environment:
RUN_MIGRATIONS: "true"
TZ: Asia/Kuala_Lumpur
APP_TIMEZONE: Asia/Kuala_Lumpur
web:
build:
context: .
dockerfile: docker/Dockerfile
target: web
image: ktmspr-web:latest
restart: unless-stopped
environment:
TZ: Asia/Kuala_Lumpur
depends_on:
- app
ports:
# Bind to loopback only; the host nginx terminates the public domain.
- "127.0.0.1:8009:80"
queue:
<<: *app-common
environment:
RUN_MIGRATIONS: "false"
TZ: Asia/Kuala_Lumpur
APP_TIMEZONE: Asia/Kuala_Lumpur
command: php artisan queue:work --sleep=3 --tries=3 --max-time=3600
depends_on:
- app
scheduler:
<<: *app-common
environment:
RUN_MIGRATIONS: "false"
TZ: Asia/Kuala_Lumpur
APP_TIMEZONE: Asia/Kuala_Lumpur
command: php artisan schedule:work
depends_on:
- app
# Webhook deploy (GitHub push -> git pull + rebuild). Dengar 127.0.0.1:9002;
# host nginx reverse-proxy /hooks/ ke sini. WEBHOOK_SECRET dari .env.docker.
webhook:
build:
context: ./docker/webhook
image: ktmspr-webhook:latest
restart: unless-stopped
env_file:
- .env.docker
ports:
- "127.0.0.1:9002:9000"
volumes:
- /var/run/docker.sock:/var/run/docker.sock
- ./docker/webhook/hooks.json:/etc/webhook/hooks.json:ro
- ./deploy.sh:/deploy.sh:ro
- .:/srv/spr2026_ktm
# Kunci SSH host utk `git pull` repo peribadi (abaikan jika repo awam/HTTPS).
- /root/.ssh:/root/.ssh:ro
command: -hooks=/etc/webhook/hooks.json -hotreload -verbose
volumes:
app_storage:

99
docker/Dockerfile Normal file
View File

@@ -0,0 +1,99 @@
# syntax=docker/dockerfile:1
# ---------------------------------------------------------------------------
# Stage 1: build front-end assets with Vite (Node 22 ~ npm 10.9.x)
# ---------------------------------------------------------------------------
FROM node:22-bookworm-slim AS assets
WORKDIR /app
# Install JS deps first for better layer caching. No package-lock.json is
# committed, so use `npm install` rather than `npm ci`.
COPY package.json ./
RUN npm install
# Only the inputs Vite needs to produce public/build
COPY vite.config.js ./
COPY resources ./resources
RUN npm run build
# ---------------------------------------------------------------------------
# Stage 2: PHP 8.4 dependencies + application code (the "app" / php-fpm image)
# ---------------------------------------------------------------------------
FROM php:8.4-fpm-bookworm AS app
# System libraries required to build the PHP extensions below.
RUN apt-get update && apt-get install -y --no-install-recommends \
git \
unzip \
rsync \
libzip-dev \
libpng-dev \
libjpeg-dev \
libfreetype-dev \
libonig-dev \
libicu-dev \
libxml2-dev \
&& docker-php-ext-configure gd --with-freetype --with-jpeg \
&& docker-php-ext-install -j"$(nproc)" \
pdo_mysql \
mbstring \
bcmath \
gd \
zip \
intl \
exif \
pcntl \
opcache \
&& apt-get clean \
&& rm -rf /var/lib/apt/lists/*
# Composer (pulled from the official image; 2.x line, matches host 2.9.x)
COPY --from=composer:2 /usr/bin/composer /usr/bin/composer
# PHP runtime configuration
COPY docker/php/php.ini /usr/local/etc/php/conf.d/zz-app.ini
WORKDIR /var/www/html
# Install PHP dependencies first (better caching). Skip scripts/autoloader
# until the full source tree is present.
COPY composer.json composer.lock ./
RUN composer install \
--no-dev \
--no-scripts \
--no-autoloader \
--prefer-dist \
--no-interaction \
--no-progress
# Application source + freshly built front-end assets
COPY . .
COPY --from=assets /app/public/build ./public/build
# Optimised autoloader (package discovery runs at container start instead,
# where the environment is available).
RUN composer dump-autoload --no-dev --optimize --no-interaction \
&& chown -R www-data:www-data storage bootstrap/cache \
&& chmod -R ug+rwX storage bootstrap/cache
# Entrypoint prepares storage, caches config, runs migrations, then runs the
# given command (php-fpm by default).
COPY docker/php/entrypoint.sh /usr/local/bin/entrypoint
RUN chmod +x /usr/local/bin/entrypoint
EXPOSE 9000
ENTRYPOINT ["entrypoint"]
CMD ["php-fpm"]
# ---------------------------------------------------------------------------
# Stage 3: nginx serving the static assets + proxying PHP to the app container
# ---------------------------------------------------------------------------
FROM nginx:1.27-alpine AS web
# Baked copy of the public root so nginx can serve static files directly.
COPY --from=app /var/www/html/public /var/www/html/public
COPY docker/nginx/default.conf /etc/nginx/conf.d/default.conf
EXPOSE 80

View File

@@ -0,0 +1,49 @@
# Host nginx reverse proxy for the Dockerized app.
# Install on the Ubuntu host:
# sudo cp docker/host-nginx/ktmspr.apps.mbip.my.conf \
# /etc/nginx/sites-available/ktmspr.apps.mbip.my
# sudo ln -s /etc/nginx/sites-available/ktmspr.apps.mbip.my \
# /etc/nginx/sites-enabled/
# sudo nginx -t && sudo systemctl reload nginx
server {
listen 80;
listen [::]:80;
server_name ktmspr.apps.mbip.my;
client_max_body_size 21M;
access_log /var/log/nginx/ktmspr.access.log;
error_log /var/log/nginx/ktmspr.error.log;
location / {
proxy_pass http://127.0.0.1:8009;
proxy_http_version 1.1;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_set_header X-Forwarded-Host $host;
proxy_connect_timeout 30s;
proxy_read_timeout 60s;
}
# GitHub webhook deploy -> container webhook (adnanh/webhook) di 127.0.0.1:9002.
# Endpoint GitHub: https://ktmspr.apps.mbip.my/hooks/deploy
location /hooks/ {
proxy_pass http://127.0.0.1:9002;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
# Deploy (build) ambil masa; bagi masa yg cukup utk response.
proxy_read_timeout 600s;
}
}
# NOTA: Selepas pasang SSL (certbot), blok di atas biasanya bertukar jadi
# `listen 443 ssl`. Pastikan KEDUA-DUA `location /` dan `location /hooks/`
# berada dalam blok 443 itu, dan `X-Forwarded-Proto $scheme` kekal ada.

34
docker/nginx/default.conf Normal file
View File

@@ -0,0 +1,34 @@
server {
listen 80;
server_name _;
root /var/www/html/public;
index index.php;
charset utf-8;
client_max_body_size 21M;
# Real client IP / forwarded headers come from the host nginx in front.
location / {
try_files $uri $uri/ /index.php?$query_string;
}
location = /favicon.ico { access_log off; log_not_found off; }
location = /robots.txt { access_log off; log_not_found off; }
error_page 404 /index.php;
# Pass PHP requests to the app (php-fpm) container.
location ~ \.php$ {
fastcgi_pass app:9000;
fastcgi_index index.php;
fastcgi_param SCRIPT_FILENAME $realpath_root$fastcgi_script_name;
include fastcgi_params;
fastcgi_hide_header X-Powered-By;
}
# Deny access to hidden files (e.g. .env) and version control.
location ~ /\.(?!well-known).* {
deny all;
}
}

66
docker/php/entrypoint.sh Normal file
View File

@@ -0,0 +1,66 @@
#!/usr/bin/env bash
set -euo pipefail
cd /var/www/html
echo "[entrypoint] Preparing storage directories..."
mkdir -p \
storage/app/public \
storage/framework/cache/data \
storage/framework/sessions \
storage/framework/views \
storage/framework/testing \
storage/logs \
bootstrap/cache
chown -R www-data:www-data storage bootstrap/cache || true
chmod -R ug+rwX storage bootstrap/cache || true
# Refresh package manifest (env vars are available now via compose env_file).
php artisan package:discover --ansi || true
# Wait for the database to be reachable before migrating / caching config.
wait_for_db() {
local host="${DB_HOST:-127.0.0.1}"
local port="${DB_PORT:-3306}"
echo "[entrypoint] Waiting for database at ${host}:${port}..."
for i in $(seq 1 30); do
if php -r '
$h=getenv("DB_HOST")?:"127.0.0.1";
$p=getenv("DB_PORT")?:"3306";
$d=getenv("DB_DATABASE")?:"";
$u=getenv("DB_USERNAME")?:"root";
$w=getenv("DB_PASSWORD")?:"";
try { new PDO("mysql:host=$h;port=$p;dbname=$d", $u, $w, [PDO::ATTR_TIMEOUT=>2]); exit(0); }
catch (Throwable $e) { exit(1); }
' >/dev/null 2>&1; then
echo "[entrypoint] Database is up."
return 0
fi
sleep 2
done
echo "[entrypoint] WARNING: database not reachable after timeout; continuing anyway."
return 0
}
# Cache framework config for performance. Runs in every role so all containers
# share the same compiled config.
cache_app() {
php artisan config:cache --ansi || true
php artisan route:cache --ansi || true
php artisan view:cache --ansi || true
}
# Only the primary (web/app) container runs migrations & storage:link, so the
# queue/scheduler workers don't race on them. Toggle with RUN_MIGRATIONS.
if [ "${RUN_MIGRATIONS:-true}" = "true" ]; then
wait_for_db
cache_app
echo "[entrypoint] Running migrations..."
php artisan migrate --force --ansi || echo "[entrypoint] WARNING: migrate failed."
php artisan storage:link --ansi || true
else
cache_app
fi
echo "[entrypoint] Starting: $*"
exec "$@"

20
docker/php/php.ini Normal file
View File

@@ -0,0 +1,20 @@
; Application PHP settings (production-leaning)
expose_php = Off
memory_limit = 256M
max_execution_time = 60
; File uploads (attendance app — keep modest but comfortable)
upload_max_filesize = 20M
post_max_size = 21M
; Timezone (app uses Asia/Kuala_Lumpur)
date.timezone = Asia/Kuala_Lumpur
; OPcache — enabled for production performance
opcache.enable = 1
opcache.enable_cli = 0
opcache.memory_consumption = 128
opcache.interned_strings_buffer = 16
opcache.max_accelerated_files = 20000
opcache.validate_timestamps = 1
opcache.revalidate_freq = 60

10
docker/webhook/Dockerfile Normal file
View File

@@ -0,0 +1,10 @@
FROM golang:1.23-alpine AS builder
RUN go install github.com/adnanh/webhook@2.8.1
FROM alpine:3.21
# docker-cli + compose plugin: deploy.sh perlu `docker compose build`
# (kod aplikasi di-bake dalam image, bukan bind-mount).
RUN apk add --no-cache git docker-cli docker-cli-compose openssh-client
COPY --from=builder /go/bin/webhook /usr/local/bin/webhook
EXPOSE 9000
ENTRYPOINT ["/usr/local/bin/webhook"]

32
docker/webhook/hooks.json Normal file
View File

@@ -0,0 +1,32 @@
[
{
"id": "deploy",
"execute-command": "/deploy.sh",
"command-working-directory": "/srv/spr2026_ktm",
"response-message": "Deploy dimulakan.",
"trigger-rule": {
"and": [
{
"match": {
"type": "payload-hmac-sha256",
"secret": "{{ .Env.WEBHOOK_SECRET }}",
"parameter": {
"source": "header",
"name": "X-Hub-Signature-256"
}
}
},
{
"match": {
"type": "value",
"value": "refs/heads/main",
"parameter": {
"source": "payload",
"name": "ref"
}
}
}
]
}
}
]

1656
package-lock.json generated Normal file

File diff suppressed because it is too large Load Diff

16
package.json Normal file
View File

@@ -0,0 +1,16 @@
{
"$schema": "https://www.schemastore.org/package.json",
"private": true,
"type": "module",
"scripts": {
"build": "vite build",
"dev": "vite"
},
"devDependencies": {
"@tailwindcss/vite": "^4.0.0",
"concurrently": "^9.0.1",
"laravel-vite-plugin": "^3.1",
"tailwindcss": "^4.0.0",
"vite": "^8.0.0"
}
}

36
phpunit.xml Normal file
View File

@@ -0,0 +1,36 @@
<?xml version="1.0" encoding="UTF-8"?>
<phpunit xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
xsi:noNamespaceSchemaLocation="vendor/phpunit/phpunit/phpunit.xsd"
bootstrap="vendor/autoload.php"
colors="true"
>
<testsuites>
<testsuite name="Unit">
<directory>tests/Unit</directory>
</testsuite>
<testsuite name="Feature">
<directory>tests/Feature</directory>
</testsuite>
</testsuites>
<source>
<include>
<directory>app</directory>
</include>
</source>
<php>
<env name="APP_ENV" value="testing"/>
<env name="APP_MAINTENANCE_DRIVER" value="file"/>
<env name="BCRYPT_ROUNDS" value="4"/>
<env name="BROADCAST_CONNECTION" value="null"/>
<env name="CACHE_STORE" value="array"/>
<env name="DB_CONNECTION" value="sqlite"/>
<env name="DB_DATABASE" value=":memory:"/>
<env name="DB_URL" value=""/>
<env name="MAIL_MAILER" value="array"/>
<env name="QUEUE_CONNECTION" value="sync"/>
<env name="SESSION_DRIVER" value="array"/>
<env name="PULSE_ENABLED" value="false"/>
<env name="TELESCOPE_ENABLED" value="false"/>
<env name="NIGHTWATCH_ENABLED" value="false"/>
</php>
</phpunit>

25
public/.htaccess Normal file
View File

@@ -0,0 +1,25 @@
<IfModule mod_rewrite.c>
<IfModule mod_negotiation.c>
Options -MultiViews -Indexes
</IfModule>
RewriteEngine On
# Handle Authorization Header
RewriteCond %{HTTP:Authorization} .
RewriteRule .* - [E=HTTP_AUTHORIZATION:%{HTTP:Authorization}]
# Handle X-XSRF-Token Header
RewriteCond %{HTTP:x-xsrf-token} .
RewriteRule .* - [E=HTTP_X_XSRF_TOKEN:%{HTTP:X-XSRF-Token}]
# Redirect Trailing Slashes If Not A Folder...
RewriteCond %{REQUEST_FILENAME} !-d
RewriteCond %{REQUEST_URI} (.+)/$
RewriteRule ^ %1 [L,R=301]
# Send Requests To Front Controller...
RewriteCond %{REQUEST_FILENAME} !-d
RewriteCond %{REQUEST_FILENAME} !-f
RewriteRule ^ index.php [L]
</IfModule>

381
public/css/app.css Normal file
View File

@@ -0,0 +1,381 @@
:root {
--biru: #1c3f94;
--biru-gelap: #142e6e;
--merah: #cc2229;
--kelabu: #f4f5f7;
--kelabu-border: #d9dde3;
--teks: #1f2430;
--hijau: #1a7f37;
--kuning: #b58900;
}
* { box-sizing: border-box; }
body {
margin: 0;
font-family: "Segoe UI", system-ui, -apple-system, sans-serif;
background: var(--kelabu);
color: var(--teks);
line-height: 1.5;
}
a { color: var(--biru); }
.topbar {
background: var(--biru);
color: #fff;
padding: 0.75rem 1rem;
display: flex;
align-items: center;
justify-content: space-between;
flex-wrap: wrap;
gap: 0.5rem;
}
.topbar .jenama {
font-weight: 700;
font-size: 1.05rem;
color: #fff;
text-decoration: none;
}
.topbar .pengguna {
display: flex;
align-items: center;
gap: 0.75rem;
font-size: 0.9rem;
}
.topbar .pengguna a {
color: #fff;
text-decoration: underline;
}
.container {
max-width: 960px;
margin: 1.25rem auto;
padding: 0 1rem;
}
.container-kecil { max-width: 480px; }
.kad {
background: #fff;
border: 1px solid var(--kelabu-border);
border-radius: 10px;
padding: 1.25rem;
margin-bottom: 1rem;
}
.kad h1, .kad h2 { margin-top: 0; }
h1 { font-size: 1.35rem; }
h2 { font-size: 1.15rem; }
label {
display: block;
font-weight: 600;
margin-bottom: 0.3rem;
}
input[type="text"],
input[type="email"],
input[type="password"],
input[type="date"],
select {
width: 100%;
padding: 0.65rem 0.75rem;
border: 1px solid var(--kelabu-border);
border-radius: 8px;
font-size: 1rem;
margin-bottom: 0.9rem;
background: #fff;
}
input:focus, select:focus {
outline: 2px solid var(--biru);
border-color: var(--biru);
}
.btn {
display: inline-block;
padding: 0.6rem 1.2rem;
border: none;
border-radius: 8px;
font-size: 1rem;
font-weight: 600;
cursor: pointer;
text-decoration: none;
text-align: center;
background: var(--biru);
color: #fff;
}
.btn:hover { background: var(--biru-gelap); }
.btn-penuh { width: 100%; display: block; }
.btn-hijau { background: var(--hijau); }
.btn-hijau:hover { background: #14632b; }
.btn-merah { background: var(--merah); }
.btn-merah:hover { background: #a31b21; }
.btn-kecil { padding: 0.35rem 0.75rem; font-size: 0.85rem; }
.btn-luar {
background: #fff;
color: var(--biru);
border: 1px solid var(--biru);
}
.btn-luar:hover { background: #eef1f9; color: var(--biru); }
.makluman {
padding: 0.75rem 1rem;
border-radius: 8px;
margin-bottom: 1rem;
font-size: 0.95rem;
}
.makluman-info { background: #e8f0fe; border: 1px solid #b3c7f2; color: #173a7a; }
.makluman-jaya { background: #e6f4ea; border: 1px solid #a8d5b5; color: #14632b; }
.makluman-ralat { background: #fdecea; border: 1px solid #f5b5b1; color: #8c1d18; }
.makluman-amaran { background: #fff8e1; border: 1px solid #ecd591; color: #7a5d00; }
.slip-nombor {
font-size: 4.5rem;
font-weight: 900;
text-align: center;
letter-spacing: 0.1em;
color: var(--biru);
margin: 0.5rem 0;
font-variant-numeric: tabular-nums;
}
.slip-butiran {
width: 100%;
border-collapse: collapse;
margin: 1rem 0;
}
.slip-butiran th,
.slip-butiran td {
text-align: left;
padding: 0.5rem 0.6rem;
border-bottom: 1px solid var(--kelabu-border);
vertical-align: top;
}
.slip-butiran th {
width: 38%;
color: #5a6172;
font-weight: 600;
white-space: nowrap;
}
table.jadual {
width: 100%;
border-collapse: collapse;
background: #fff;
font-size: 0.92rem;
}
table.jadual th,
table.jadual td {
padding: 0.55rem 0.6rem;
border-bottom: 1px solid var(--kelabu-border);
text-align: left;
vertical-align: top;
}
table.jadual thead th {
background: var(--biru);
color: #fff;
position: sticky;
top: 0;
}
table.jadual tbody tr:nth-child(even) { background: #f8f9fb; }
.lencana {
display: inline-block;
padding: 0.15rem 0.6rem;
border-radius: 999px;
font-size: 0.78rem;
font-weight: 700;
}
.lencana-hijau { background: #e6f4ea; color: var(--hijau); }
.lencana-merah { background: #fdecea; color: var(--merah); }
.lencana-kelabu { background: #ececec; color: #555; }
.lencana-biru { background: #e8f0fe; color: var(--biru); }
.lencana-kuning { background: #fbf0d9; color: var(--kuning); }
.baris-tindakan {
display: flex;
gap: 0.4rem;
flex-wrap: wrap;
}
.tab-bar {
display: flex;
gap: 0.5rem;
margin-bottom: 1rem;
flex-wrap: wrap;
}
.tab-bar a {
padding: 0.5rem 1rem;
border-radius: 8px;
text-decoration: none;
font-weight: 600;
background: #fff;
border: 1px solid var(--kelabu-border);
color: var(--teks);
}
.tab-bar a.aktif {
background: var(--biru);
border-color: var(--biru);
color: #fff;
}
.qr-wrap {
text-align: center;
padding: 1rem;
}
.qr-wrap svg {
max-width: 100%;
height: auto;
}
.stat-grid {
display: grid;
grid-template-columns: repeat(auto-fit, minmax(140px, 1fr));
gap: 0.75rem;
margin-bottom: 1rem;
}
.stat {
background: #fff;
border: 1px solid var(--kelabu-border);
border-radius: 10px;
padding: 0.9rem;
text-align: center;
}
.stat .nilai {
font-size: 1.8rem;
font-weight: 800;
color: var(--biru);
}
.stat .label { font-size: 0.85rem; color: #5a6172; }
.teks-tengah { text-align: center; }
.teks-kecil { font-size: 0.85rem; color: #5a6172; }
.mb-0 { margin-bottom: 0; }
.mt-1 { margin-top: 1rem; }
.ralat-medan { color: var(--merah); font-size: 0.88rem; margin: -0.5rem 0 0.9rem; }
/* ===== Jadual: kepala (tajuk + carian), badan, kaki (info + paging) ===== */
.jadual-kepala {
display: flex;
align-items: center;
justify-content: space-between;
gap: 0.75rem;
flex-wrap: wrap;
padding: 1rem 1.25rem;
}
.tajuk-jadual {
margin: 0;
font-size: 1.05rem;
border-left: 4px solid var(--biru);
padding-left: 0.6rem;
}
.tajuk-jadual.hijau { border-color: var(--hijau); color: var(--hijau); }
.tajuk-jadual.merah { border-color: var(--merah); color: var(--merah); }
.tajuk-jadual.kuning { border-color: var(--kuning); color: var(--kuning); }
.jadual-kepala .cari-input {
width: auto;
flex: 1 1 220px;
max-width: 360px;
margin: 0;
padding: 0.5rem 0.75rem;
font-size: 0.95rem;
}
.jadual-bekas { overflow-x: auto; }
.jadual-kaki {
display: flex;
align-items: center;
justify-content: space-between;
gap: 0.75rem;
flex-wrap: wrap;
padding: 0.75rem 1.25rem;
border-top: 1px solid var(--kelabu-border);
}
.paging { display: flex; gap: 0.3rem; flex-wrap: wrap; }
.paging-btn {
min-width: 2.2rem;
padding: 0.35rem 0.6rem;
border: 1px solid var(--kelabu-border);
background: #fff;
color: var(--teks);
border-radius: 6px;
font-size: 0.9rem;
font-weight: 600;
cursor: pointer;
}
.paging-btn:hover:not(:disabled) { background: var(--kelabu); }
.paging-btn.aktif { background: var(--biru); border-color: var(--biru); color: #fff; }
.paging-btn:disabled { opacity: 0.45; cursor: default; }
@media print {
.topbar, .tiada-cetak { display: none !important; }
body { background: #fff; }
.kad { border: none; }
/* Cetak semua baris tanpa mengira halaman semasa */
tr.baris-data { display: table-row !important; }
}
@media (max-width: 640px) {
.slip-nombor { font-size: 3.5rem; }
table.jadual { font-size: 0.85rem; }
.jadual-kepala, .jadual-kaki { padding: 0.8rem; }
.jadual-kepala .cari-input { max-width: none; }
/* Jadual responsif: setiap baris jadi kad bertindan dgn label */
.jadual-responsif thead { display: none; }
.jadual-responsif tbody tr {
display: block;
border: 1px solid var(--kelabu-border);
border-radius: 8px;
margin: 0.6rem;
padding: 0.3rem 0.6rem;
background: #fff !important;
}
.jadual-responsif tbody td {
display: flex;
justify-content: space-between;
align-items: baseline;
gap: 1rem;
border: none;
padding: 0.35rem 0;
text-align: right;
}
.jadual-responsif tbody td::before {
content: attr(data-label);
font-weight: 600;
color: #5a6172;
text-align: left;
flex: 0 0 auto;
}
.jadual-responsif tbody td:last-child { padding-bottom: 0.1rem; }
.jadual-responsif .baris-tindakan { justify-content: flex-end; }
.jadual-responsif .baris-tiada td { justify-content: center; text-align: center; }
.jadual-responsif .baris-tiada td::before { content: ""; }
}

0
public/favicon.ico Normal file
View File

20
public/index.php Normal file
View File

@@ -0,0 +1,20 @@
<?php
use Illuminate\Foundation\Application;
use Illuminate\Http\Request;
define('LARAVEL_START', microtime(true));
// Determine if the application is in maintenance mode...
if (file_exists($maintenance = __DIR__.'/../storage/framework/maintenance.php')) {
require $maintenance;
}
// Register the Composer autoloader...
require __DIR__.'/../vendor/autoload.php';
// Bootstrap Laravel and handle the request...
/** @var Application $app */
$app = require_once __DIR__.'/../bootstrap/app.php';
$app->handleRequest(Request::capture());

2
public/robots.txt Normal file
View File

@@ -0,0 +1,2 @@
User-agent: *
Disallow:

9
resources/css/app.css Normal file
View File

@@ -0,0 +1,9 @@
@import 'tailwindcss';
@source '../../vendor/laravel/framework/src/Illuminate/Pagination/resources/views/*.blade.php';
@source '../../storage/framework/views/*.php';
@theme {
--font-sans: 'Instrument Sans', ui-sans-serif, system-ui, sans-serif, 'Apple Color Emoji', 'Segoe UI Emoji',
'Segoe UI Symbol', 'Noto Color Emoji';
}

1
resources/js/app.js Normal file
View File

@@ -0,0 +1 @@
//

View File

@@ -0,0 +1,28 @@
@extends('layouts.app')
@section('tajuk', 'Log Masuk')
@section('saiz-container', 'container-kecil')
@section('kandungan')
<div class="kad">
<h1>Log Masuk</h1>
<p class="teks-kecil">Sistem rekod kehadiran KTM mengambil peti undi. Untuk superadmin dan admin DUN sahaja.</p>
@if ($errors->any())
<div class="makluman makluman-ralat">{{ $errors->first() }}</div>
@endif
<form method="POST" action="{{ route('login.attempt') }}">
@csrf
<label for="email">Emel</label>
<input type="email" id="email" name="email" value="{{ old('email') }}" required autofocus>
<label for="password">Kata Laluan</label>
<input type="password" id="password" name="password" required>
<button type="submit" class="btn btn-penuh">Log Masuk</button>
</form>
<p class="teks-kecil mt-1"><a href="{{ route('password.request') }}">Lupa kata laluan?</a></p>
</div>
@endsection

View File

@@ -0,0 +1,25 @@
@extends('layouts.app')
@section('tajuk', 'Lupa Kata Laluan')
@section('saiz-container', 'container-kecil')
@section('kandungan')
<div class="kad">
<h1>Lupa Kata Laluan</h1>
<p class="teks-kecil">Masukkan e-mel akaun anda. Pautan set semula kata laluan akan dihantar ke e-mel tersebut.</p>
@if ($errors->any())
<div class="makluman makluman-ralat">{{ $errors->first() }}</div>
@endif
<form method="POST" action="{{ route('password.email') }}">
@csrf
<label for="email">E-mel</label>
<input type="email" id="email" name="email" value="{{ old('email') }}" required autofocus>
<button type="submit" class="btn btn-penuh">Hantar Pautan Set Semula</button>
</form>
<p class="teks-kecil mt-1"><a href="{{ route('login') }}">Kembali ke Log Masuk</a></p>
</div>
@endsection

View File

@@ -0,0 +1,30 @@
@extends('layouts.app')
@section('tajuk', 'Set Semula Kata Laluan')
@section('saiz-container', 'container-kecil')
@section('kandungan')
<div class="kad">
<h1>Set Semula Kata Laluan</h1>
@if ($errors->any())
<div class="makluman makluman-ralat">{{ $errors->first() }}</div>
@endif
<form method="POST" action="{{ route('password.update') }}">
@csrf
<input type="hidden" name="token" value="{{ $token }}">
<label for="email">E-mel</label>
<input type="email" id="email" name="email" value="{{ old('email', $email) }}" required autofocus>
<label for="password">Kata Laluan Baharu</label>
<input type="password" id="password" name="password" required minlength="8">
<label for="password_confirmation">Sahkan Kata Laluan Baharu</label>
<input type="password" id="password_confirmation" name="password_confirmation" required minlength="8">
<button type="submit" class="btn btn-penuh">Set Semula Kata Laluan</button>
</form>
</div>
@endsection

View File

@@ -0,0 +1,148 @@
@extends('layouts.app')
@section('tajuk', 'Dashboard Kehadiran KTM')
@section('kandungan')
<div class="stat-grid">
<div class="stat">
<div class="nilai">{{ $jumlahSemua }}</div>
<div class="label">Jumlah KTM</div>
</div>
<div class="stat">
<div class="nilai" style="color: var(--hijau)">{{ $jumlahHadir }}</div>
<div class="label">Hadir</div>
</div>
<div class="stat">
<div class="nilai" style="color: var(--merah)">{{ $jumlahBelum }}</div>
<div class="label">Belum Hadir</div>
</div>
</div>
<div class="kad">
<form method="GET" action="{{ route('dashboard') }}">
<div style="display:grid; grid-template-columns:repeat(auto-fit, minmax(180px, 1fr)); gap:0 0.75rem;">
@if (auth()->user()->isSuperadmin())
<div>
<label for="dun_id">DUN</label>
<select id="dun_id" name="dun_id" onchange="this.form.submit()">
<option value=""> Semua DUN </option>
@foreach ($senaraiDun as $dun)
<option value="{{ $dun->id }}" @selected($dunId == $dun->id)>
{{ $dun->code }} {{ $dun->nama }}
</option>
@endforeach
</select>
</div>
@endif
<div>
<label for="q">Cari Nama / No. KP</label>
<input type="text" id="q" name="q" value="{{ request('q') }}" placeholder="Nama KTM atau No. KP">
</div>
<div>
<label for="pusat_id">Pusat Mengundi</label>
<select id="pusat_id" name="pusat_id">
<option value=""> Semua Pusat </option>
@foreach ($senaraiPusat as $pusat)
<option value="{{ $pusat->id }}" @selected(request('pusat_id') == $pusat->id)>
{{ $pusat->nama }}
</option>
@endforeach
</select>
</div>
<div>
<label for="status">Status</label>
<select id="status" name="status">
<option value=""> Semua Status </option>
<option value="belum" @selected(request('status') === 'belum')>Belum Hadir</option>
<option value="hadir" @selected(request('status') === 'hadir')>Hadir</option>
</select>
</div>
</div>
<div class="baris-tindakan">
<button type="submit" class="btn">Cari / Tapis</button>
<a href="{{ route('dashboard') }}" class="btn btn-luar">Set Semula</a>
<a href="{{ route('kehadiran.eksport', array_filter(['dun_id' => auth()->user()->isSuperadmin() ? $dunId : null])) }}"
class="btn btn-hijau"> Muat Turun Excel</a>
</div>
</form>
</div>
<div class="kad" style="padding:0;">
<div class="jadual-kepala">
<h2 class="tajuk-jadual mb-0">Senarai KTM (Ketua Tempat Mengundi)</h2>
</div>
<div class="jadual-bekas">
<table class="jadual jadual-responsif">
<thead>
<tr>
<th>Bil</th>
<th>Pusat Mengundi</th>
<th>Saluran</th>
<th>Nama</th>
<th>No. KP</th>
<th>No. Telefon</th>
<th>Jawatan</th>
<th>Status</th>
<th>Tindakan</th>
</tr>
</thead>
<tbody>
@forelse ($assignments as $i => $a)
@php
$rekod = $kehadiran->get($a->id);
$p = $a->permohonan;
@endphp
<tr class="baris-data">
<td data-label="Bil">{{ $i + 1 }}</td>
<td data-label="Pusat Mengundi">{{ $a->pusatMengundi?->nama ?? '-' }}</td>
<td data-label="Saluran">{{ $a->saluran ? 'Saluran ' . $a->saluran->nombor_saluran : '-' }}</td>
<td data-label="Nama"><strong>{{ $p?->nama_ic ?? '-' }}</strong></td>
<td data-label="No. KP">{{ $p?->no_kp ?? '-' }}</td>
<td data-label="No. Telefon">{{ $p?->no_telefon ?? '-' }}</td>
<td data-label="Jawatan">{{ $a->jawatan?->nama ?? '-' }}</td>
<td data-label="Status">
@if ($rekod)
<span class="lencana lencana-hijau">HADIR</span>
<div class="teks-kecil">{{ $rekod->hadir_at->format('d/m/Y h:i A') }}</div>
@else
<span class="lencana lencana-merah">BELUM HADIR</span>
@endif
</td>
<td data-label="Tindakan">
<div class="baris-tindakan">
@if ($rekod)
<form method="POST" action="{{ route('kehadiran.batal', $a->id) }}"
onsubmit="return confirm('Batalkan rekod kehadiran {{ $p?->nama_ic }}?');">
@csrf
@method('DELETE')
<button type="submit" class="btn btn-kecil btn-luar">Batal</button>
</form>
@else
<form method="POST" action="{{ route('kehadiran.hadir', $a->id) }}"
onsubmit="return confirm('Tandakan {{ $p?->nama_ic }} sebagai HADIR mengambil peti undi?');">
@csrf
<button type="submit" class="btn btn-kecil btn-hijau">Tanda Hadir</button>
</form>
@endif
</div>
</td>
</tr>
@empty
<tr class="baris-tiada">
<td colspan="9" class="teks-tengah">Tiada KTM dijumpai untuk tapisan ini.</td>
</tr>
@endforelse
</tbody>
</table>
</div>
<div class="jadual-kaki">
<span class="teks-kecil">{{ $assignments->count() }} rekod dipaparkan</span>
</div>
</div>
@endsection

View File

@@ -0,0 +1,46 @@
<!DOCTYPE html>
<html lang="ms">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<title>@yield('tajuk', config('app.name'))</title>
@php $cssVer = @filemtime(public_path('css/app.css')) ?: null; @endphp
<link rel="stylesheet" href="{{ asset('css/app.css') }}{{ $cssVer ? '?v=' . $cssVer : '' }}">
</head>
<body>
<header class="topbar">
<a class="jenama" href="{{ auth()->check() ? route('dashboard') : url('/') }}">
Kehadiran KTM Peti Undi SPR 2026
</a>
@auth
@php
$labelPeranan = match (auth()->user()->role) {
'superadmin' => 'Superadmin',
'admin' => 'Admin DUN',
default => auth()->user()->role,
};
@endphp
<div class="pengguna">
<a href="{{ route('dashboard') }}">Dashboard</a>
@if (auth()->user()->isSuperadmin())
<a href="{{ route('pengguna.index') }}">Pengguna</a>
@endif
<a href="{{ route('profil.edit') }}">Profil</a>
<span>{{ auth()->user()->name }} ({{ $labelPeranan }})</span>
<form method="POST" action="{{ route('logout') }}" style="margin:0">
@csrf
<button type="submit" class="btn btn-kecil btn-merah">Log Keluar</button>
</form>
</div>
@endauth
</header>
<main class="container @yield('saiz-container')">
@if (session('status'))
<div class="makluman makluman-jaya">{{ session('status') }}</div>
@endif
@yield('kandungan')
</main>
</body>
</html>

View File

@@ -0,0 +1,75 @@
@extends('layouts.app')
@section('tajuk', 'Daftar Pengguna Baharu')
@section('saiz-container', 'container-kecil')
@section('kandungan')
<div class="kad">
<h1>Daftar Pengguna Baharu</h1>
<p class="teks-kecil">Admin DUN perlu ditetapkan kepada satu DUN. Superadmin boleh urus pengguna dan lihat semua DUN.</p>
@if ($errors->any())
<div class="makluman makluman-ralat">{{ $errors->first() }}</div>
@endif
<form method="POST" action="{{ route('pengguna.store') }}">
@csrf
<label for="name">Nama</label>
<input type="text" id="name" name="name" value="{{ old('name') }}" required autofocus>
<label for="email">E-mel</label>
<input type="email" id="email" name="email" value="{{ old('email') }}" required>
<label for="role">Peranan</label>
<select id="role" name="role" required>
<option value=""> Pilih Peranan </option>
@foreach ($peranan as $kod)
<option value="{{ $kod }}" @selected(old('role') === $kod)>
{{ match ($kod) {
'superadmin' => 'Superadmin',
'admin' => 'Admin DUN',
default => $kod,
} }}
</option>
@endforeach
</select>
<div id="baris-dun">
<label for="dun_id">DUN</label>
<select id="dun_id" name="dun_id">
<option value=""> Pilih DUN </option>
@foreach ($senaraiDun as $dun)
<option value="{{ $dun->id }}" @selected(old('dun_id') == $dun->id)>
{{ $dun->code }} {{ $dun->nama }}
</option>
@endforeach
</select>
</div>
<label for="password">Kata Laluan</label>
<input type="password" id="password" name="password" required minlength="8">
<label for="password_confirmation">Sahkan Kata Laluan</label>
<input type="password" id="password_confirmation" name="password_confirmation" required minlength="8">
<button type="submit" class="btn btn-penuh">Daftar Pengguna</button>
</form>
</div>
<script>
(function () {
var role = document.getElementById('role');
var barisDun = document.getElementById('baris-dun');
var dunSelect = document.getElementById('dun_id');
function kemaskini() {
var perluDun = role.value === 'admin';
barisDun.style.display = perluDun ? '' : 'none';
dunSelect.required = perluDun;
}
role.addEventListener('change', kemaskini);
kemaskini();
})();
</script>
@endsection

View File

@@ -0,0 +1,47 @@
@extends('layouts.app')
@section('tajuk', 'Senarai Pengguna')
@section('kandungan')
<div class="kad">
<div style="display:flex; justify-content:space-between; align-items:center; flex-wrap:wrap; gap:0.5rem;">
<h1 class="mb-0">Pengguna</h1>
<a href="{{ route('pengguna.create') }}" class="btn">+ Daftar Pengguna</a>
</div>
</div>
@if ($pengguna->isEmpty())
<div class="kad teks-tengah">
<p>Tiada pengguna lagi.</p>
</div>
@else
<div class="kad" style="overflow-x:auto; padding:0;">
<table class="jadual">
<thead>
<tr>
<th>Nama</th>
<th>E-mel</th>
<th>Peranan</th>
<th>DUN</th>
</tr>
</thead>
<tbody>
@foreach ($pengguna as $p)
<tr>
<td>{{ $p->name }}</td>
<td>{{ $p->email }}</td>
<td>
{{ match ($p->role) {
'superadmin' => 'Superadmin',
'admin' => 'Admin DUN',
default => $p->role,
} }}
</td>
<td>{{ $p->dun ? $p->dun->code . ' — ' . $p->dun->nama : '-' }}</td>
</tr>
@endforeach
</tbody>
</table>
</div>
@endif
@endsection

View File

@@ -0,0 +1,51 @@
@extends('layouts.app')
@section('tajuk', 'Profil Saya')
@section('saiz-container', 'container-kecil')
@section('kandungan')
<div class="kad">
<h1>Profil Saya</h1>
<table class="slip-butiran">
<tr><th>Nama</th><td>{{ $pengguna->name }}</td></tr>
<tr><th>E-mel</th><td>{{ $pengguna->email }}</td></tr>
<tr>
<th>Peranan</th>
<td>
{{ match ($pengguna->role) {
'superadmin' => 'Superadmin',
'admin' => 'Admin DUN',
default => $pengguna->role,
} }}
@if ($pengguna->dun)
{{ $pengguna->dun->code }} {{ $pengguna->dun->nama }}
@endif
</td>
</tr>
</table>
</div>
<div class="kad">
<h2 class="mb-0">Tukar Kata Laluan</h2>
@if ($errors->any())
<div class="makluman makluman-ralat">{{ $errors->first() }}</div>
@endif
<form method="POST" action="{{ route('profil.kata-laluan') }}">
@csrf
@method('PUT')
<label for="kata_laluan_semasa">Kata Laluan Semasa</label>
<input type="password" id="kata_laluan_semasa" name="kata_laluan_semasa" required>
<label for="kata_laluan_baharu">Kata Laluan Baharu</label>
<input type="password" id="kata_laluan_baharu" name="kata_laluan_baharu" required minlength="8">
<label for="kata_laluan_baharu_confirmation">Sahkan Kata Laluan Baharu</label>
<input type="password" id="kata_laluan_baharu_confirmation" name="kata_laluan_baharu_confirmation" required minlength="8">
<button type="submit" class="btn btn-penuh">Kemaskini Kata Laluan</button>
</form>
</div>
@endsection

8
routes/console.php Normal file
View File

@@ -0,0 +1,8 @@
<?php
use Illuminate\Foundation\Inspiring;
use Illuminate\Support\Facades\Artisan;
Artisan::command('inspire', function () {
$this->comment(Inspiring::quote());
})->purpose('Display an inspiring quote');

48
routes/web.php Normal file
View File

@@ -0,0 +1,48 @@
<?php
use App\Http\Controllers\AuthController;
use App\Http\Controllers\DashboardController;
use App\Http\Controllers\EksportKehadiranController;
use App\Http\Controllers\KehadiranController;
use App\Http\Controllers\PasswordResetController;
use App\Http\Controllers\PenggunaController;
use App\Http\Controllers\ProfilController;
use Illuminate\Support\Facades\Route;
Route::redirect('/', '/login');
// Log masuk
Route::get('/login', [AuthController::class, 'showLogin'])->name('login');
Route::post('/login', [AuthController::class, 'login'])->name('login.attempt');
Route::post('/logout', [AuthController::class, 'logout'])->name('logout');
// Lupa kata laluan
Route::get('/lupa-katalaluan', [PasswordResetController::class, 'showLinkRequestForm'])->name('password.request');
Route::post('/lupa-katalaluan', [PasswordResetController::class, 'sendResetLink'])->name('password.email');
Route::get('/set-kata-laluan/{token}', [PasswordResetController::class, 'showResetForm'])->name('password.reset');
Route::post('/set-kata-laluan', [PasswordResetController::class, 'reset'])->name('password.update');
Route::middleware(['auth'])->group(function () {
// Profil sendiri: tukar kata laluan (semua peranan)
Route::get('/profil', [ProfilController::class, 'edit'])->name('profil.edit');
Route::put('/profil/kata-laluan', [ProfilController::class, 'updatePassword'])->name('profil.kata-laluan');
Route::middleware(['role:superadmin,admin'])->group(function () {
// Dashboard kehadiran KTM ambil peti undi
Route::get('/dashboard', [DashboardController::class, 'index'])->name('dashboard');
// Tanda hadir / batal
Route::post('/kehadiran/{assignment}/hadir', [KehadiranController::class, 'hadir'])->name('kehadiran.hadir');
Route::delete('/kehadiran/{assignment}', [KehadiranController::class, 'batal'])->name('kehadiran.batal');
// Muat turun senarai kehadiran (Excel)
Route::get('/eksport-kehadiran', EksportKehadiranController::class)->name('kehadiran.eksport');
});
Route::middleware(['role:superadmin'])->group(function () {
// Pengurusan pengguna (superadmin sahaja)
Route::get('/pengguna', [PenggunaController::class, 'index'])->name('pengguna.index');
Route::get('/pengguna/cipta', [PenggunaController::class, 'create'])->name('pengguna.create');
Route::post('/pengguna', [PenggunaController::class, 'store'])->name('pengguna.store');
});
});

4
storage/app/.gitignore vendored Normal file
View File

@@ -0,0 +1,4 @@
*
!private/
!public/
!.gitignore

2
storage/app/private/.gitignore vendored Normal file
View File

@@ -0,0 +1,2 @@
*
!.gitignore

2
storage/app/public/.gitignore vendored Normal file
View File

@@ -0,0 +1,2 @@
*
!.gitignore

9
storage/framework/.gitignore vendored Normal file
View File

@@ -0,0 +1,9 @@
compiled.php
config.php
down
events.scanned.php
maintenance.php
routes.php
routes.scanned.php
schedule-*
services.json

3
storage/framework/cache/.gitignore vendored Normal file
View File

@@ -0,0 +1,3 @@
*
!data/
!.gitignore

View File

@@ -0,0 +1,2 @@
*
!.gitignore

2
storage/framework/sessions/.gitignore vendored Normal file
View File

@@ -0,0 +1,2 @@
*
!.gitignore

2
storage/framework/testing/.gitignore vendored Normal file
View File

@@ -0,0 +1,2 @@
*
!.gitignore

2
storage/framework/views/.gitignore vendored Normal file
View File

@@ -0,0 +1,2 @@
*
!.gitignore

2
storage/logs/.gitignore vendored Normal file
View File

@@ -0,0 +1,2 @@
*
!.gitignore

10
tests/TestCase.php Normal file
View File

@@ -0,0 +1,10 @@
<?php
namespace Tests;
use Illuminate\Foundation\Testing\TestCase as BaseTestCase;
abstract class TestCase extends BaseTestCase
{
//
}

View File

@@ -0,0 +1,16 @@
<?php
namespace Tests\Unit;
use PHPUnit\Framework\TestCase;
class ExampleTest extends TestCase
{
/**
* A basic test example.
*/
public function test_that_true_is_true(): void
{
$this->assertTrue(true);
}
}

24
vite.config.js Normal file
View File

@@ -0,0 +1,24 @@
import { defineConfig } from 'vite';
import laravel from 'laravel-vite-plugin';
import { bunny } from 'laravel-vite-plugin/fonts';
import tailwindcss from '@tailwindcss/vite';
export default defineConfig({
plugins: [
laravel({
input: ['resources/css/app.css', 'resources/js/app.js'],
refresh: true,
fonts: [
bunny('Instrument Sans', {
weights: [400, 500, 600],
}),
],
}),
tailwindcss(),
],
server: {
watch: {
ignored: ['**/storage/framework/views/**'],
},
},
});