Finance-Accounts/ar-aging-app/frontend
Talha Ahmed 2aed450f4c Password updates via emailed 6-digit code
New flow (active once AR_SMTP_* is configured; hidden otherwise):
- POST /api/auth/request-code emails a code to the account address
  (usernames are emails). HMAC-stored, 10-min expiry, single-use,
  5-attempt lockout, 60s resend throttle, no user enumeration.
- POST /api/auth/reset-password sets the new password with the code —
  works signed-in (Settings) and from the login screen (Forgot
  password?), so users can self-recover without the admin.
- Mailer: stdlib smtplib (STARTTLS/SSL, certifi CA bundle); SMTP
  settings documented in .env templates.
- Settings switches to the code flow when email is on; the
  current-password form remains the fallback.

Note: CRAI_Report was checked as the reference for code-sending — it
has no email/OTP functionality, so this is a fresh implementation.

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
2026-08-19 19:35:07 +05:00
..
src Password updates via emailed 6-digit code 2026-08-19 19:35:07 +05:00
.dockerignore Production readiness: month separation, auth, FX service, AWS deployment 2026-08-19 18:46:47 +05:00
Dockerfile Production readiness: month separation, auth, FX service, AWS deployment 2026-08-19 18:46:47 +05:00
index.html Initial commit: AR aging app with root gitignore. 2026-07-29 18:07:21 +05:00
nginx.conf Production readiness: month separation, auth, FX service, AWS deployment 2026-08-19 18:46:47 +05:00
package-lock.json Initial commit: AR aging app with root gitignore. 2026-07-29 18:07:21 +05:00
package.json Initial commit: AR aging app with root gitignore. 2026-07-29 18:07:21 +05:00
postcss.config.js Initial commit: AR aging app with root gitignore. 2026-07-29 18:07:21 +05:00
tailwind.config.js Initial commit: AR aging app with root gitignore. 2026-07-29 18:07:21 +05:00
tsconfig.json Initial commit: AR aging app with root gitignore. 2026-07-29 18:07:21 +05:00
vite.config.ts Implement MySQL support in AR aging app. Update README with configuration instructions, modify requirements for PyMySQL and dotenv, and refactor database setup to use MySQL. Adjust models and queries for compatibility with MySQL, including column size specifications. Enhance Vite config for API proxying. 2026-07-29 18:52:37 +05:00