feat: integrate North Embedded Checkout for bidder payments

This commit is contained in:
2026-05-01 08:18:26 -04:00
parent e4cccba942
commit b0816231d6
7 changed files with 274 additions and 1 deletions
+4
View File
@@ -39,3 +39,7 @@ OIDC_CLIENT_ID=
OIDC_CLIENT_SECRET= OIDC_CLIENT_SECRET=
OIDC_REDIRECT_URI="${APP_URL}/auth/social/oidc/callback" OIDC_REDIRECT_URI="${APP_URL}/auth/social/oidc/callback"
NORTH_CHECKOUT_ID=
NORTH_PROFILE_ID=
NORTH_PRIVATE_API_KEY=
@@ -0,0 +1,153 @@
<?php
namespace App\Http\Controllers;
use App\Models\Bidders;
use App\Models\Checkout;
use App\Models\WinningBids;
use Illuminate\Http\Request;
use Illuminate\Support\Facades\Http;
use Illuminate\Support\Facades\Log;
use Illuminate\Support\Facades\DB;
class NorthCheckoutController extends Controller
{
public function checkout(Request $request, $bidder_id)
{
$bidder = Bidders::where('idbidders', $bidder_id)->firstOrFail();
// Check if already checked out
if (Checkout::where('bidder_num', $bidder->idbidders)->exists()) {
return redirect('/mywinnings?bidder_number=' . $bidder->bidder_assigned_number)->with('error', 'Bidder has already checked out.');
}
$winnings = WinningBids::where('winning_bidder_num', $bidder->idbidders)->get();
$total_cost = $winnings->sum('winning_cost');
if ($total_cost <= 0) {
return redirect('/mywinnings?bidder_number=' . $bidder->bidder_assigned_number)->with('error', 'No winnings found for this bidder.');
}
return view('north_checkout', [
'bidder' => $bidder,
'total_cost' => $total_cost,
]);
}
public function createSession(Request $request, $bidder_id)
{
$bidder = Bidders::findOrFail($bidder_id);
$winnings = WinningBids::where('winning_bidder_num', $bidder->idbidders)->get();
$total_cost = $winnings->sum('winning_cost');
$apiKey = config('services.north.private_api_key');
$checkoutId = config('services.north.checkout_id');
$profileId = config('services.north.profile_id');
if (!$apiKey || !$checkoutId || !$profileId) {
return response()->json(['error' => 'North configuration missing.'], 500);
}
$response = Http::withHeaders([
'Authorization' => 'Bearer ' . $apiKey,
])->post('https://checkout.north.com/api/sessions', [
'checkoutId' => $checkoutId,
'profileId' => $profileId,
'amount' => $total_cost,
]);
if ($response->failed()) {
Log::error('North Session Creation Failed: ' . $response->body());
return response()->json(['error' => 'Failed to create checkout session.'], 500);
}
return response()->json($response->json());
}
public function verify(Request $request, $bidder_id)
{
$bidder = Bidders::findOrFail($bidder_id);
$sessionToken = $request->query('sessionToken');
if (!$sessionToken) {
return redirect('/mywinnings?bidder_number=' . $bidder->bidder_assigned_number)->with('error', 'Missing session token.');
}
$apiKey = config('services.north.private_api_key');
$response = Http::withHeaders([
'Authorization' => 'Bearer ' . $apiKey,
])->get('https://checkout.north.com/api/sessions/status', [
'sessionToken' => $sessionToken,
]);
if ($response->failed()) {
Log::error('North Session Verification Failed: ' . $response->body());
return redirect('/mywinnings?bidder_number=' . $bidder->bidder_assigned_number)->with('error', 'Failed to verify payment status.');
}
$status = $response->json();
// The North API status check might return success/completed.
// Based on docs, we should check status.
if (isset($status['status']) && ($status['status'] === 'completed' || $status['status'] === 'success')) {
// Check if already checked out to avoid duplicates
$existingCheckout = Checkout::where('bidder_num', $bidder->idbidders)->first();
if (!$existingCheckout) {
$winnertotal = $status['amount'] ?? WinningBids::where('winning_bidder_num', $bidder->idbidders)->sum('winning_cost');
$payment_method = 3; // Credit Card
$cc_transaction = $status['transactionId'] ?? 'NORTH_EC';
$cc_amount = $status['amount'] ?? $winnertotal;
$check_number = null;
$checkout_id = DB::table('checkout')->insertGetID(
[
'bidder_num' => $bidder->idbidders,
'winnertotal' => $winnertotal,
'payment_method' => $payment_method,
'check_number' => $check_number,
'cc_transaction' => $cc_transaction,
'cc_amount' => $cc_amount,
'created_at' => now(),
'updated_at' => now(),
]
);
} else {
$checkout_id = $existingCheckout->checkout_id;
$payment_method = $existingCheckout->payment_method;
$cc_transaction = $existingCheckout->cc_transaction;
$check_number = $existingCheckout->check_number;
}
// Replicate the data for checkout_complete view
$checkout_list_results = DB::select("SELECT
*, items.item_assigned_num, items.item_desc
FROM winning_bids
INNER JOIN items AS items
ON winning_bids.winning_item_num=items.iditems
WHERE winning_bidder_num = $bidder->idbidders
");
$checkout_info_results = DB::select("SELECT
winning_bids.*,
bidders.*,
sum(winning_cost) AS total_cost
FROM winning_bids
INNER JOIN bidders AS bidders
ON winning_bids.winning_bidder_num=bidders.idbidders
WHERE winning_bidder_num = $bidder->idbidders
GROUP BY winning_bids.winning_bidder_num
");
return view('checkout_complete', [
'checkout_result' => $checkout_id,
'checkout_list_results' => $checkout_list_results,
'checkout_info_results' => $checkout_info_results,
'payment_method' => $payment_method,
'check_number' => $check_number,
'cc_transaction' => $cc_transaction
]);
}
return redirect('/mywinnings?bidder_number=' . $bidder->bidder_assigned_number)->with('error', 'Payment not completed. Status: ' . ($status['status'] ?? 'unknown'));
}
}
+4 -1
View File
@@ -535,10 +535,13 @@ class PagesController extends Controller
$total_cost = $winnings->sum('winning_cost'); $total_cost = $winnings->sum('winning_cost');
$is_checked_out = \App\Models\Checkout::where('bidder_num', $bidder->idbidders)->exists();
return view('mywinnings_results', [ return view('mywinnings_results', [
'bidder' => $bidder, 'bidder' => $bidder,
'winnings' => $winnings, 'winnings' => $winnings,
'total_cost' => $total_cost 'total_cost' => $total_cost,
'is_checked_out' => $is_checked_out
]); ]);
} }
} }
+6
View File
@@ -42,4 +42,10 @@ return [
'redirect' => env('OIDC_REDIRECT_URI'), 'redirect' => env('OIDC_REDIRECT_URI'),
], ],
'north' => [
'checkout_id' => env('NORTH_CHECKOUT_ID'),
'profile_id' => env('NORTH_PROFILE_ID'),
'private_api_key' => env('NORTH_PRIVATE_API_KEY'),
],
]; ];
@@ -8,6 +8,24 @@
<div class="panel-heading">Winnings for Bidder #{{ $bidder->bidder_assigned_number }} - {{ $bidder->bidder_fname }} {{ $bidder->bidder_lname }}</div> <div class="panel-heading">Winnings for Bidder #{{ $bidder->bidder_assigned_number }} - {{ $bidder->bidder_fname }} {{ $bidder->bidder_lname }}</div>
<div class="panel-body"> <div class="panel-body">
@if (isset($error))
<div class="alert alert-danger">
{{ $error }}
</div>
@endif
@if (session('error'))
<div class="alert alert-danger">
{{ session('error') }}
</div>
@endif
@if (session('success'))
<div class="alert alert-success">
{{ session('success') }}
</div>
@endif
@if($winnings->count() > 0) @if($winnings->count() > 0)
<table class="table table-striped"> <table class="table table-striped">
<thead> <thead>
@@ -33,6 +51,16 @@
</tr> </tr>
</tfoot> </tfoot>
</table> </table>
@if(!$is_checked_out)
<div class="text-right">
<a href="{{ route('north.checkout', ['bidder_id' => $bidder->idbidders]) }}" class="btn btn-success btn-lg">Pay Now with Credit Card</a>
</div>
@else
<div class="alert alert-success text-center">
<strong>Checked Out!</strong> Your payment has been processed.
</div>
@endif
@else @else
<p>No winning bids found for this bidder number.</p> <p>No winning bids found for this bidder number.</p>
@endif @endif
+74
View File
@@ -0,0 +1,74 @@
@extends('layouts.app')
@section('content')
<div class="container">
<div class="row">
<div class="col-md-8 col-md-offset-2">
<div class="panel panel-default">
<div class="panel-heading">Checkout for Bidder #{{ $bidder->bidder_assigned_number }}</div>
<div class="panel-body">
<h4>Total Amount Due: ${{ number_format($total_cost, 2) }}</h4>
<hr>
<div id="checkout-container">
<div class="text-center">
<p>Loading secure checkout...</p>
<div class="spinner-border" role="status">
<span class="sr-only">Loading...</span>
</div>
</div>
</div>
<hr>
<div class="text-center">
<a href="/mywinnings?bidder_number={{ $bidder->bidder_assigned_number }}" class="btn btn-default">Cancel and Return</a>
</div>
</div>
</div>
</div>
</div>
</div>
<script src="https://checkout.north.com/checkout.js"></script>
<script>
document.addEventListener('DOMContentLoaded', async () => {
const bidderId = "{{ $bidder->idbidders }}";
const csrfToken = "{{ csrf_token() }}";
try {
// Create a checkout session
const response = await fetch(`/north/session/${bidderId}`, {
method: 'POST',
headers: {
'Content-Type': 'application/json',
'X-CSRF-TOKEN': csrfToken
}
});
const data = await response.json();
if (data.error) {
document.getElementById('checkout-container').innerHTML = `<div class="alert alert-danger">${data.error}</div>`;
return;
}
const sessionToken = data.sessionToken;
// Initialize North Checkout
// The global 'checkout' object is provided by checkout.js
await checkout.mount(sessionToken, 'checkout-container');
// Handle completion
checkout.onPaymentComplete((result) => {
// Redirect to verify the payment on the server
window.location.href = `/north/verify/${bidderId}?sessionToken=${sessionToken}`;
});
} catch (error) {
console.error('Checkout Error:', error);
document.getElementById('checkout-container').innerHTML = '<div class="alert alert-danger">An error occurred while initializing checkout. Please try again.</div>';
}
});
</script>
@endsection
+5
View File
@@ -27,6 +27,11 @@ Route::get('showscoresbycar', [ 'uses' => 'PagesController@showscoresbycar']);
Route::get('mywinnings', [ 'uses' => 'PagesController@myWinnings']); Route::get('mywinnings', [ 'uses' => 'PagesController@myWinnings']);
Route::post('mywinnings', [ 'uses' => 'PagesController@myWinnings']); Route::post('mywinnings', [ 'uses' => 'PagesController@myWinnings']);
// North Embedded Checkout
Route::get('north/checkout/{bidder_id}', [ 'uses' => 'NorthCheckoutController@checkout' ])->name('north.checkout');
Route::post('north/session/{bidder_id}', [ 'uses' => 'NorthCheckoutController@createSession' ])->name('north.session');
Route::get('north/verify/{bidder_id}', [ 'uses' => 'NorthCheckoutController@verify' ])->name('north.verify');
Route::group(['middleware' => 'auth'], function() { Route::group(['middleware' => 'auth'], function() {
Route::get('bidders', [ 'uses' => 'PagesController@bidders']); Route::get('bidders', [ 'uses' => 'PagesController@bidders']);
Route::post('bidders', [ 'uses' => 'PagesController@bidders']); Route::post('bidders', [ 'uses' => 'PagesController@bidders']);