Adds apps/planner/app/routes/api.overpass.ts — a same-origin, rate-limited server-side proxy that forwards Overpass QL to the upstream endpoint configured via OVERPASS_URL (default: overpass.private.coffee). Motivation: - private.coffee's best-practices require a meaningful User-Agent identifying the project. Browsers cannot set User-Agent on fetch() (forbidden header), so the request has to originate server-side. - Collaborative sessions commonly have N clients pan/zoom the same map, so the same bbox query arrives multiple times within seconds. - Setting up the proxy now lets us swap OVERPASS_URL to a self-hosted Overpass later without client changes. What the proxy does: - Sets User-Agent "trails.cool Planner (https://trails.cool; legal@trails.cool)" - Enforces same-origin via the Origin header - Rate-limits per client IP (120 req/min) - In-memory LRU cache of upstream responses keyed on the form-encoded body (TTL 10 min, max 200 entries) - Coalesces concurrent misses for the same key so N simultaneous clients in one session incur exactly one upstream call Client change: apps/planner/app/lib/overpass.ts POSTs to /api/overpass instead of iterating over public Overpass endpoints. Fallback list removed; resilience is now the proxy's responsibility. Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
147 lines
3.6 KiB
TypeScript
147 lines
3.6 KiB
TypeScript
import type { PoiCategory } from "@trails-cool/map-core";
|
|
|
|
const OVERPASS_PROXY = "/api/overpass";
|
|
|
|
export interface Poi {
|
|
id: number;
|
|
lat: number;
|
|
lon: number;
|
|
name?: string;
|
|
category: string;
|
|
tags: Record<string, string>;
|
|
}
|
|
|
|
export interface BBox {
|
|
south: number;
|
|
west: number;
|
|
north: number;
|
|
east: number;
|
|
}
|
|
|
|
/**
|
|
* Build an Overpass QL query combining all enabled categories into a union.
|
|
*/
|
|
export function buildQuery(bbox: BBox, categories: PoiCategory[]): string {
|
|
const bboxStr = `${bbox.south},${bbox.west},${bbox.north},${bbox.east}`;
|
|
const unions = categories.map((c) => c.query).join("");
|
|
return `[out:json][timeout:10][maxsize:1048576][bbox:${bboxStr}];(${unions});out center qt 100;`;
|
|
}
|
|
|
|
/**
|
|
* Parse Overpass JSON response into typed Poi objects.
|
|
*/
|
|
export function parseResponse(
|
|
data: { elements: Array<{
|
|
type: string;
|
|
id: number;
|
|
lat?: number;
|
|
lon?: number;
|
|
center?: { lat: number; lon: number };
|
|
tags?: Record<string, string>;
|
|
}> },
|
|
categories: PoiCategory[],
|
|
): Poi[] {
|
|
const pois: Poi[] = [];
|
|
|
|
for (const el of data.elements) {
|
|
const lat = el.lat ?? el.center?.lat;
|
|
const lon = el.lon ?? el.center?.lon;
|
|
if (lat === undefined || lon === undefined) continue;
|
|
|
|
const tags = el.tags ?? {};
|
|
const category = matchCategory(tags, categories);
|
|
if (!category) continue;
|
|
|
|
pois.push({
|
|
id: el.id,
|
|
lat,
|
|
lon,
|
|
name: tags.name,
|
|
category: category.id,
|
|
tags,
|
|
});
|
|
}
|
|
|
|
return deduplicateById(pois);
|
|
}
|
|
|
|
/**
|
|
* Match an element's tags to the first matching category.
|
|
*/
|
|
function matchCategory(tags: Record<string, string>, categories: PoiCategory[]): PoiCategory | null {
|
|
for (const cat of categories) {
|
|
// Parse query fragments like 'nwr["amenity"="drinking_water"];'
|
|
const fragments = cat.query.split(";").filter(Boolean);
|
|
for (const frag of fragments) {
|
|
const match = frag.match(/\["(\w+)"="([^"]+)"\]/);
|
|
if (match && tags[match[1]!] === match[2]) return cat;
|
|
}
|
|
}
|
|
return null;
|
|
}
|
|
|
|
/**
|
|
* Deduplicate POIs by OSM node ID (same node may match multiple queries).
|
|
*/
|
|
export function deduplicateById(pois: Poi[]): Poi[] {
|
|
const seen = new Set<number>();
|
|
return pois.filter((poi) => {
|
|
if (seen.has(poi.id)) return false;
|
|
seen.add(poi.id);
|
|
return true;
|
|
});
|
|
}
|
|
|
|
/**
|
|
* Query the Overpass API for POIs within a bounding box.
|
|
*
|
|
* All queries route through the Planner's own `/api/overpass` proxy, which
|
|
* adds a User-Agent identifying trails.cool, rate-limits per IP, and enforces
|
|
* same-origin. The client never talks to a public Overpass host directly.
|
|
*/
|
|
export async function queryPois(
|
|
bbox: BBox,
|
|
categories: PoiCategory[],
|
|
signal?: AbortSignal,
|
|
): Promise<Poi[]> {
|
|
if (categories.length === 0) return [];
|
|
|
|
const query = buildQuery(bbox, categories);
|
|
|
|
const response = await fetch(OVERPASS_PROXY, {
|
|
method: "POST",
|
|
headers: { "Content-Type": "application/x-www-form-urlencoded" },
|
|
body: `data=${encodeURIComponent(query)}`,
|
|
signal,
|
|
});
|
|
|
|
if (response.status === 429) {
|
|
throw new OverpassRateLimitError();
|
|
}
|
|
|
|
if (!response.ok) {
|
|
throw new Error(`Overpass API error: ${response.status}`);
|
|
}
|
|
|
|
const text = await response.text();
|
|
|
|
if (text.includes("rate_limited")) {
|
|
throw new OverpassRateLimitError();
|
|
}
|
|
|
|
let data;
|
|
try {
|
|
data = JSON.parse(text);
|
|
} catch {
|
|
throw new Error("Overpass API returned invalid JSON");
|
|
}
|
|
|
|
return parseResponse(data, categories);
|
|
}
|
|
|
|
export class OverpassRateLimitError extends Error {
|
|
constructor() {
|
|
super("Overpass API rate limit exceeded");
|
|
this.name = "OverpassRateLimitError";
|
|
}
|
|
}
|