backend unit tests
This commit is contained in:
@@ -1,21 +0,0 @@
|
||||
const verifyBetaPassword = (req, res, next) => {
|
||||
const betaPassword = req.headers['x-beta-password'];
|
||||
const configuredPassword = process.env.BETA_PASSWORD;
|
||||
|
||||
if (!configuredPassword) {
|
||||
console.error('BETA_PASSWORD environment variable is not set');
|
||||
return res.status(500).json({ error: 'Beta password not configured on server' });
|
||||
}
|
||||
|
||||
if (!betaPassword) {
|
||||
return res.status(401).json({ error: 'Beta password required' });
|
||||
}
|
||||
|
||||
if (betaPassword !== configuredPassword) {
|
||||
return res.status(403).json({ error: 'Invalid beta password' });
|
||||
}
|
||||
|
||||
next();
|
||||
};
|
||||
|
||||
module.exports = { verifyBetaPassword };
|
||||
@@ -19,7 +19,7 @@ const csrfProtection = (req, res, next) => {
|
||||
req.headers["x-csrf-token"] || req.body.csrfToken || req.query.csrfToken;
|
||||
|
||||
// Get token from cookie
|
||||
const cookieToken = req.cookies["csrf-token"];
|
||||
const cookieToken = req.cookies && req.cookies["csrf-token"];
|
||||
|
||||
// Verify both tokens exist and match
|
||||
if (!token || !cookieToken || token !== cookieToken) {
|
||||
|
||||
Reference in New Issue
Block a user