defmodule BerrypodWeb.Setup.Onboarding do
use BerrypodWeb, :live_view
alias Berrypod.{Accounts, KeyValidation, Products, Settings, Setup}
alias Berrypod.Providers.Provider
alias Berrypod.Stripe.Setup, as: StripeSetup
# Steps in the guided flow (after account creation):
# :intro - explains what's needed
# :provider - connect print provider
# :stripe - connect Stripe payments
# :email - set up email provider
@guided_steps [:intro, :provider, :stripe, :email]
# ── Mount ──
@impl true
def mount(_params, _session, socket) do
setup = Setup.setup_status()
cond do
setup.site_live ->
{:ok, push_navigate(socket, to: ~p"/")}
setup.setup_complete ->
{:ok, push_navigate(socket, to: ~p"/admin")}
setup.admin_created and is_nil(get_user(socket)) ->
{:ok, push_navigate(socket, to: ~p"/users/log-in")}
true ->
{:ok, mount_setup(socket, setup)}
end
end
defp get_user(socket) do
case socket.assigns do
%{current_scope: %{user: user}} when not is_nil(user) -> user
_ -> nil
end
end
defp mount_setup(socket, setup) do
logged_in? = get_user(socket) != nil
provider_conn = Products.get_first_provider_connection()
# Determine which guided step to show (for logged-in users)
guided_step = determine_guided_step(setup)
socket
|> assign(:page_title, "Set up your shop")
|> assign(:setup, setup)
|> assign(:logged_in?, logged_in?)
|> assign(:guided_step, guided_step)
|> assign(:guided_steps, @guided_steps)
# Secret gate
|> assign(:require_secret?, Setup.require_setup_secret?())
|> assign(:secret_verified, false)
|> assign(:secret_form, to_form(%{"secret" => ""}, as: :secret))
# Account (card 1)
|> assign(
:account_form,
to_form(
%{"email" => "", "password" => "", "password_confirmation" => "", "shop_name" => ""},
as: :account
)
)
# Provider (card 2)
|> assign(:providers, Provider.all())
|> assign(:selected_provider, nil)
|> assign(:provider_form, to_form(%{"api_key" => ""}, as: :provider))
|> assign(:provider_connecting, false)
|> assign(:provider_conn, provider_conn)
# Stripe (card 3)
|> assign(:stripe_form, to_form(%{"api_key" => ""}, as: :stripe))
|> assign(:stripe_connecting, false)
end
# Determine which guided step to show based on what's already configured
defp determine_guided_step(setup) do
cond do
# Show intro on first visit after account creation
not setup.provider_connected and not setup.stripe_connected and
not setup.email_configured ->
:intro
# Resume at first incomplete step
not setup.provider_connected ->
:provider
not setup.stripe_connected ->
:stripe
not setup.email_configured ->
:email
# All done - will redirect to dashboard
true ->
:email
end
end
# ── Events: Secret gate ──
@impl true
def handle_event("verify_secret", %{"secret" => %{"secret" => secret}}, socket) do
if Plug.Crypto.secure_compare(secret, Setup.setup_secret()) do
{:noreply, assign(socket, secret_verified: true)}
else
{:noreply, put_flash(socket, :error, "Wrong setup secret")}
end
end
# ── Events: Guided flow navigation ──
def handle_event("start_setup", _params, socket) do
{:noreply, assign(socket, :guided_step, :provider)}
end
def handle_event("go_to_step", %{"step" => step}, socket) do
step = String.to_existing_atom(step)
if step in @guided_steps do
{:noreply, assign(socket, :guided_step, step)}
else
{:noreply, socket}
end
end
def handle_event("skip_step", _params, socket) do
next_step = next_guided_step(socket.assigns.guided_step)
handle_step_completion(socket, next_step)
end
def handle_event("go_back", _params, socket) do
prev_step = prev_guided_step(socket.assigns.guided_step)
{:noreply, assign(socket, :guided_step, prev_step)}
end
# ── Events: Account ──
def handle_event("validate_account", %{"account" => params}, socket) do
errors = validate_account_fields(params)
form =
to_form(params,
as: :account,
errors: errors,
action: if(errors != [], do: :validate)
)
{:noreply, assign(socket, :account_form, form)}
end
def handle_event("create_account", %{"account" => params}, socket) do
email = params["email"]
password = params["password"]
password_confirmation = params["password_confirmation"]
shop_name = String.trim(params["shop_name"] || "")
errors = validate_account_fields(params)
cond do
errors != [] ->
form = to_form(params, as: :account, errors: errors, action: :validate)
{:noreply, assign(socket, :account_form, form)}
password != password_confirmation ->
form =
to_form(params,
as: :account,
errors: [password_confirmation: {"Passwords don't match", []}],
action: :validate
)
{:noreply, assign(socket, :account_form, form)}
true ->
Settings.put_setting("site_name", shop_name, "string")
case Accounts.register_and_confirm_admin(%{email: email, password: password}) do
{:ok, user} ->
token = Accounts.generate_login_token(user)
{:noreply, redirect(socket, to: ~p"/setup/login/#{token}")}
{:error, :admin_already_exists} ->
{:noreply,
socket
|> put_flash(:error, "An admin account already exists")
|> push_navigate(to: ~p"/setup")}
{:error, changeset} ->
form = to_form(params, as: :account, errors: changeset.errors, action: :validate)
{:noreply,
socket
|> assign(:account_form, form)
|> put_flash(:error, "Could not create account")}
end
end
end
# ── Events: Provider ──
def handle_event("select_provider", %{"provider_select" => %{"type" => type}}, socket) do
{:noreply,
socket
|> assign(:selected_provider, type)
|> assign(:provider_form, to_form(%{"api_key" => ""}, as: :provider))}
end
def handle_event("connect_provider", %{"provider" => %{"api_key" => api_key}}, socket) do
type = socket.assigns.selected_provider
case KeyValidation.validate_provider_key(api_key, type) do
{:error, message} ->
form =
to_form(%{"api_key" => api_key},
as: :provider,
errors: [api_key: {message, []}],
action: :validate
)
{:noreply, assign(socket, :provider_form, form)}
{:ok, api_key} ->
socket = assign(socket, :provider_connecting, true)
case Products.connect_provider(api_key, type) do
{:ok, connection} ->
setup = Setup.setup_status()
{:noreply,
socket
|> assign(:provider_connecting, false)
|> assign(:provider_conn, connection)
|> assign(:setup, setup)
|> assign(:guided_step, :stripe)
|> put_flash(:info, "Connected! Product sync started in the background.")}
{:error, :no_api_key} ->
form =
to_form(%{"api_key" => api_key},
as: :provider,
errors: [api_key: {"Please enter your API token", []}],
action: :validate
)
{:noreply,
socket
|> assign(:provider_connecting, false)
|> assign(:provider_form, form)}
{:error, _reason} ->
form =
to_form(%{"api_key" => api_key},
as: :provider,
errors: [api_key: {"Could not connect. Check your API key and try again", []}],
action: :validate
)
{:noreply,
socket
|> assign(:provider_connecting, false)
|> assign(:provider_form, form)}
end
end
end
# Validate provider key on blur for fast feedback
def handle_event("validate_provider", %{"provider" => %{"api_key" => api_key}}, socket) do
type = socket.assigns.selected_provider
form =
case KeyValidation.validate_provider_key(api_key, type) do
{:ok, _} ->
to_form(%{"api_key" => api_key}, as: :provider)
{:error, message} ->
to_form(%{"api_key" => api_key},
as: :provider,
errors: [api_key: {message, []}],
action: :validate
)
end
{:noreply, assign(socket, :provider_form, form)}
end
# ── Events: Stripe ──
# Validate Stripe key on blur for fast feedback
def handle_event("validate_stripe", %{"stripe" => %{"api_key" => api_key}}, socket) do
form =
case KeyValidation.validate_stripe_key(api_key) do
{:ok, _} ->
to_form(%{"api_key" => api_key}, as: :stripe)
{:error, message} ->
to_form(%{"api_key" => api_key},
as: :stripe,
errors: [api_key: {message, []}],
action: :validate
)
end
{:noreply, assign(socket, :stripe_form, form)}
end
def handle_event("connect_stripe", %{"stripe" => %{"api_key" => api_key}}, socket) do
case KeyValidation.validate_stripe_key(api_key) do
{:error, message} ->
form =
to_form(%{"api_key" => api_key},
as: :stripe,
errors: [api_key: {message, []}],
action: :validate
)
{:noreply, assign(socket, :stripe_form, form)}
{:ok, api_key} ->
socket = assign(socket, :stripe_connecting, true)
case StripeSetup.connect(api_key) do
{:ok, _result} ->
setup = Setup.setup_status()
{:noreply,
socket
|> assign(:stripe_connecting, false)
|> assign(:setup, setup)
|> assign(:guided_step, :email)
|> put_flash(:info, "Stripe connected")}
{:error, message} ->
form =
to_form(%{"api_key" => api_key},
as: :stripe,
errors: [api_key: {"Stripe connection failed: #{message}", []}],
action: :validate
)
{:noreply,
socket
|> assign(:stripe_connecting, false)
|> assign(:stripe_form, form)}
end
end
end
# ── Navigation helpers ──
defp next_guided_step(current) do
case current do
:intro -> :provider
:provider -> :stripe
:stripe -> :email
:email -> :done
end
end
defp prev_guided_step(current) do
case current do
:provider -> :intro
:stripe -> :provider
:email -> :stripe
_ -> current
end
end
defp handle_step_completion(socket, :done) do
{:noreply,
socket
|> put_flash(:info, "Setup complete! Here's your launch checklist.")
|> push_navigate(to: ~p"/admin")}
end
defp handle_step_completion(socket, next_step) do
{:noreply, assign(socket, :guided_step, next_step)}
end
# ── Render ──
@impl true
def render(assigns) do
~H"""
Enter the setup secret from your server logs to get started.
<% else %>Connect your accounts to get going.
<% end %>
Find the setup secret in your server logs or set the SETUP_SECRET
environment variable.
Name your shop and create the admin account.
<.form for={@account_form} phx-submit="create_account" phx-change="validate_account"> <.input field={@account_form[:shop_name]} type="text" label="Shop name" placeholder="e.g. Acme Prints" autocomplete="off" required phx-mounted={JS.focus()} />You can change this later
<.input field={@account_form[:email]} type="email" label="Email address" autocomplete="email" required /> <.input field={@account_form[:password]} type="password" label="Password" placeholder="12 characters minimum" autocomplete="new-password" required /> <.input field={@account_form[:password_confirmation]} type="password" label="Confirm password" autocomplete="new-password" required />Berrypod connects your print-on-demand products to your own online shop. To get fully set up, you'll need three things:
Don't worry if you don't have all of these yet — you can skip any step and set it up later.
Configure an email provider so your shop can send order confirmations, shipping updates, and newsletters.
<%= if @setup.email_configured do %>Email is already configured.
<.link navigate={~p"/admin/settings/email"} class="setup-link"> Set up email in settings
<% end %>{@summary}
<% else %>{@skip_note}
<% end %>Choose a print-on-demand provider and connect your API key.
<.form for={%{}} as={:provider_select} phx-change="select_provider"> <.card_radio_group name="provider_select[type]" value={@selected} legend="Print provider" options={@provider_options} /> <%!-- API key form for selected provider --%>{provider_info.setup_hint}. <.external_link href={provider_info.setup_url} class="setup-link"> Open {provider_info.name}
<.form for={@form} phx-submit="connect_provider" phx-change="validate_provider"> <.input field={@form[:api_key]} type="text" label="API token" placeholder="Paste your token here" autocomplete="off" phx-debounce="blur" />Enter your Stripe secret key to accept payments. <.external_link href="https://dashboard.stripe.com/apikeys" class="setup-link"> Open Stripe dashboard
<.form for={@form} phx-submit="connect_stripe" phx-change="validate_stripe"> <.input field={@form[:api_key]} type="text" label="Secret key" autocomplete="off" placeholder="sk_test_... or sk_live_..." phx-mounted={@focus && JS.focus()} phx-debounce="blur" />