Sha256: c6b238a8eff210d26ef47ce7cdc5d2427c6384496e48302866ddff8aa13031a1

Contents?: true

Size: 1.21 KB

Versions: 1

Compression:

Stored size: 1.21 KB

Contents

class PasswordResetsController < ApplicationController
  skip_before_action :authenticate

  before_action :set_<%= singular_table_name %>, only: %i[ edit update ]

  def edit
    render json: { error: "Open this link in your device" }, status: :not_found
  end

  def create
    if @<%= singular_table_name %> = <%= class_name %>.find_by_email(params[:email])
      PasswordMailer.with(<%= singular_table_name %>: @<%= singular_table_name %>).reset.deliver_later
    else
      render json: { error: "The email address doesn't exist in our database" }, status: :bad_request
    end
  end

  def update
    if @<%= singular_table_name %>.update(password_params)
      render json: @<%= singular_table_name %>
    else
      render json: @<%= singular_table_name %>.errors, status: :unprocessable_entity
    end
  end

  private
    def set_<%= singular_table_name %>
      @<%= singular_table_name %> = <%= class_name %>.find_signed!(params[:sid], purpose: "password_reset")
    rescue ActiveSupport::MessageVerifier::InvalidSignature
      render json: { error: "Your token has expired, please request a new one" }, status: :bad_request
    end

    def password_params
      params.permit(:password, :password_confirmation)
    end
end

Version data entries

1 entries across 1 versions & 1 rubygems

Version Path
authentication-zero-0.0.12 lib/generators/authentication/templates/controllers/api/password_resets_controller.rb.tt