support-adding-users #4
@@ -6,6 +6,7 @@ from datetime import datetime
|
||||
|
||||
if TYPE_CHECKING:
|
||||
from sqlalchemy.orm import DeclarativeBase
|
||||
|
||||
Base = DeclarativeBase
|
||||
else:
|
||||
from baby_monitor.repositories.dependencies.get_database import Base
|
||||
|
||||
@@ -11,6 +11,7 @@ from sqlalchemy.orm import Mapped, mapped_column
|
||||
|
||||
if TYPE_CHECKING:
|
||||
from sqlalchemy.orm import DeclarativeBase
|
||||
|
||||
Base = DeclarativeBase
|
||||
else:
|
||||
from baby_monitor.repositories.dependencies.get_database import Base
|
||||
@@ -21,9 +22,7 @@ class Invitation(Base):
|
||||
|
||||
__tablename__ = "invitations"
|
||||
|
||||
id: Mapped[int] = mapped_column(
|
||||
Integer, primary_key=True, autoincrement=True
|
||||
)
|
||||
id: Mapped[int] = mapped_column(Integer, primary_key=True, autoincrement=True)
|
||||
token: Mapped[str] = mapped_column(String, unique=True, nullable=False)
|
||||
created_at: Mapped[datetime] = mapped_column(
|
||||
DateTime(timezone=True), nullable=False
|
||||
@@ -32,9 +31,7 @@ class Invitation(Base):
|
||||
DateTime(timezone=True), nullable=False
|
||||
)
|
||||
created_by_user_id: Mapped[int] = mapped_column(Integer, nullable=False)
|
||||
is_consumed: Mapped[bool] = mapped_column(
|
||||
Boolean, default=False, nullable=False
|
||||
)
|
||||
is_consumed: Mapped[bool] = mapped_column(Boolean, default=False, nullable=False)
|
||||
consumed_at: Mapped[datetime | None] = mapped_column(
|
||||
DateTime(timezone=True), nullable=True
|
||||
)
|
||||
|
||||
@@ -36,7 +36,7 @@ def init_db() -> None:
|
||||
# This must be done before create_all() is called
|
||||
from baby_monitor.models.db.user import User # noqa: F401
|
||||
from baby_monitor.models.invitation import Invitation # noqa: F401
|
||||
|
||||
|
||||
# Ensure data directory exists
|
||||
DATA_DIR.mkdir(parents=True, exist_ok=True)
|
||||
Base.metadata.create_all(bind=engine)
|
||||
|
||||
@@ -34,9 +34,7 @@ class SQLiteInvitationRepository(InvitationRepositoryInterface):
|
||||
# Convert timezone-aware datetimes to naive UTC for SQLite
|
||||
created_at_utc = datetime.now(UTC).replace(tzinfo=None)
|
||||
expires_at_utc = (
|
||||
expires_at.replace(tzinfo=None)
|
||||
if expires_at.tzinfo
|
||||
else expires_at
|
||||
expires_at.replace(tzinfo=None) if expires_at.tzinfo else expires_at
|
||||
)
|
||||
|
||||
invitation = Invitation(
|
||||
@@ -60,9 +58,7 @@ class SQLiteInvitationRepository(InvitationRepositoryInterface):
|
||||
Returns:
|
||||
True if valid and not consumed, False otherwise
|
||||
"""
|
||||
invitation = (
|
||||
self.db.query(Invitation).filter(Invitation.token == token).first()
|
||||
)
|
||||
invitation = self.db.query(Invitation).filter(Invitation.token == token).first()
|
||||
|
||||
if not invitation:
|
||||
return False
|
||||
@@ -88,9 +84,7 @@ class SQLiteInvitationRepository(InvitationRepositoryInterface):
|
||||
Returns:
|
||||
True if successfully consumed, False if invalid or already used
|
||||
"""
|
||||
invitation = (
|
||||
self.db.query(Invitation).filter(Invitation.token == token).first()
|
||||
)
|
||||
invitation = self.db.query(Invitation).filter(Invitation.token == token).first()
|
||||
|
||||
if not invitation:
|
||||
return False
|
||||
@@ -114,7 +108,5 @@ class SQLiteInvitationRepository(InvitationRepositoryInterface):
|
||||
def cleanup_expired(self) -> None:
|
||||
"""Remove expired invitation tokens from storage."""
|
||||
now_utc = datetime.now(UTC).replace(tzinfo=None)
|
||||
self.db.query(Invitation).filter(
|
||||
Invitation.expires_at < now_utc
|
||||
).delete()
|
||||
self.db.query(Invitation).filter(Invitation.expires_at < now_utc).delete()
|
||||
self.db.commit()
|
||||
|
||||
@@ -34,31 +34,31 @@ async def generate_invitation_link(
|
||||
],
|
||||
) -> InvitationResponse:
|
||||
"""Generate a new invitation link for user registration.
|
||||
|
||||
|
||||
The invitation token is valid for 24 hours and can be used once.
|
||||
Requires admin role.
|
||||
|
||||
|
||||
Args:
|
||||
user_id: Admin user ID (from verify_admin)
|
||||
invitation_repository: Invitation storage backend
|
||||
|
||||
|
||||
Returns:
|
||||
InvitationResponse with token and expiration details
|
||||
"""
|
||||
|
||||
|
||||
# Generate secure random token
|
||||
invitation_token = secrets.token_urlsafe(32)
|
||||
|
||||
|
||||
# Calculate expiration (24 hours from now)
|
||||
expires_at = datetime.now(UTC) + timedelta(hours=24)
|
||||
|
||||
|
||||
# Store invitation token in database
|
||||
invitation_repository.create_invitation(
|
||||
token=invitation_token,
|
||||
created_by_user_id=user_id,
|
||||
expires_at=expires_at,
|
||||
)
|
||||
|
||||
|
||||
return InvitationResponse(
|
||||
token=invitation_token,
|
||||
expires_at=expires_at.isoformat(),
|
||||
|
||||
@@ -52,27 +52,23 @@ def verify_token(
|
||||
|
||||
def verify_admin(
|
||||
user_id: Annotated[int, Depends(verify_token)],
|
||||
user_repo: Annotated[
|
||||
UserRepositoryInterface, Depends(get_user_repository)
|
||||
],
|
||||
user_repo: Annotated[UserRepositoryInterface, Depends(get_user_repository)],
|
||||
) -> int:
|
||||
"""Verify the user is an admin and return user_id."""
|
||||
# First try to get user from database
|
||||
user = user_repo.get_by_id(user_id)
|
||||
|
||||
|
||||
if user:
|
||||
# Database user - check is_admin field
|
||||
if not user.get("is_admin", False):
|
||||
raise HTTPException(
|
||||
status_code=403, detail="Admin access required"
|
||||
)
|
||||
raise HTTPException(status_code=403, detail="Admin access required")
|
||||
return user_id
|
||||
|
||||
|
||||
# If not in database but has valid token with user_id=1,
|
||||
# it's the environment-based admin (only assigned during env admin login)
|
||||
if user_id == 1:
|
||||
return user_id
|
||||
|
||||
|
||||
# User not found and not environment admin
|
||||
raise HTTPException(status_code=401, detail="User not found")
|
||||
|
||||
@@ -80,12 +76,8 @@ def verify_admin(
|
||||
@router.post("/login", response_model=LoginResponse)
|
||||
def login(
|
||||
credentials: LoginRequest,
|
||||
token_repo: Annotated[
|
||||
TokenRepositoryInterface, Depends(get_token_repository)
|
||||
],
|
||||
user_repo: Annotated[
|
||||
UserRepositoryInterface, Depends(get_user_repository)
|
||||
],
|
||||
token_repo: Annotated[TokenRepositoryInterface, Depends(get_token_repository)],
|
||||
user_repo: Annotated[UserRepositoryInterface, Depends(get_user_repository)],
|
||||
creds_repo: Annotated[
|
||||
CredentialsRepositoryInterface, Depends(get_credentials_repository)
|
||||
],
|
||||
@@ -112,11 +104,9 @@ def login(
|
||||
access_token=access_token,
|
||||
is_admin=user.get("is_admin", False),
|
||||
)
|
||||
|
||||
|
||||
# Fallback to admin credentials from environment
|
||||
if creds_repo.verify_admin_credentials(
|
||||
credentials.username, credentials.password
|
||||
):
|
||||
if creds_repo.verify_admin_credentials(credentials.username, credentials.password):
|
||||
# Generate a secure random token
|
||||
access_token = secrets.token_urlsafe(32)
|
||||
# Store token with user_id (hardcoded 1 for admin)
|
||||
@@ -128,10 +118,8 @@ def login(
|
||||
access_token=access_token,
|
||||
is_admin=True,
|
||||
)
|
||||
|
||||
raise HTTPException(
|
||||
status_code=401, detail="Invalid username or password"
|
||||
)
|
||||
|
||||
raise HTTPException(status_code=401, detail="Invalid username or password")
|
||||
|
||||
|
||||
@router.post("/logout")
|
||||
@@ -162,19 +150,15 @@ def verify_invitation(
|
||||
@router.post("/register", response_model=RegisterResponse)
|
||||
def register(
|
||||
request: RegisterRequest,
|
||||
user_repo: Annotated[
|
||||
UserRepositoryInterface, Depends(get_user_repository)
|
||||
],
|
||||
user_repo: Annotated[UserRepositoryInterface, Depends(get_user_repository)],
|
||||
invitation_repo: Annotated[
|
||||
InvitationRepositoryInterface, Depends(get_invitation_repository)
|
||||
],
|
||||
token_repo: Annotated[
|
||||
TokenRepositoryInterface, Depends(get_token_repository)
|
||||
],
|
||||
token_repo: Annotated[TokenRepositoryInterface, Depends(get_token_repository)],
|
||||
) -> RegisterResponse:
|
||||
"""
|
||||
Register a new user with an invitation token.
|
||||
|
||||
|
||||
Verifies the invitation, creates the user, consumes the invitation,
|
||||
and returns an authentication token.
|
||||
"""
|
||||
@@ -184,7 +168,7 @@ def register(
|
||||
status_code=400,
|
||||
detail="Invalid or expired invitation token",
|
||||
)
|
||||
|
||||
|
||||
# Check if username already exists
|
||||
existing_user = user_repo.get_by_username(request.username)
|
||||
if existing_user:
|
||||
@@ -192,21 +176,21 @@ def register(
|
||||
status_code=400,
|
||||
detail="Username already exists",
|
||||
)
|
||||
|
||||
|
||||
# Create the new user
|
||||
# TODO: Hash password before storing (currently plain text)
|
||||
user = user_repo.create(
|
||||
username=request.username,
|
||||
hashed_password=request.password,
|
||||
)
|
||||
|
||||
|
||||
# Consume the invitation token
|
||||
invitation_repo.consume_invitation(request.invitation_token)
|
||||
|
||||
|
||||
# Generate authentication token
|
||||
access_token = secrets.token_urlsafe(32)
|
||||
token_repo.store(access_token, user_id=user["id"], ttl=3600)
|
||||
|
||||
|
||||
return RegisterResponse(
|
||||
message="Registration successful",
|
||||
username=user["username"],
|
||||
@@ -218,16 +202,14 @@ def register(
|
||||
@router.get("/me")
|
||||
def get_current_user(
|
||||
user_id: Annotated[int, Depends(verify_token)],
|
||||
user_repo: Annotated[
|
||||
UserRepositoryInterface, Depends(get_user_repository)
|
||||
],
|
||||
user_repo: Annotated[UserRepositoryInterface, Depends(get_user_repository)],
|
||||
creds_repo: Annotated[
|
||||
CredentialsRepositoryInterface, Depends(get_credentials_repository)
|
||||
],
|
||||
) -> dict:
|
||||
"""Get current user info including admin status."""
|
||||
user = user_repo.get_by_id(user_id)
|
||||
|
||||
|
||||
# If user not found in DB, might be env-based admin
|
||||
if not user:
|
||||
# Return admin info from environment
|
||||
@@ -236,7 +218,7 @@ def get_current_user(
|
||||
"username": creds_repo.get_admin_username(),
|
||||
"is_admin": True, # Env-based admin is always admin
|
||||
}
|
||||
|
||||
|
||||
return {
|
||||
"id": user["id"],
|
||||
"username": user["username"],
|
||||
|
||||
+267
-263
@@ -1,315 +1,319 @@
|
||||
<!DOCTYPE html>
|
||||
<!doctype html>
|
||||
<html lang="en">
|
||||
<head>
|
||||
<meta charset="UTF-8">
|
||||
<meta name="viewport" content="width=device-width, initial-scale=1.0">
|
||||
<head>
|
||||
<meta charset="UTF-8" />
|
||||
<meta name="viewport" content="width=device-width, initial-scale=1.0" />
|
||||
<title>Baby Monitor - Admin</title>
|
||||
<style>
|
||||
* {
|
||||
margin: 0;
|
||||
padding: 0;
|
||||
box-sizing: border-box;
|
||||
}
|
||||
* {
|
||||
margin: 0;
|
||||
padding: 0;
|
||||
box-sizing: border-box;
|
||||
}
|
||||
|
||||
body {
|
||||
font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen, Ubuntu, Cantarell, sans-serif;
|
||||
background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);
|
||||
min-height: 100vh;
|
||||
display: flex;
|
||||
justify-content: center;
|
||||
align-items: center;
|
||||
padding: 20px;
|
||||
}
|
||||
body {
|
||||
font-family:
|
||||
-apple-system, BlinkMacSystemFont, "Segoe UI", Roboto, Oxygen, Ubuntu,
|
||||
Cantarell, sans-serif;
|
||||
background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);
|
||||
min-height: 100vh;
|
||||
display: flex;
|
||||
justify-content: center;
|
||||
align-items: center;
|
||||
padding: 20px;
|
||||
}
|
||||
|
||||
.container {
|
||||
background: white;
|
||||
border-radius: 12px;
|
||||
box-shadow: 0 10px 40px rgba(0, 0, 0, 0.2);
|
||||
padding: 40px;
|
||||
max-width: 600px;
|
||||
width: 100%;
|
||||
}
|
||||
.container {
|
||||
background: white;
|
||||
border-radius: 12px;
|
||||
box-shadow: 0 10px 40px rgba(0, 0, 0, 0.2);
|
||||
padding: 40px;
|
||||
max-width: 600px;
|
||||
width: 100%;
|
||||
}
|
||||
|
||||
h1 {
|
||||
color: #333;
|
||||
margin-bottom: 10px;
|
||||
font-size: 28px;
|
||||
}
|
||||
h1 {
|
||||
color: #333;
|
||||
margin-bottom: 10px;
|
||||
font-size: 28px;
|
||||
}
|
||||
|
||||
.subtitle {
|
||||
color: #666;
|
||||
margin-bottom: 30px;
|
||||
font-size: 14px;
|
||||
}
|
||||
.subtitle {
|
||||
color: #666;
|
||||
margin-bottom: 30px;
|
||||
font-size: 14px;
|
||||
}
|
||||
|
||||
.section {
|
||||
margin-bottom: 30px;
|
||||
}
|
||||
.section {
|
||||
margin-bottom: 30px;
|
||||
}
|
||||
|
||||
.section h2 {
|
||||
color: #444;
|
||||
font-size: 18px;
|
||||
margin-bottom: 15px;
|
||||
display: flex;
|
||||
align-items: center;
|
||||
}
|
||||
.section h2 {
|
||||
color: #444;
|
||||
font-size: 18px;
|
||||
margin-bottom: 15px;
|
||||
display: flex;
|
||||
align-items: center;
|
||||
}
|
||||
|
||||
.section h2::before {
|
||||
content: '🔗';
|
||||
margin-right: 8px;
|
||||
}
|
||||
.section h2::before {
|
||||
content: "🔗";
|
||||
margin-right: 8px;
|
||||
}
|
||||
|
||||
.button {
|
||||
background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);
|
||||
color: white;
|
||||
border: none;
|
||||
padding: 12px 24px;
|
||||
border-radius: 6px;
|
||||
font-size: 16px;
|
||||
font-weight: 600;
|
||||
cursor: pointer;
|
||||
transition: transform 0.2s, box-shadow 0.2s;
|
||||
width: 100%;
|
||||
}
|
||||
.button {
|
||||
background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);
|
||||
color: white;
|
||||
border: none;
|
||||
padding: 12px 24px;
|
||||
border-radius: 6px;
|
||||
font-size: 16px;
|
||||
font-weight: 600;
|
||||
cursor: pointer;
|
||||
transition:
|
||||
transform 0.2s,
|
||||
box-shadow 0.2s;
|
||||
width: 100%;
|
||||
}
|
||||
|
||||
.button:hover {
|
||||
transform: translateY(-2px);
|
||||
box-shadow: 0 4px 12px rgba(102, 126, 234, 0.4);
|
||||
}
|
||||
.button:hover {
|
||||
transform: translateY(-2px);
|
||||
box-shadow: 0 4px 12px rgba(102, 126, 234, 0.4);
|
||||
}
|
||||
|
||||
.button:active {
|
||||
transform: translateY(0);
|
||||
}
|
||||
.button:active {
|
||||
transform: translateY(0);
|
||||
}
|
||||
|
||||
.button:disabled {
|
||||
opacity: 0.6;
|
||||
cursor: not-allowed;
|
||||
transform: none;
|
||||
}
|
||||
.button:disabled {
|
||||
opacity: 0.6;
|
||||
cursor: not-allowed;
|
||||
transform: none;
|
||||
}
|
||||
|
||||
.link-container {
|
||||
display: none;
|
||||
margin-top: 20px;
|
||||
padding: 15px;
|
||||
background: #f8f9fa;
|
||||
border-radius: 8px;
|
||||
border: 2px solid #667eea;
|
||||
}
|
||||
.link-container {
|
||||
display: none;
|
||||
margin-top: 20px;
|
||||
padding: 15px;
|
||||
background: #f8f9fa;
|
||||
border-radius: 8px;
|
||||
border: 2px solid #667eea;
|
||||
}
|
||||
|
||||
.link-container.show {
|
||||
display: block;
|
||||
}
|
||||
.link-container.show {
|
||||
display: block;
|
||||
}
|
||||
|
||||
.link-label {
|
||||
font-size: 12px;
|
||||
color: #666;
|
||||
margin-bottom: 8px;
|
||||
font-weight: 600;
|
||||
text-transform: uppercase;
|
||||
}
|
||||
.link-label {
|
||||
font-size: 12px;
|
||||
color: #666;
|
||||
margin-bottom: 8px;
|
||||
font-weight: 600;
|
||||
text-transform: uppercase;
|
||||
}
|
||||
|
||||
.link-display {
|
||||
display: flex;
|
||||
gap: 10px;
|
||||
align-items: center;
|
||||
}
|
||||
.link-display {
|
||||
display: flex;
|
||||
gap: 10px;
|
||||
align-items: center;
|
||||
}
|
||||
|
||||
.link-text {
|
||||
flex: 1;
|
||||
padding: 10px;
|
||||
background: white;
|
||||
border: 1px solid #ddd;
|
||||
border-radius: 4px;
|
||||
font-family: 'Courier New', monospace;
|
||||
font-size: 13px;
|
||||
word-break: break-all;
|
||||
color: #333;
|
||||
}
|
||||
.link-text {
|
||||
flex: 1;
|
||||
padding: 10px;
|
||||
background: white;
|
||||
border: 1px solid #ddd;
|
||||
border-radius: 4px;
|
||||
font-family: "Courier New", monospace;
|
||||
font-size: 13px;
|
||||
word-break: break-all;
|
||||
color: #333;
|
||||
}
|
||||
|
||||
.copy-button {
|
||||
padding: 10px 16px;
|
||||
background: #28a745;
|
||||
color: white;
|
||||
border: none;
|
||||
border-radius: 4px;
|
||||
cursor: pointer;
|
||||
font-weight: 600;
|
||||
transition: background 0.2s;
|
||||
white-space: nowrap;
|
||||
}
|
||||
.copy-button {
|
||||
padding: 10px 16px;
|
||||
background: #28a745;
|
||||
color: white;
|
||||
border: none;
|
||||
border-radius: 4px;
|
||||
cursor: pointer;
|
||||
font-weight: 600;
|
||||
transition: background 0.2s;
|
||||
white-space: nowrap;
|
||||
}
|
||||
|
||||
.copy-button:hover {
|
||||
background: #218838;
|
||||
}
|
||||
.copy-button:hover {
|
||||
background: #218838;
|
||||
}
|
||||
|
||||
.copy-button.copied {
|
||||
background: #155724;
|
||||
}
|
||||
.copy-button.copied {
|
||||
background: #155724;
|
||||
}
|
||||
|
||||
.info-box {
|
||||
background: #e7f3ff;
|
||||
border-left: 4px solid #2196F3;
|
||||
padding: 12px;
|
||||
border-radius: 4px;
|
||||
margin-top: 15px;
|
||||
font-size: 14px;
|
||||
color: #555;
|
||||
}
|
||||
.info-box {
|
||||
background: #e7f3ff;
|
||||
border-left: 4px solid #2196f3;
|
||||
padding: 12px;
|
||||
border-radius: 4px;
|
||||
margin-top: 15px;
|
||||
font-size: 14px;
|
||||
color: #555;
|
||||
}
|
||||
|
||||
.error {
|
||||
background: #ffebee;
|
||||
border-left: 4px solid #f44336;
|
||||
color: #c62828;
|
||||
padding: 12px;
|
||||
border-radius: 4px;
|
||||
margin-top: 15px;
|
||||
display: none;
|
||||
}
|
||||
.error {
|
||||
background: #ffebee;
|
||||
border-left: 4px solid #f44336;
|
||||
color: #c62828;
|
||||
padding: 12px;
|
||||
border-radius: 4px;
|
||||
margin-top: 15px;
|
||||
display: none;
|
||||
}
|
||||
|
||||
.error.show {
|
||||
display: block;
|
||||
}
|
||||
.error.show {
|
||||
display: block;
|
||||
}
|
||||
|
||||
.logout-button {
|
||||
background: #dc3545;
|
||||
padding: 8px 16px;
|
||||
font-size: 14px;
|
||||
margin-top: 20px;
|
||||
}
|
||||
.logout-button {
|
||||
background: #dc3545;
|
||||
padding: 8px 16px;
|
||||
font-size: 14px;
|
||||
margin-top: 20px;
|
||||
}
|
||||
|
||||
.logout-button:hover {
|
||||
background: #c82333;
|
||||
box-shadow: 0 4px 12px rgba(220, 53, 69, 0.4);
|
||||
}
|
||||
.logout-button:hover {
|
||||
background: #c82333;
|
||||
box-shadow: 0 4px 12px rgba(220, 53, 69, 0.4);
|
||||
}
|
||||
</style>
|
||||
</head>
|
||||
<body>
|
||||
</head>
|
||||
<body>
|
||||
<div class="container">
|
||||
<h1>👨💼 Admin Dashboard</h1>
|
||||
<p class="subtitle">Manage user invitations and settings</p>
|
||||
<h1>👨💼 Admin Dashboard</h1>
|
||||
<p class="subtitle">Manage user invitations and settings</p>
|
||||
|
||||
<div class="section">
|
||||
<h2>Generate Invitation Link</h2>
|
||||
<p style="color: #666; margin-bottom: 15px; font-size: 14px;">
|
||||
Create a secure one-time link to invite a new user to register.
|
||||
</p>
|
||||
<button class="button" id="generateBtn" onclick="generateLink()">
|
||||
Generate New Invitation Link
|
||||
<div class="section">
|
||||
<h2>Generate Invitation Link</h2>
|
||||
<p style="color: #666; margin-bottom: 15px; font-size: 14px">
|
||||
Create a secure one-time link to invite a new user to register.
|
||||
</p>
|
||||
<button class="button" id="generateBtn" onclick="generateLink()">
|
||||
Generate New Invitation Link
|
||||
</button>
|
||||
|
||||
<div id="linkContainer" class="link-container">
|
||||
<div class="link-label">Invitation Link</div>
|
||||
<div class="link-display">
|
||||
<div class="link-text" id="linkText"></div>
|
||||
<button class="copy-button" id="copyBtn" onclick="copyLink()">
|
||||
Copy
|
||||
</button>
|
||||
|
||||
<div id="linkContainer" class="link-container">
|
||||
<div class="link-label">Invitation Link</div>
|
||||
<div class="link-display">
|
||||
<div class="link-text" id="linkText"></div>
|
||||
<button class="copy-button" id="copyBtn" onclick="copyLink()">
|
||||
Copy
|
||||
</button>
|
||||
</div>
|
||||
<div class="info-box">
|
||||
ℹ️ This link expires in 24 hours and can only be used once.
|
||||
Share it securely with the intended user.
|
||||
</div>
|
||||
</div>
|
||||
|
||||
<div id="error" class="error"></div>
|
||||
</div>
|
||||
<div class="info-box">
|
||||
ℹ️ This link expires in 24 hours and can only be used once. Share it
|
||||
securely with the intended user.
|
||||
</div>
|
||||
</div>
|
||||
|
||||
<button class="button logout-button" onclick="logout()">
|
||||
Logout
|
||||
</button>
|
||||
<div id="error" class="error"></div>
|
||||
</div>
|
||||
|
||||
<button class="button logout-button" onclick="logout()">Logout</button>
|
||||
</div>
|
||||
|
||||
<script>
|
||||
// Check if user is authenticated and is admin
|
||||
const token = localStorage.getItem('access_token');
|
||||
if (!token) {
|
||||
window.location.href = '/login.html';
|
||||
}
|
||||
// Check if user is authenticated and is admin
|
||||
const token = localStorage.getItem("access_token");
|
||||
if (!token) {
|
||||
window.location.href = "/login.html";
|
||||
}
|
||||
|
||||
// Verify user is admin
|
||||
fetch('/api/me', {
|
||||
headers: {
|
||||
'Authorization': `Bearer ${token}`,
|
||||
}
|
||||
// Verify user is admin
|
||||
fetch("/api/me", {
|
||||
headers: {
|
||||
Authorization: `Bearer ${token}`,
|
||||
},
|
||||
})
|
||||
.then((response) => response.json())
|
||||
.then((user) => {
|
||||
if (!user.is_admin) {
|
||||
alert("Access denied. Admin privileges required.");
|
||||
window.location.href = "/";
|
||||
}
|
||||
})
|
||||
.then(response => response.json())
|
||||
.then(user => {
|
||||
if (!user.is_admin) {
|
||||
alert('Access denied. Admin privileges required.');
|
||||
window.location.href = '/';
|
||||
}
|
||||
})
|
||||
.catch(error => {
|
||||
console.error('Error verifying admin status:', error);
|
||||
window.location.href = '/login.html';
|
||||
.catch((error) => {
|
||||
console.error("Error verifying admin status:", error);
|
||||
window.location.href = "/login.html";
|
||||
});
|
||||
|
||||
async function generateLink() {
|
||||
const btn = document.getElementById('generateBtn');
|
||||
const linkContainer = document.getElementById('linkContainer');
|
||||
const linkText = document.getElementById('linkText');
|
||||
const errorDiv = document.getElementById('error');
|
||||
async function generateLink() {
|
||||
const btn = document.getElementById("generateBtn");
|
||||
const linkContainer = document.getElementById("linkContainer");
|
||||
const linkText = document.getElementById("linkText");
|
||||
const errorDiv = document.getElementById("error");
|
||||
|
||||
// Disable button and show loading state
|
||||
btn.disabled = true;
|
||||
btn.textContent = 'Generating...';
|
||||
errorDiv.classList.remove('show');
|
||||
// Disable button and show loading state
|
||||
btn.disabled = true;
|
||||
btn.textContent = "Generating...";
|
||||
errorDiv.classList.remove("show");
|
||||
|
||||
try {
|
||||
const response = await fetch('/api/admin/generate-invitation', {
|
||||
method: 'POST',
|
||||
headers: {
|
||||
'Authorization': `Bearer ${token}`,
|
||||
'Content-Type': 'application/json'
|
||||
}
|
||||
});
|
||||
try {
|
||||
const response = await fetch("/api/admin/generate-invitation", {
|
||||
method: "POST",
|
||||
headers: {
|
||||
Authorization: `Bearer ${token}`,
|
||||
"Content-Type": "application/json",
|
||||
},
|
||||
});
|
||||
|
||||
if (!response.ok) {
|
||||
throw new Error(`Failed to generate link: ${response.statusText}`);
|
||||
}
|
||||
if (!response.ok) {
|
||||
throw new Error(`Failed to generate link: ${response.statusText}`);
|
||||
}
|
||||
|
||||
const data = await response.json();
|
||||
|
||||
// Build the full URL
|
||||
const baseUrl = window.location.origin;
|
||||
const inviteUrl = `${baseUrl}/register.html?token=${data.token}`;
|
||||
|
||||
// Display the link
|
||||
linkText.textContent = inviteUrl;
|
||||
linkContainer.classList.add('show');
|
||||
const data = await response.json();
|
||||
|
||||
} catch (error) {
|
||||
errorDiv.textContent = `Error: ${error.message}`;
|
||||
errorDiv.classList.add('show');
|
||||
} finally {
|
||||
btn.disabled = false;
|
||||
btn.textContent = 'Generate New Invitation Link';
|
||||
}
|
||||
// Build the full URL
|
||||
const baseUrl = window.location.origin;
|
||||
const inviteUrl = `${baseUrl}/register.html?token=${data.token}`;
|
||||
|
||||
// Display the link
|
||||
linkText.textContent = inviteUrl;
|
||||
linkContainer.classList.add("show");
|
||||
} catch (error) {
|
||||
errorDiv.textContent = `Error: ${error.message}`;
|
||||
errorDiv.classList.add("show");
|
||||
} finally {
|
||||
btn.disabled = false;
|
||||
btn.textContent = "Generate New Invitation Link";
|
||||
}
|
||||
}
|
||||
|
||||
function copyLink() {
|
||||
const linkText = document.getElementById('linkText').textContent;
|
||||
const copyBtn = document.getElementById('copyBtn');
|
||||
function copyLink() {
|
||||
const linkText = document.getElementById("linkText").textContent;
|
||||
const copyBtn = document.getElementById("copyBtn");
|
||||
|
||||
navigator.clipboard.writeText(linkText).then(() => {
|
||||
// Show success state
|
||||
copyBtn.textContent = '✓ Copied!';
|
||||
copyBtn.classList.add('copied');
|
||||
navigator.clipboard
|
||||
.writeText(linkText)
|
||||
.then(() => {
|
||||
// Show success state
|
||||
copyBtn.textContent = "✓ Copied!";
|
||||
copyBtn.classList.add("copied");
|
||||
|
||||
// Reset after 2 seconds
|
||||
setTimeout(() => {
|
||||
copyBtn.textContent = 'Copy';
|
||||
copyBtn.classList.remove('copied');
|
||||
}, 2000);
|
||||
}).catch(err => {
|
||||
alert('Failed to copy link: ' + err);
|
||||
});
|
||||
}
|
||||
// Reset after 2 seconds
|
||||
setTimeout(() => {
|
||||
copyBtn.textContent = "Copy";
|
||||
copyBtn.classList.remove("copied");
|
||||
}, 2000);
|
||||
})
|
||||
.catch((err) => {
|
||||
alert("Failed to copy link: " + err);
|
||||
});
|
||||
}
|
||||
|
||||
function logout() {
|
||||
localStorage.removeItem('access_token');
|
||||
window.location.href = '/login.html';
|
||||
}
|
||||
function logout() {
|
||||
localStorage.removeItem("access_token");
|
||||
window.location.href = "/login.html";
|
||||
}
|
||||
</script>
|
||||
</body>
|
||||
</body>
|
||||
</html>
|
||||
|
||||
@@ -125,13 +125,11 @@
|
||||
<div></div>
|
||||
<div></div>
|
||||
</div>
|
||||
|
||||
|
||||
<div class="menu-backdrop" id="menuBackdrop"></div>
|
||||
|
||||
|
||||
<div class="menu-overlay" id="menuOverlay">
|
||||
<div class="menu-item logout" id="menuLogout">
|
||||
🚪 Logout
|
||||
</div>
|
||||
<div class="menu-item logout" id="menuLogout">🚪 Logout</div>
|
||||
</div>
|
||||
|
||||
<div class="container">
|
||||
@@ -148,20 +146,20 @@
|
||||
const burgerMenu = document.getElementById("burgerMenu");
|
||||
const menuOverlay = document.getElementById("menuOverlay");
|
||||
const menuBackdrop = document.getElementById("menuBackdrop");
|
||||
|
||||
|
||||
function toggleMenu() {
|
||||
menuOverlay.classList.toggle("open");
|
||||
menuBackdrop.classList.toggle("open");
|
||||
}
|
||||
|
||||
|
||||
function closeMenu() {
|
||||
menuOverlay.classList.remove("open");
|
||||
menuBackdrop.classList.remove("open");
|
||||
}
|
||||
|
||||
|
||||
burgerMenu.addEventListener("click", toggleMenu);
|
||||
menuBackdrop.addEventListener("click", closeMenu);
|
||||
|
||||
|
||||
document.getElementById("menuLogout").addEventListener("click", () => {
|
||||
closeMenu();
|
||||
logout();
|
||||
|
||||
@@ -112,7 +112,7 @@
|
||||
// Store token in localStorage
|
||||
localStorage.setItem("access_token", data.access_token);
|
||||
localStorage.setItem("username", data.username);
|
||||
|
||||
|
||||
// Redirect based on is_admin from login response
|
||||
setTimeout(() => {
|
||||
if (data.is_admin === true) {
|
||||
|
||||
@@ -1,368 +1,383 @@
|
||||
<!DOCTYPE html>
|
||||
<!doctype html>
|
||||
<html lang="en">
|
||||
<head>
|
||||
<meta charset="UTF-8">
|
||||
<meta name="viewport" content="width=device-width, initial-scale=1.0">
|
||||
<head>
|
||||
<meta charset="UTF-8" />
|
||||
<meta name="viewport" content="width=device-width, initial-scale=1.0" />
|
||||
<title>Baby Monitor - Register</title>
|
||||
<style>
|
||||
* {
|
||||
margin: 0;
|
||||
padding: 0;
|
||||
box-sizing: border-box;
|
||||
}
|
||||
* {
|
||||
margin: 0;
|
||||
padding: 0;
|
||||
box-sizing: border-box;
|
||||
}
|
||||
|
||||
body {
|
||||
font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen, Ubuntu, Cantarell, sans-serif;
|
||||
background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);
|
||||
min-height: 100vh;
|
||||
display: flex;
|
||||
justify-content: center;
|
||||
align-items: center;
|
||||
padding: 20px;
|
||||
}
|
||||
body {
|
||||
font-family:
|
||||
-apple-system, BlinkMacSystemFont, "Segoe UI", Roboto, Oxygen, Ubuntu,
|
||||
Cantarell, sans-serif;
|
||||
background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);
|
||||
min-height: 100vh;
|
||||
display: flex;
|
||||
justify-content: center;
|
||||
align-items: center;
|
||||
padding: 20px;
|
||||
}
|
||||
|
||||
.container {
|
||||
background: white;
|
||||
border-radius: 12px;
|
||||
box-shadow: 0 10px 40px rgba(0, 0, 0, 0.2);
|
||||
padding: 40px;
|
||||
max-width: 450px;
|
||||
width: 100%;
|
||||
}
|
||||
.container {
|
||||
background: white;
|
||||
border-radius: 12px;
|
||||
box-shadow: 0 10px 40px rgba(0, 0, 0, 0.2);
|
||||
padding: 40px;
|
||||
max-width: 450px;
|
||||
width: 100%;
|
||||
}
|
||||
|
||||
h1 {
|
||||
color: #333;
|
||||
margin-bottom: 10px;
|
||||
font-size: 28px;
|
||||
text-align: center;
|
||||
}
|
||||
h1 {
|
||||
color: #333;
|
||||
margin-bottom: 10px;
|
||||
font-size: 28px;
|
||||
text-align: center;
|
||||
}
|
||||
|
||||
.subtitle {
|
||||
color: #666;
|
||||
margin-bottom: 30px;
|
||||
font-size: 14px;
|
||||
text-align: center;
|
||||
}
|
||||
.subtitle {
|
||||
color: #666;
|
||||
margin-bottom: 30px;
|
||||
font-size: 14px;
|
||||
text-align: center;
|
||||
}
|
||||
|
||||
.form-group {
|
||||
margin-bottom: 20px;
|
||||
}
|
||||
.form-group {
|
||||
margin-bottom: 20px;
|
||||
}
|
||||
|
||||
label {
|
||||
display: block;
|
||||
margin-bottom: 8px;
|
||||
color: #444;
|
||||
font-weight: 600;
|
||||
font-size: 14px;
|
||||
}
|
||||
label {
|
||||
display: block;
|
||||
margin-bottom: 8px;
|
||||
color: #444;
|
||||
font-weight: 600;
|
||||
font-size: 14px;
|
||||
}
|
||||
|
||||
input {
|
||||
width: 100%;
|
||||
padding: 12px;
|
||||
border: 2px solid #e0e0e0;
|
||||
border-radius: 6px;
|
||||
font-size: 16px;
|
||||
transition: border-color 0.3s;
|
||||
}
|
||||
input {
|
||||
width: 100%;
|
||||
padding: 12px;
|
||||
border: 2px solid #e0e0e0;
|
||||
border-radius: 6px;
|
||||
font-size: 16px;
|
||||
transition: border-color 0.3s;
|
||||
}
|
||||
|
||||
input:focus {
|
||||
outline: none;
|
||||
border-color: #667eea;
|
||||
}
|
||||
input:focus {
|
||||
outline: none;
|
||||
border-color: #667eea;
|
||||
}
|
||||
|
||||
.button {
|
||||
width: 100%;
|
||||
background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);
|
||||
color: white;
|
||||
border: none;
|
||||
padding: 14px;
|
||||
border-radius: 6px;
|
||||
font-size: 16px;
|
||||
font-weight: 600;
|
||||
cursor: pointer;
|
||||
transition: transform 0.2s, box-shadow 0.2s;
|
||||
margin-top: 10px;
|
||||
}
|
||||
.button {
|
||||
width: 100%;
|
||||
background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);
|
||||
color: white;
|
||||
border: none;
|
||||
padding: 14px;
|
||||
border-radius: 6px;
|
||||
font-size: 16px;
|
||||
font-weight: 600;
|
||||
cursor: pointer;
|
||||
transition:
|
||||
transform 0.2s,
|
||||
box-shadow 0.2s;
|
||||
margin-top: 10px;
|
||||
}
|
||||
|
||||
.button:hover {
|
||||
transform: translateY(-2px);
|
||||
box-shadow: 0 4px 12px rgba(102, 126, 234, 0.4);
|
||||
}
|
||||
.button:hover {
|
||||
transform: translateY(-2px);
|
||||
box-shadow: 0 4px 12px rgba(102, 126, 234, 0.4);
|
||||
}
|
||||
|
||||
.button:active {
|
||||
transform: translateY(0);
|
||||
}
|
||||
.button:active {
|
||||
transform: translateY(0);
|
||||
}
|
||||
|
||||
.button:disabled {
|
||||
opacity: 0.6;
|
||||
cursor: not-allowed;
|
||||
transform: none;
|
||||
}
|
||||
.button:disabled {
|
||||
opacity: 0.6;
|
||||
cursor: not-allowed;
|
||||
transform: none;
|
||||
}
|
||||
|
||||
.error {
|
||||
background: #ffebee;
|
||||
border-left: 4px solid #f44336;
|
||||
color: #c62828;
|
||||
padding: 12px;
|
||||
border-radius: 4px;
|
||||
margin-bottom: 20px;
|
||||
display: none;
|
||||
font-size: 14px;
|
||||
}
|
||||
.error {
|
||||
background: #ffebee;
|
||||
border-left: 4px solid #f44336;
|
||||
color: #c62828;
|
||||
padding: 12px;
|
||||
border-radius: 4px;
|
||||
margin-bottom: 20px;
|
||||
display: none;
|
||||
font-size: 14px;
|
||||
}
|
||||
|
||||
.error.show {
|
||||
display: block;
|
||||
}
|
||||
.error.show {
|
||||
display: block;
|
||||
}
|
||||
|
||||
.success {
|
||||
background: #e8f5e9;
|
||||
border-left: 4px solid #4caf50;
|
||||
color: #2e7d32;
|
||||
padding: 12px;
|
||||
border-radius: 4px;
|
||||
margin-bottom: 20px;
|
||||
display: none;
|
||||
font-size: 14px;
|
||||
}
|
||||
.success {
|
||||
background: #e8f5e9;
|
||||
border-left: 4px solid #4caf50;
|
||||
color: #2e7d32;
|
||||
padding: 12px;
|
||||
border-radius: 4px;
|
||||
margin-bottom: 20px;
|
||||
display: none;
|
||||
font-size: 14px;
|
||||
}
|
||||
|
||||
.success.show {
|
||||
display: block;
|
||||
}
|
||||
.success.show {
|
||||
display: block;
|
||||
}
|
||||
|
||||
.loading-container {
|
||||
text-align: center;
|
||||
padding: 40px;
|
||||
}
|
||||
.loading-container {
|
||||
text-align: center;
|
||||
padding: 40px;
|
||||
}
|
||||
|
||||
.spinner {
|
||||
border: 3px solid #f3f3f3;
|
||||
border-top: 3px solid #667eea;
|
||||
border-radius: 50%;
|
||||
width: 40px;
|
||||
height: 40px;
|
||||
animation: spin 1s linear infinite;
|
||||
margin: 0 auto 20px;
|
||||
}
|
||||
.spinner {
|
||||
border: 3px solid #f3f3f3;
|
||||
border-top: 3px solid #667eea;
|
||||
border-radius: 50%;
|
||||
width: 40px;
|
||||
height: 40px;
|
||||
animation: spin 1s linear infinite;
|
||||
margin: 0 auto 20px;
|
||||
}
|
||||
|
||||
@keyframes spin {
|
||||
0% { transform: rotate(0deg); }
|
||||
100% { transform: rotate(360deg); }
|
||||
@keyframes spin {
|
||||
0% {
|
||||
transform: rotate(0deg);
|
||||
}
|
||||
100% {
|
||||
transform: rotate(360deg);
|
||||
}
|
||||
}
|
||||
|
||||
.info-box {
|
||||
background: #e7f3ff;
|
||||
border-left: 4px solid #2196F3;
|
||||
padding: 12px;
|
||||
border-radius: 4px;
|
||||
margin-bottom: 20px;
|
||||
font-size: 14px;
|
||||
color: #555;
|
||||
}
|
||||
.info-box {
|
||||
background: #e7f3ff;
|
||||
border-left: 4px solid #2196f3;
|
||||
padding: 12px;
|
||||
border-radius: 4px;
|
||||
margin-bottom: 20px;
|
||||
font-size: 14px;
|
||||
color: #555;
|
||||
}
|
||||
|
||||
.hidden {
|
||||
display: none;
|
||||
}
|
||||
.hidden {
|
||||
display: none;
|
||||
}
|
||||
|
||||
.password-requirements {
|
||||
font-size: 12px;
|
||||
color: #666;
|
||||
margin-top: 5px;
|
||||
}
|
||||
.password-requirements {
|
||||
font-size: 12px;
|
||||
color: #666;
|
||||
margin-top: 5px;
|
||||
}
|
||||
|
||||
.password-requirements ul {
|
||||
margin: 5px 0 0 20px;
|
||||
}
|
||||
.password-requirements ul {
|
||||
margin: 5px 0 0 20px;
|
||||
}
|
||||
</style>
|
||||
</head>
|
||||
<body>
|
||||
</head>
|
||||
<body>
|
||||
<div class="container">
|
||||
<div id="loadingContainer" class="loading-container">
|
||||
<div class="spinner"></div>
|
||||
<p style="color: #666;">Validating invitation...</p>
|
||||
</div>
|
||||
<div id="loadingContainer" class="loading-container">
|
||||
<div class="spinner"></div>
|
||||
<p style="color: #666">Validating invitation...</p>
|
||||
</div>
|
||||
|
||||
<div id="registerContainer" class="hidden">
|
||||
<h1>🎉 Create Your Account</h1>
|
||||
<p class="subtitle">Complete the registration to get started</p>
|
||||
<div id="registerContainer" class="hidden">
|
||||
<h1>🎉 Create Your Account</h1>
|
||||
<p class="subtitle">Complete the registration to get started</p>
|
||||
|
||||
<div id="error" class="error"></div>
|
||||
<div id="success" class="success"></div>
|
||||
<div id="error" class="error"></div>
|
||||
<div id="success" class="success"></div>
|
||||
|
||||
<form id="registerForm" onsubmit="handleRegister(event)">
|
||||
<div class="form-group">
|
||||
<label for="username">Username</label>
|
||||
<input
|
||||
type="text"
|
||||
id="username"
|
||||
name="username"
|
||||
required
|
||||
minlength="3"
|
||||
autocomplete="username"
|
||||
placeholder="Choose a username"
|
||||
>
|
||||
</div>
|
||||
<form id="registerForm" onsubmit="handleRegister(event)">
|
||||
<div class="form-group">
|
||||
<label for="username">Username</label>
|
||||
<input
|
||||
type="text"
|
||||
id="username"
|
||||
name="username"
|
||||
required
|
||||
minlength="3"
|
||||
autocomplete="username"
|
||||
placeholder="Choose a username"
|
||||
/>
|
||||
</div>
|
||||
|
||||
<div class="form-group">
|
||||
<label for="password">Password</label>
|
||||
<input
|
||||
type="password"
|
||||
id="password"
|
||||
name="password"
|
||||
required
|
||||
minlength="8"
|
||||
autocomplete="new-password"
|
||||
placeholder="Choose a strong password"
|
||||
>
|
||||
<div class="password-requirements">
|
||||
<ul>
|
||||
<li>At least 8 characters long</li>
|
||||
<li>Mix of letters, numbers recommended</li>
|
||||
</ul>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
<div class="form-group">
|
||||
<label for="confirmPassword">Confirm Password</label>
|
||||
<input
|
||||
type="password"
|
||||
id="confirmPassword"
|
||||
name="confirmPassword"
|
||||
required
|
||||
minlength="8"
|
||||
autocomplete="new-password"
|
||||
placeholder="Re-enter your password"
|
||||
>
|
||||
</div>
|
||||
|
||||
<button type="submit" class="button" id="submitBtn">
|
||||
Create Account
|
||||
</button>
|
||||
</form>
|
||||
</div>
|
||||
|
||||
<div id="invalidTokenContainer" class="hidden">
|
||||
<h1>⚠️ Invalid Invitation</h1>
|
||||
<p class="subtitle">This invitation link is invalid or has expired</p>
|
||||
<div class="info-box">
|
||||
This could mean:
|
||||
<ul style="margin: 10px 0 0 20px; color: #555;">
|
||||
<li>The invitation has already been used</li>
|
||||
<li>The invitation has expired (24 hours)</li>
|
||||
<li>The invitation link is incorrect</li>
|
||||
</ul>
|
||||
<div class="form-group">
|
||||
<label for="password">Password</label>
|
||||
<input
|
||||
type="password"
|
||||
id="password"
|
||||
name="password"
|
||||
required
|
||||
minlength="8"
|
||||
autocomplete="new-password"
|
||||
placeholder="Choose a strong password"
|
||||
/>
|
||||
<div class="password-requirements">
|
||||
<ul>
|
||||
<li>At least 8 characters long</li>
|
||||
<li>Mix of letters, numbers recommended</li>
|
||||
</ul>
|
||||
</div>
|
||||
<p style="text-align: center; color: #666; margin-top: 20px;">
|
||||
Please contact an administrator for a new invitation link.
|
||||
</p>
|
||||
</div>
|
||||
|
||||
<div class="form-group">
|
||||
<label for="confirmPassword">Confirm Password</label>
|
||||
<input
|
||||
type="password"
|
||||
id="confirmPassword"
|
||||
name="confirmPassword"
|
||||
required
|
||||
minlength="8"
|
||||
autocomplete="new-password"
|
||||
placeholder="Re-enter your password"
|
||||
/>
|
||||
</div>
|
||||
|
||||
<button type="submit" class="button" id="submitBtn">
|
||||
Create Account
|
||||
</button>
|
||||
</form>
|
||||
</div>
|
||||
|
||||
<div id="invalidTokenContainer" class="hidden">
|
||||
<h1>⚠️ Invalid Invitation</h1>
|
||||
<p class="subtitle">This invitation link is invalid or has expired</p>
|
||||
<div class="info-box">
|
||||
This could mean:
|
||||
<ul style="margin: 10px 0 0 20px; color: #555">
|
||||
<li>The invitation has already been used</li>
|
||||
<li>The invitation has expired (24 hours)</li>
|
||||
<li>The invitation link is incorrect</li>
|
||||
</ul>
|
||||
</div>
|
||||
<p style="text-align: center; color: #666; margin-top: 20px">
|
||||
Please contact an administrator for a new invitation link.
|
||||
</p>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
<script>
|
||||
let invitationToken = null;
|
||||
let invitationToken = null;
|
||||
|
||||
// Extract token from URL query parameters
|
||||
const urlParams = new URLSearchParams(window.location.search);
|
||||
invitationToken = urlParams.get('token');
|
||||
// Extract token from URL query parameters
|
||||
const urlParams = new URLSearchParams(window.location.search);
|
||||
invitationToken = urlParams.get("token");
|
||||
|
||||
// Validate token on page load
|
||||
window.addEventListener('DOMContentLoaded', async () => {
|
||||
if (!invitationToken) {
|
||||
showInvalidToken();
|
||||
return;
|
||||
}
|
||||
|
||||
try {
|
||||
// Verify the invitation token
|
||||
const response = await fetch(`/api/verify-invitation?token=${encodeURIComponent(invitationToken)}`);
|
||||
|
||||
if (response.ok) {
|
||||
showRegisterForm();
|
||||
} else {
|
||||
showInvalidToken();
|
||||
}
|
||||
} catch (error) {
|
||||
console.error('Error validating invitation:', error);
|
||||
showInvalidToken();
|
||||
}
|
||||
});
|
||||
|
||||
function showRegisterForm() {
|
||||
document.getElementById('loadingContainer').classList.add('hidden');
|
||||
document.getElementById('registerContainer').classList.remove('hidden');
|
||||
// Validate token on page load
|
||||
window.addEventListener("DOMContentLoaded", async () => {
|
||||
if (!invitationToken) {
|
||||
showInvalidToken();
|
||||
return;
|
||||
}
|
||||
|
||||
function showInvalidToken() {
|
||||
document.getElementById('loadingContainer').classList.add('hidden');
|
||||
document.getElementById('invalidTokenContainer').classList.remove('hidden');
|
||||
try {
|
||||
// Verify the invitation token
|
||||
const response = await fetch(
|
||||
`/api/verify-invitation?token=${encodeURIComponent(invitationToken)}`,
|
||||
);
|
||||
|
||||
if (response.ok) {
|
||||
showRegisterForm();
|
||||
} else {
|
||||
showInvalidToken();
|
||||
}
|
||||
} catch (error) {
|
||||
console.error("Error validating invitation:", error);
|
||||
showInvalidToken();
|
||||
}
|
||||
});
|
||||
|
||||
function showRegisterForm() {
|
||||
document.getElementById("loadingContainer").classList.add("hidden");
|
||||
document.getElementById("registerContainer").classList.remove("hidden");
|
||||
}
|
||||
|
||||
function showInvalidToken() {
|
||||
document.getElementById("loadingContainer").classList.add("hidden");
|
||||
document
|
||||
.getElementById("invalidTokenContainer")
|
||||
.classList.remove("hidden");
|
||||
}
|
||||
|
||||
async function handleRegister(event) {
|
||||
event.preventDefault();
|
||||
|
||||
const username = document.getElementById("username").value;
|
||||
const password = document.getElementById("password").value;
|
||||
const confirmPassword =
|
||||
document.getElementById("confirmPassword").value;
|
||||
const errorDiv = document.getElementById("error");
|
||||
const successDiv = document.getElementById("success");
|
||||
const submitBtn = document.getElementById("submitBtn");
|
||||
|
||||
// Clear previous messages
|
||||
errorDiv.classList.remove("show");
|
||||
successDiv.classList.remove("show");
|
||||
|
||||
// Validate passwords match
|
||||
if (password !== confirmPassword) {
|
||||
errorDiv.textContent = "Passwords do not match!";
|
||||
errorDiv.classList.add("show");
|
||||
return;
|
||||
}
|
||||
|
||||
async function handleRegister(event) {
|
||||
event.preventDefault();
|
||||
// Disable submit button
|
||||
submitBtn.disabled = true;
|
||||
submitBtn.textContent = "Creating Account...";
|
||||
|
||||
const username = document.getElementById('username').value;
|
||||
const password = document.getElementById('password').value;
|
||||
const confirmPassword = document.getElementById('confirmPassword').value;
|
||||
const errorDiv = document.getElementById('error');
|
||||
const successDiv = document.getElementById('success');
|
||||
const submitBtn = document.getElementById('submitBtn');
|
||||
try {
|
||||
const response = await fetch("/api/register", {
|
||||
method: "POST",
|
||||
headers: {
|
||||
"Content-Type": "application/json",
|
||||
},
|
||||
body: JSON.stringify({
|
||||
username: username,
|
||||
password: password,
|
||||
invitation_token: invitationToken,
|
||||
}),
|
||||
});
|
||||
|
||||
// Clear previous messages
|
||||
errorDiv.classList.remove('show');
|
||||
successDiv.classList.remove('show');
|
||||
const data = await response.json();
|
||||
|
||||
// Validate passwords match
|
||||
if (password !== confirmPassword) {
|
||||
errorDiv.textContent = 'Passwords do not match!';
|
||||
errorDiv.classList.add('show');
|
||||
return;
|
||||
}
|
||||
if (response.ok) {
|
||||
// Store the access token and username
|
||||
localStorage.setItem("access_token", data.access_token);
|
||||
localStorage.setItem("username", data.username);
|
||||
|
||||
// Disable submit button
|
||||
submitBtn.disabled = true;
|
||||
submitBtn.textContent = 'Creating Account...';
|
||||
// Show success message
|
||||
successDiv.textContent =
|
||||
"Account created successfully! Redirecting...";
|
||||
successDiv.classList.add("show");
|
||||
|
||||
try {
|
||||
const response = await fetch('/api/register', {
|
||||
method: 'POST',
|
||||
headers: {
|
||||
'Content-Type': 'application/json',
|
||||
},
|
||||
body: JSON.stringify({
|
||||
username: username,
|
||||
password: password,
|
||||
invitation_token: invitationToken,
|
||||
}),
|
||||
});
|
||||
|
||||
const data = await response.json();
|
||||
|
||||
if (response.ok) {
|
||||
// Store the access token and username
|
||||
localStorage.setItem('access_token', data.access_token);
|
||||
localStorage.setItem('username', data.username);
|
||||
|
||||
// Show success message
|
||||
successDiv.textContent = 'Account created successfully! Redirecting...';
|
||||
successDiv.classList.add('show');
|
||||
|
||||
// Redirect to home page after a brief delay
|
||||
setTimeout(() => {
|
||||
window.location.href = '/';
|
||||
}, 1500);
|
||||
} else {
|
||||
errorDiv.textContent = data.detail || 'Registration failed. Please try again.';
|
||||
errorDiv.classList.add('show');
|
||||
submitBtn.disabled = false;
|
||||
submitBtn.textContent = 'Create Account';
|
||||
}
|
||||
} catch (error) {
|
||||
console.error('Registration error:', error);
|
||||
errorDiv.textContent = 'An error occurred. Please try again.';
|
||||
errorDiv.classList.add('show');
|
||||
submitBtn.disabled = false;
|
||||
submitBtn.textContent = 'Create Account';
|
||||
}
|
||||
// Redirect to home page after a brief delay
|
||||
setTimeout(() => {
|
||||
window.location.href = "/";
|
||||
}, 1500);
|
||||
} else {
|
||||
errorDiv.textContent =
|
||||
data.detail || "Registration failed. Please try again.";
|
||||
errorDiv.classList.add("show");
|
||||
submitBtn.disabled = false;
|
||||
submitBtn.textContent = "Create Account";
|
||||
}
|
||||
} catch (error) {
|
||||
console.error("Registration error:", error);
|
||||
errorDiv.textContent = "An error occurred. Please try again.";
|
||||
errorDiv.classList.add("show");
|
||||
submitBtn.disabled = false;
|
||||
submitBtn.textContent = "Create Account";
|
||||
}
|
||||
}
|
||||
</script>
|
||||
</body>
|
||||
</body>
|
||||
</html>
|
||||
|
||||
Reference in New Issue
Block a user