dtf-site.html held commercial rules, the nesting engine, PDF analysis, the cart and every handler in a single inline script, 42% of the runtime code in one file, and the money logic lived in the middle of it. It is now nine files under local/static, cut at the section markers the original author left, so no function was split across a boundary: config, product modes, upload, sheet analysis, PDF, quality, packing, cart, flow. They load as classic scripts in the original order and share one global scope, so evaluation is exactly what it was; the extraction was checked byte-identical against the original before the tags replaced it. dtf-site.html is 1,394 lines of markup and style. With no inline script left anywhere, the policy no longer needs a hash allowlist: script-src is now 'self' alone, which is stronger than what it replaced and cannot drift as the page changes. Three things depended on the old shape and were updated rather than worked around. The pricing parity test read the ladder out of the HTML and now reads it from site-config.js, still proving the server agrees with what the customer is shown. The isolated artwork test served four hardcoded script paths and now serves any script that resolves inside local/static, so the next file added does not silently 404. The CSP assertion checked the whole policy for 'unsafe-inline' and now checks the script-src directive alone, since style-src legitimately carries it. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
96 lines
4.6 KiB
JavaScript
96 lines
4.6 KiB
JavaScript
/* Site DTF — Choosing a product, and the declared sheet/loose-artwork switch.
|
|
Extracted verbatim from the single inline script in dtf-site.html.
|
|
Loaded as classic scripts in the order listed there: they share one global
|
|
scope and run top to bottom, exactly as the original did. */
|
|
// ── escolha
|
|
document.querySelectorAll('.ec').forEach(b=>b.addEventListener('click',()=>abrir(b.dataset.modo)));
|
|
function abrir(m){
|
|
modo=m; artes=[]; folhas=[]; metros=0; nota=0; reencaixado=false;
|
|
montagemCm=0;
|
|
avisoTipo('');
|
|
pintaModo();
|
|
$('lista').innerHTML=''; $('rA').style.display='none'; recusa([]);
|
|
recemChegada=null; caminho='auto'; avisoCam(''); pintaCaminhos();
|
|
$('vMt').textContent='—'; previaAoVivo(); agendaAvaliacao();
|
|
limpaPaineis(); // o carrinho só some se o pedido estiver vazio
|
|
$('foco').scrollIntoView({behavior:'smooth',block:'start'});
|
|
}
|
|
function pintaModo(){
|
|
const m=modo;
|
|
const c=MODOS[m];
|
|
$('cards').style.display='none'; $('foco').classList.add('on');
|
|
$('fTit').textContent=c.tit; $('fLg').textContent=c.lg;
|
|
$('fPreco').textContent=c.preco; $('fSub').textContent=c.sub;
|
|
$('zTit').textContent=c.zt; $('zSub').textContent=c.zs;
|
|
$('inp').multiple=c.multi;
|
|
$('inp').accept = ehFolha(m) ? '.png,.jpg,.jpeg,.pdf'
|
|
: '.png,.jpg,.jpeg,.webp';
|
|
$('catFoco').className='cat '+(ehFolha(m)?'file':'av');
|
|
$('larguraFolhaPronta').textContent=String(c.larg).replace('.',',');
|
|
$('foco2').classList.remove('sofila'); // a caixa de requisitos vale nos 4 modos
|
|
$('montcabTit').textContent = ehFolha(m) ? 'Sua folha' : 'Montagem ao vivo';
|
|
pintaTipoEnvio();
|
|
}
|
|
// O par folha montada / artes separadas fica visível e com preço nos dois lados,
|
|
// nos dois modos: nenhuma troca acontece sem o cliente ver o que muda, e sempre
|
|
// dá para voltar atrás sem recomeçar o pedido.
|
|
function pintaTipoEnvio(){
|
|
const el=$('tipoEnvio'); if(!el) return;
|
|
el.hidden=!modo;
|
|
if(el.hidden) return;
|
|
const folha = ehFolha() ? modo : PAR[modo];
|
|
const avulsa = ehFolha() ? PAR[modo] : modo;
|
|
$('tipoFolhaPreco').textContent='a partir de '+rs(pisoEscada(folha));
|
|
$('tipoAvulsaPreco').textContent='a partir de '+rs(pisoEscada(avulsa))+' · montagem inclusa';
|
|
$('larguraFolhaPronta').textContent=String(MODOS[folha].larg).replace('.',',');
|
|
const atual = ehFolha() ? 'folha' : 'avulsa';
|
|
el.querySelectorAll('.cam').forEach(b=>{
|
|
b.classList.toggle('on', b.dataset.tipo===atual);
|
|
b.disabled=folhas.length>0 || artes.length>0; // já tem arquivo: a escolha está feita
|
|
});
|
|
}
|
|
function avisoTipo(txt){
|
|
const el=$('avisoTipo'); if(!el) return;
|
|
el.innerHTML=txt; el.style.display = txt? '' : 'none';
|
|
}
|
|
// A imagem foi declarada folha montada mas não tem resolução para isso. Devolve o
|
|
// arquivo com o motivo e o caminho certo — sem trocar preço por conta própria.
|
|
function recusaFolha(x, md){
|
|
const arquivo=x.f, destino = modo==='uvfile' ? 'uv' : 'avulsa';
|
|
folhas=folhas.filter(y=>y!==x);
|
|
pintaFolha();
|
|
avisoTipo('<b>'+escapeHTML(arquivo.name)+' não é uma folha montada.</b> '+
|
|
'Para ocupar os '+n1(larguraFilme())+' cm do filme ela teria só '+md.dpiFolha+
|
|
' DPI, e o mínimo para imprimir é '+DPI_RECUSA+'. '+
|
|
'Se for uma arte para montarmos, use <b>'+MODOS[destino].tit+'</b>, '+
|
|
'a partir de '+rs(pisoEscada(destino))+'/m. '+
|
|
'<button type="button" id="usarAvulsa">Enviar como '+MODOS[destino].tit.toLowerCase()+'</button>');
|
|
const botao=$('usarAvulsa');
|
|
if(botao) botao.addEventListener('click',()=>{
|
|
avisoTipo(''); trocaTipo(PAR[modo]); sel([arquivo]);
|
|
});
|
|
}
|
|
document.querySelectorAll('#tipoEnvio .cam').forEach(b=>b.addEventListener('click',()=>{
|
|
if(b.disabled) return;
|
|
const querFolha=b.dataset.tipo==='folha';
|
|
if(querFolha===ehFolha()) return;
|
|
avisoTipo(''); trocaTipo(PAR[modo]); // escolha explícita do cliente
|
|
}));
|
|
// Troca declarada, nunca silenciosa: o cliente já viu os dois preços no seletor.
|
|
function trocaTipo(destino){
|
|
if(!destino || modo===destino) return;
|
|
folhas=[]; artes=[]; recemChegada=null; metros=0; nota=0; montagemCm=0;
|
|
modo=destino;
|
|
$('lista').innerHTML=''; $('rA').style.display='none'; recusa([]);
|
|
caminho='auto'; avisoCam('');
|
|
pintaModo(); pintaCaminhos(); limpaPaineis(); agendaAvaliacao(); previaAoVivo();
|
|
}
|
|
$('bVoltar').addEventListener('click',()=>{
|
|
itemAtual=null; $('atual').style.display='none'; $('carrLin').innerHTML=''; pintaPedido();
|
|
$('foco').classList.remove('on'); $('cards').style.display='';
|
|
['qual','prev'].forEach(id=>$(id).classList.remove('on'));
|
|
if(!pedido.length) $('carr').classList.remove('on');
|
|
document.getElementById('envio').scrollIntoView({behavior:'smooth'});
|
|
});
|
|
|