* Users are only authenticated against their password on login, and to retrieve a token. * Passwords are wiped from the app and cookies after login and token retrieval * Tokens are revoked at the end of the session/logout * If the user chooses the "remember me" option, the token is stored in the cookie * A user interface to revoke tokens will be added * Tokens correctly delete themselves on logout * API documentation updated for the new user-token endpoints * Added a Manage tokens tab to the user panel * Added bullet point about the token authentication for the API * Added tests for new endpoints and tests against authentication middleware
61 lines
1.3 KiB
Stylus
61 lines
1.3 KiB
Stylus
#user
|
|
width: 100%
|
|
max-width: 45em
|
|
nav.text-nav
|
|
margin-bottom: 1.5em
|
|
|
|
#user-summary
|
|
.thumbnail
|
|
width: 6em
|
|
height: 6em
|
|
margin: 0 1.5em 1.5em 0
|
|
float: left
|
|
.basic-info
|
|
list-style-type: none
|
|
margin: 0
|
|
div
|
|
clear: both
|
|
nav
|
|
float: left
|
|
width: 45%
|
|
margin-right: 1em
|
|
|
|
#user-edit
|
|
form
|
|
width: 100%
|
|
.avatar
|
|
#avatar-content
|
|
float: right
|
|
width: 65%
|
|
margin-top: .5em
|
|
#avatar-radio
|
|
float: left
|
|
width: 30%
|
|
&:after
|
|
content: ' '
|
|
display: block
|
|
height: 1px
|
|
clear: both
|
|
|
|
#user-tokens
|
|
.token-flex-container
|
|
width: 100%
|
|
display: flex;
|
|
flex-direction column;
|
|
padding-bottom: 0.5em;
|
|
|
|
.token-flex-row
|
|
display: flex;
|
|
flex-direction: row;
|
|
justify-content: space-between;
|
|
padding-top: 0.25em;
|
|
padding-bottom: 0.25em;
|
|
border-bottom: black solid 1px;
|
|
|
|
form
|
|
width: auto;
|
|
|
|
#user-delete form
|
|
width: 100%
|
|
|
|
|