super_admin){ $company=Company::query()->filter($request->all())->get(); return CompanyResource::collection($company); }else{ $company=Auth::user()->company; return new CompanyResource($company); } } public function store(CreateOrUpdateRequest $request) { $company = new Company(); $company->fill([ ...$request->all(), ]); $company->save(); return $this->created(); } public function show(string $id) { $companyId=Auth::user()->company->id; if(empty(Auth::user()->super_admin)){ if($companyId!=$id){ return $this->forbidden("You are not a user under this company"); } } $field = Company::query()->findOrFail($id); return new CompanyResource($field); } public function update(Request $request,string $id){ $company = Company::findOrFail($id); $company->email =$request->email; $company->save(); return $this->noContent(); } public function destroy(string $id) { $company = Company::findOrFail($id); $company->delete(); return $this->noContent(); } }