Abdullah Atta
bf70a32b95
identity: temporarily disable password recovery & changing
2026-01-19 09:12:39 +05:00
Abdullah Atta
5ca9c142e3
monograph: {id}/stats -> {id}/analytics
2025-11-08 12:42:10 +05:00
Abdullah Atta
5445c51d8d
identity: fix error on sessions clear
2025-10-30 13:12:05 +05:00
Abdullah Atta
6e35edb715
global: add null safety checks
2025-10-14 21:15:51 +05:00
Abdullah Atta
be432dfd24
global: migrate to using ILogger
2025-10-14 09:29:07 +05:00
Abdullah Atta
d1421d640f
identity: fix user subscription claim value incorrect for legacy pro users
2025-10-13 11:27:07 +05:00
Abdullah Atta
500a64de18
identity: use subscription v2 types & api
2025-10-07 16:44:15 +05:00
Abdullah Atta
201a235357
identity: make otp rate limiting more strict
2025-08-25 10:46:31 +05:00
Abdullah Atta
34fa43f302
global: add some basic rate limiting
2025-07-15 13:34:31 +05:00
Abdullah Atta
11dff4f0cc
identity: move email sender to common
2025-04-10 12:19:49 +05:00
Abdullah Atta
e5bf3367cc
global: add support for -DSTAGING
2024-11-28 14:38:28 +05:00
Abdullah Atta
8d15e176ff
docker: DISABLE_ACCOUNT_CREATION -> DISABLE_SIGNUPS
2024-10-25 12:40:53 +05:00
Abdullah Atta
1b97ba77da
identity: use new server PublicURL
2024-10-12 11:56:57 +05:00
Abdullah Atta
cbd0c01d28
identity: add support for disabling new signups
2024-08-01 10:32:51 +05:00
Abdullah Atta
ad590f6011
identity: auto enable 2fa by email on self hosted instance
2024-08-01 10:05:46 +05:00
Abdullah Atta
2f5bd75d4e
identity: confirm email automatically on self hosted instances
2024-08-01 09:56:06 +05:00
Abdullah Atta
99da765a1c
api: use wamp services instead of forwarding http requests for internal apis
2024-06-07 15:35:31 +05:00
Abdullah Atta
abe7e67933
identity: include scope when validating account recovery token
2024-05-16 13:15:04 +05:00
Abdullah Atta
cece6ad4e2
identity: catch and log errors during signup
2024-03-05 10:08:14 +05:00
Abdullah Atta
1f72e2c3a8
identity: fix session revokation
2023-10-28 11:08:17 +05:00
Abdullah Atta
d91df60c57
identity: reset user 2fa on password reset
2023-09-09 20:31:02 +05:00
Abdullah Atta
87fd5b8196
identity: delete user completely on unregister
2023-06-28 17:16:29 +05:00
Abdullah Atta
5e95cd5ec9
identity: do not enable mfa on sign up
2023-06-28 17:13:01 +05:00
Abdullah Atta
eb45e8c3ce
identity: enable mfa after user confirms email
2023-06-28 17:12:49 +05:00
Abdullah Atta
0ad00c9747
identity: make 2fa truly mandatory
2023-06-08 12:55:27 +05:00
Abdullah Atta
26703bfd8e
identity: add support for toggling marketing consent
2023-06-08 12:54:57 +05:00
Abdullah Atta
5ca66f5819
identity: save which platform a user signed up from
...
this is normalized to web, android or iOS.
Specific device information is not saved.
2023-05-22 18:23:22 +05:00
Abdullah Atta
20eec79cef
identity: prevent users with disposable emails from signing up
...
while this is not a perfect way to prevent abuse of service, we do want
to avoid getting spammed with fake accounts. Creating a valid email
account is significantly more cumbersome than using a disposable email
address.
Currently the list of blacklisted domains is extracted from
https://github.com/disposable/disposable
and it is refreshed after every 24 hours.
2023-03-02 17:43:10 +05:00
Abdullah Atta
f38e61d58f
global: update copyright year to 2023
2023-01-16 13:33:47 +05:00
Abdullah Atta
fc17e7a2fb
identity: add support for account email changing
2023-01-16 13:25:38 +05:00
Abdullah Atta
c0fab8a735
global: make ready for self hosting
...
This exposes a few more env vars for configuration &
bypasses the Subscription backend
so each user is Pro by default. This is required because there won't be
any mechanism for the user to upgrade. We'll also have to disable a few
things on the client side to avoid confusion.
2022-12-30 11:23:02 +05:00
Abdullah Atta
4e9f82fe48
open source identity server
2022-12-28 17:24:47 +05:00