A parent registers once and manages lessons for one or more children, who need no login of their own. A child is a real wp_users row with the student role but no usable login — so student_id keeps meaning "a WordPress user" on every table, and booking, credits, policies and enrolments work unchanged. A us_guardians link table maps guardian to child. The signup form gains a parent/guardian tick that reveals a block per child, with the account-signup questions asked per child rather than per guardian — they describe the student, not the account holder. Signup policies are recorded once per child with the guardian as the acceptor, which is the record that actually means something. A family that half-creates is rolled back entirely rather than leaving a guardian who cannot re-register. The booking and enrolment forms gain a "Who is this for?" picker listing children first, so the default selection is never the parent — booking for the wrong child is correctable, quietly billing a parent for their kid's lesson is not. POST /bookings and POST /enrollments take an optional student_id honoured only for that child's guardian; anything else is a 403. That check is the authorisation boundary of the feature. Payments and credits gain a payer: the charge names the child it was for and the guardian who owes it, so per-child reporting is unchanged while notices, receipts and the payment step reach the parent. Credit is held by the payer, so one child's cancellation can settle a sibling's charge, and the daily billing scan sends a guardian one notice covering every child. Closes #132 Co-Authored-By: Claude Opus 5 <[email protected]>
33 lines
1.7 KiB
PHP
33 lines
1.7 KiB
PHP
<?php
|
|
declare(strict_types=1);
|
|
|
|
if (! defined('ABSPATH')) {
|
|
exit;
|
|
}
|
|
|
|
/** @var int $lessonTypeId Offering id when the calendar is pinned to one lesson type; 0 for every type. */
|
|
/** @var bool $showTypeFilter Whether the "Show Only" lesson-type filter is offered. */
|
|
/** @var bool $showBooking Whether the booking calendar is part of this embed. */
|
|
/** @var bool $showUpcoming Whether the student's upcoming-lessons panel is part of this embed. */
|
|
/** @var list<array{id: int, name: string, is_self: bool}> $students Who this account may book for — children first, the account holder last. */
|
|
|
|
// The booking script reads the list as JSON rather than rendering a <select>
|
|
// here: the picker belongs inside the booking form it builds, and it is the same
|
|
// list the group-classes script needs.
|
|
$studentsJson = wp_json_encode(array_values($students));
|
|
?>
|
|
<div id="us-booking-app" data-nonce="<?php echo esc_attr(wp_create_nonce('wp_rest')); ?>" data-students="<?php echo esc_attr(is_string($studentsJson) ? $studentsJson : '[]'); ?>"<?php echo $lessonTypeId > 0 ? ' data-lesson-type="' . esc_attr((string) $lessonTypeId) . '"' : ''; ?><?php echo $showTypeFilter ? '' : ' data-type-filter="0"'; ?>>
|
|
<?php if ($showUpcoming) : ?>
|
|
<div id="us-my-lessons"></div>
|
|
<?php endif; ?>
|
|
<?php if ($showBooking) : ?>
|
|
<div id="us-slot-list">
|
|
<p><?php esc_html_e('Loading available slots…', 'unsupervised-schedular'); ?></p>
|
|
</div>
|
|
<div id="us-booking-confirmation" style="display:none;">
|
|
<p><?php esc_html_e('Your lesson has been booked. The instructor will confirm shortly.', 'unsupervised-schedular'); ?></p>
|
|
</div>
|
|
<?php endif; ?>
|
|
<div id="us-booking-error" style="display:none;" role="alert"></div>
|
|
</div>
|