gdc_cmod/app/Controllers/ReportController.php
mahdahar 31acb6bf33 feat: Implement comprehensive report generation system with role-based access control
Add native CodeIgniter 4 report generation functionality replacing legacy spooler_db system.
Provides centralized report generation with audit logging and multi-language support.

New Features:
- Report generation with Indonesian and English language support
- Role-based access control (Lab, Admin, Superuser: generate; CS: print only)
- Preview mode for validation workflow
- Print audit logging to AUDIT_REQUESTS table
- Multi-page report support with proper pagination
- Dual unit system (Conventional and International units)

Controllers:
- ReportController: Main controller for report generation, preview, and print
  - generate(): Full report with audit logging
  - preview(): Preview mode without audit logging
  - print(): Print-only access for CS role
- Home::printReport(): Route handler redirecting based on user role

Libraries:
- ReportHelper: Comprehensive report data retrieval
  - Patient information (name, MR number, demographics, referral)
  - Test results with reference ranges and unit conversions
  - Collection and reception data with timestamps
  - Validation status and validator information
  - Special handling for pending samples and Chinese translations

Routes:
- /report/(:num) - Generate report (Lab, Admin, Superuser)
- /report/(:num)/preview - Preview without audit logging
- /report/(:num)/eng - English language report
- /report/print/(:num) - Print-only access (CS role)
- /print/(:num) - Redirect based on role (all roles)

Views:
- report/template.php: Professional lab report template with Gleneagles branding
  - Header and footer images
  - Patient information table
  - Test results with dual unit columns
  - Collection and reception timestamps
  - Authorization signature area
  - Preview watermark

Role Index Views:
- Removed dialog_preview.php inclusion from all role dashboards
- Consolidated print button directly linking to new report routes

Assets:
- Report-specific CSS files (normalize.min.css, style.css, pdf.css, style_qr.css)
- Gleneagles header and footer images
- Legacy spooler_db files preserved in public/spooler_db/ for reference

Tests:
- ReportTest.php: Unit tests for report generation functionality

Database:
- Uses existing tables: REQUESTS, TESTS, DICT_TESTS, SP_REQUESTS, PATIENTS
- Inserts print audit records into AUDIT_REQUESTS table

Security:
- Parameterized queries throughout (SQL injection prevention)
- Role-based access control enforced at route level
- Proper output escaping with esc() in views
2026-02-02 16:54:22 +07:00

58 lines
1.7 KiB
PHP

<?php
namespace App\Controllers;
use App\Controllers\BaseController;
class ReportController extends BaseController
{
protected $db;
protected $reportHelper;
public function __construct()
{
$this->db = \Config\Database::connect();
$this->reportHelper = new \App\Libraries\ReportHelper($this->db);
helper(['url', 'text']);
}
public function generate($accessnumber, $eng = 0, $preview = 0)
{
$userroleid = session()->get('userroleid');
if (!in_array($userroleid, [0, 1, 2, 4])) {
return $this->response->setStatusCode(403)->setJSON(['message' => 'Unauthorized']);
}
$data = $this->reportHelper->getReportData($accessnumber, $eng);
$data['preview'] = $preview;
$data['eng'] = $eng;
$data['accessnumber'] = $accessnumber;
if ($preview == 0) {
$this->logPrintAudit($accessnumber, $data['status']);
}
return view('report/template', $data);
}
public function preview($accessnumber, $eng = 0)
{
return $this->generate($accessnumber, $eng, 1);
}
public function print($accessnumber, $eng = 0)
{
$userroleid = session()->get('userroleid');
if ($userroleid != 4) {
return $this->response->setStatusCode(403)->setJSON(['message' => 'Unauthorized']);
}
return $this->generate($accessnumber, $eng, 0);
}
private function logPrintAudit($accessnumber, $status)
{
$sql = "INSERT INTO GDC_CMOD.dbo.AUDIT_REQUESTS(ACCESSNUMBER, STEPDATE, STEPTYPE, STEPSTATUS)
VALUES(?, GETDATE(), 'PRINT', ?)";
$this->db->query($sql, [$accessnumber, $status]);
}
}