gitoriaLog in with ident

gitoria

All repositories: gitoria

ReadmeCodePull requestsReleasesTicketsSettings
Commit3dc431083dc43108antcolony#40: mission references point to the moved missionsmre3dc43108/components/tokens.hl

4.0 KB

  1. // components/tokens.hl — ACCESS TOKENS (gitoria#7): what a developer's git uses as the PASSWORD to push over HTTPS
  2. // (transport.hl). On the main address, for a logged-in user: make a named token — its secret is shown ONCE, right
  3. // after it is made (only its hash is stored) — list the own tokens, remove one. Composed into list.hl (`#tokens`).
  4. import { infoOfSession, userOfSession } from '../users.hl'
  5. import { tokenRows, createToken, revokeToken } from '../tokens.hl'
  6. session = null
  7. me = infoOfSession(session)
  8. shown = me != null
  9. myUser = userOfSession(session)
  10. tokens = myUser != null ? tokenRows(myUser.id) : []
  11. showHead = shown
  12. showForm = shown
  13. showSecret = false
  14. showNone = shown && tokens.length == 0
  15. tokenError = ''
  16. newSecret = ''
  17. hasSecret = false
  18. tokenName = ''
  19. View {
  20. accessTokens { id = "tokens"
  21. if (showHead) { h2 { "Access tokens" } }
  22. if (showHead) { p { class = "muted" "To push with git over HTTPS, use a token as the password (any user name). Reading a repository needs no token." } }
  23. if (showForm) {
  24. form { id = "tokenform"
  25. on submit(e) {
  26. e.preventDefault()
  27. emit makeToken(e)
  28. }
  29. label { "Name (for example the computer it is for)"
  30. input { id = "tokenname" name = "tokenname" required = "required" maxlength = "60" autocomplete = "off" value = tokenName on input(e) { emit setTokenName(e.target.value) } }
  31. }
  32. button { id = "tokensave" type = "submit" "Make token" }
  33. p { id = "tokenerror" class = "message" tokenError }
  34. }
  35. }
  36. if (showSecret) { p { id = "tokennotice" class = "notice" "Copy your token now — it is not shown again:" } }
  37. if (showSecret) { pre { id = "tokensecret" newSecret } }
  38. if (showNone) { p { id = "notokens" class = "muted" "You have no tokens yet." } }
  39. ol { id = "tokenlist"
  40. for (t of tokens) {
  41. li {
  42. span { class = "slug" t.name }
  43. time { t.created }
  44. button { class = "quiet removetoken" type = "button" value = t.id "Remove" on click(e) { emit removeToken(e.target.value) } }
  45. }
  46. }
  47. }
  48. }
  49. }
  50. // one `if` per element, none inside another (a nested `if` broke the client's repaint on logout)
  51. on setTokenName(v) { tokenName = v }
  52. on makeToken(e) {
  53. let r = emit server gitoriaMakeToken(tokenName)
  54. if (r == null || r.error != null) {
  55. tokenError = r != null ? r.error : 'could not make the token'
  56. return null
  57. }
  58. tokenError = ''
  59. tokenName = ''
  60. newSecret = r.token
  61. hasSecret = true
  62. // the face's answer can bring `tokens` fresh from the server already (hl:web ships a member derived from
  63. // `session` in the ack's sync, hybriel 64527baa) — so the new row is put on top ONCE, never twice
  64. let next = [r.row]
  65. for (x of tokens) { if (x.id != r.row.id) { next.push(x) } }
  66. tokens = next
  67. showHead = shown
  68. showForm = shown
  69. showSecret = shown && hasSecret
  70. showNone = shown && tokens.length == 0
  71. }
  72. on removeToken(id) {
  73. let r = emit server gitoriaRemoveToken(id)
  74. if (r == null || r.error != null) {
  75. tokenError = r != null ? r.error : 'could not remove the token'
  76. return null
  77. }
  78. tokenError = ''
  79. let next = []
  80. for (x of tokens) { if (x.id != id) { next.push(x) } }
  81. tokens = next
  82. showHead = shown
  83. showForm = shown
  84. showSecret = shown && hasSecret
  85. showNone = shown && tokens.length == 0
  86. }
  87. // a login / logout (the shell's faces push them) shows or hides the section
  88. on client gitoriaSignedIn(tag, info) {
  89. shown = true
  90. hasSecret = false
  91. showHead = shown
  92. showForm = shown
  93. showSecret = shown && hasSecret
  94. showNone = shown && tokens.length == 0
  95. }
  96. on client gitoriaSignedOut(tag) {
  97. shown = false
  98. hasSecret = false
  99. newSecret = ''
  100. tokens = []
  101. showHead = shown
  102. showForm = shown
  103. showSecret = shown && hasSecret
  104. showNone = shown && tokens.length == 0
  105. }
  106. on server gitoriaMakeToken(name, session) {
  107. let u = userOfSession(session)
  108. if (u == null) { return { error = 'log in with ident (top right) first' } }
  109. return createToken(u.id, name)
  110. }
  111. on server gitoriaRemoveToken(id, session) {
  112. let u = userOfSession(session)
  113. if (u == null) { return { error = 'log in with ident (top right) first' } }
  114. return revokeToken(u.id, id)
  115. }

Branches

Latest commits

  • 3dc43108antcolony#40: mission references point to the moved missionsmre
  • 8d9450fdantcolony#40: history (LOG.md), worker briefs (missions/) and reports moved here from antcolony, numbered per project; old numbers in antcolony docs/mission-map.mdmre
  • 205d5fe4gitoria: Hybriel master ff51cf46; ssh keys/tokens no double rows (session sync); gates follow #20mre
  • 9b27cb26gitoria#21: installable app (manifest, service worker, offline start page), own iconmre
  • 68dcb603deploy.sh: back up live storage/.sessions/.env before every deploy (newest 5 kept)mre
  • e2deed6dgitoria#20: "Add code" only on the Code page of an empty repository, no collapsiblemre
  • 8bb97ffddeploy.sh: never send .git or .gitignore to Byrodinmre
  • fd981932State of 2026-09-27; bin/ no longer tracked (Hybriel commit is in README)mre
  • 4a2d7125initial commitmre