Cart, Checkout, and Ownership

View saved

Goal

This snapshot advances Emberquay Market by teaching you to check out orders and protect seller product mutations.

Every numbered folder is a complete app. Run this stage independently, then compare it with the previous folder.

Prerequisites

Use Elixir 1.15+, Mix, Node.js 20+, and Docker for Postgres stages.

Port 4002 must be free. Copy .env.example before database stages.

  • Elixir and Mix
  • Node.js and npm
  • Docker from part 4 onward

Concepts

Checkout creates an Order and OrderItems, clears the cart, and decrements stock. Product update/delete authorize against user ownership.

LiveView keeps interactive UI on the server; Tailwind styles the storefront; Ecto owns persistence and authorization checks.

Walkthrough

Implement checkout and seller product create/edit/delete returning 403 for non-owners.

Read the example, then open the matching snapshot. The repository includes validation, CSRF, and the surrounding structure.

Repo.transaction(fn ->
  # create order + items, decrement stock, clear cart
end)

Run and verify

Enter 09-Cart-Checkout-And-Ownership, mix deps.get, copy .env.example, migrate, seed, and start Phoenix on port 4002.

Open http://127.0.0.1:4002. From data lessons onward, Ada and Grace use password123.

docker compose up -d
git clone https://github.com/michaeldunga1/fcc-phoenix-ecommerce.git
cd fcc-phoenix-ecommerce/09-Cart-Checkout-And-Ownership
mix deps.get
npm --prefix assets install
cp .env.example .env
mix ecto.setup
mix phx.server

Troubleshooting

UI hiding is not authorization—POST as Grace against Ada's product must 403.

For database failures, confirm Docker and the ember_NN name. Never commit .env, _build, deps, or node_modules.

  • Read the first exception first
  • Rebuild assets after Tailwind class changes
  • Never commit secrets

Try this

Complete a checkout as Ada, then attempt to delete Grace's product and confirm 403.

Test a happy path and one invalid or unauthorized request.

  • Make one small change
  • Test it in the browser
  • Compare with the next snapshot only after it works

Next: Pagination and Search

Comments

One comment per signed-in account. Comments are saved with this page’s URL.