Matti Nannt
8bdfc0686f
chore: apply prettier formatting ( #6719 )
2025-10-20 14:28:14 +00:00
Victor Hugo dos Santos
aaea129d4f
fix: api key hashing algorithm ( #6639 )
...
Co-authored-by: Dhruwang <dhruwangjariwala18@gmail.com >
2025-10-13 14:36:37 +00:00
Johannes
18f4cd977d
feat: Add "None of the above" option for Multi-Select and Single-Select questions ( #6646 )
2025-10-10 07:50:45 -07:00
Victor Hugo dos Santos
76213af5d7
chore: update dependencies and improve logging format ( #6672 )
2025-10-09 09:02:07 +00:00
Victor Hugo dos Santos
b67177ba55
Merge commit from fork
...
* fix(auth): enhance password validation and rate limiting for login attempts
- Added password length validation to prevent CPU DoS attacks, limiting to 128 characters.
- Implemented constant-time password verification to mitigate timing attacks.
- Adjusted rate limit for login attempts from 30 to 10 per 15 minutes for improved security.
- Updated login form validation to reflect new password length constraints.
- Introduced constants for authentication endpoints in the API.
* fixed sample size for timing test
* password validation messages
---------
Co-authored-by: Your Name <you@example.com >
2025-10-02 11:09:28 +02:00
Victor Hugo dos Santos
eb1349f205
fix: enhance JWT handling with improved encryption and decryption logic ( #6596 )
2025-09-25 11:45:08 +00:00
Matti Nannt
839144d338
chore: remove unused fields and tables from prisma schema ( #6531 )
...
Co-authored-by: Dhruwang <dhruwangjariwala18@gmail.com >
2025-09-12 09:01:03 +00:00
Victor Hugo dos Santos
c259a61f0e
feat: unified cache ( #6520 )
2025-09-10 09:59:16 +00:00
Piyush Gupta
41d60c8a02
chore: custom avatar removal ( #6408 )
...
Co-authored-by: pandeymangg <anshuman.pandey9999@gmail.com >
2025-08-14 10:17:05 +00:00
Piyush Gupta
7400ce2e67
fix: secure cookies fix for callback URL ( #6358 )
2025-08-05 17:44:13 +00:00
Piyush Gupta
84294f9df2
feat: adds debug logs ( #6237 )
...
Co-authored-by: Matthias Nannt <mail@matthiasnannt.com >
2025-08-01 11:10:21 +00:00
Piyush Gupta
28514487e0
chore: sunset weekly summary ( #6282 )
2025-07-24 12:01:39 +00:00
Piyush Gupta
58213969e8
feat: remove brevo contact on account deletion ( #6231 )
...
Co-authored-by: Matthias Nannt <mail@matthiasnannt.com >
2025-07-16 16:00:34 +00:00
Victor Hugo dos Santos
ef973c8995
chore: merge rate limiter epic branch into main ( #6236 )
...
Co-authored-by: Harsh Bhat <90265455+harshsbhat@users.noreply.github.com >
Co-authored-by: Johannes <johannes@formbricks.com >
Co-authored-by: Piyush Gupta <56182734+gupta-piyush19@users.noreply.github.com >
Co-authored-by: Aditya <162564995+Naidu-4444@users.noreply.github.com >
Co-authored-by: Piyush Gupta <piyushguptaa2z123@gmail.com >
Co-authored-by: pandeymangg <anshuman.pandey9999@gmail.com >
Co-authored-by: Dhruwang Jariwala <67850763+Dhruwang@users.noreply.github.com >
Co-authored-by: Johannes <72809645+jobenjada@users.noreply.github.com >
Co-authored-by: Jakob Schott <154420406+jakobsitory@users.noreply.github.com >
Co-authored-by: Suraj <surajsuthar0067@gmail.com >
Co-authored-by: Kshitij Sharma <63995641+kshitij-codes@users.noreply.github.com >
Co-authored-by: Dhruwang <dhruwangjariwala18@gmail.com >
Co-authored-by: Matti Nannt <mail@matthiasnannt.com >
2025-07-16 12:28:59 +00:00
Kunal Garg
979fd71a11
feat: reset password in accounts page ( #5219 )
...
Co-authored-by: Piyush Gupta <piyushguptaa2z123@gmail.com >
Co-authored-by: Johannes <johannes@formbricks.com >
2025-07-01 15:41:14 +00:00
victorvhs017
a9946737df
feat: audit logs ( #5866 )
...
Co-authored-by: Dhruwang <dhruwangjariwala18@gmail.com >
Co-authored-by: Matthias Nannt <mail@matthiasnannt.com >
2025-06-05 19:31:39 +00:00
Matti Nannt
c0b8edfdf2
chore: Comprehensive Cache Optimization & Performance Enhancement ( #5926 )
...
Co-authored-by: Piyush Gupta <piyushguptaa2z123@gmail.com >
2025-06-04 20:33:17 +02:00
Piyush Gupta
87870919ca
fix: issues in the email change feature ( #5868 )
2025-05-24 12:04:58 +00:00
devin-ai-integration[bot]
0e7f3adf53
feat: Make session maxAge configurable with environment variable ( #5830 )
...
Co-authored-by: Devin AI <158243242+devin-ai-integration[bot]@users.noreply.github.com>
Co-authored-by: Matti Nannt <mail@matti.sh >
Co-authored-by: Matthias Nannt <mail@matthiasnannt.com >
Co-authored-by: Piyush Gupta <piyushguptaa2z123@gmail.com >
2025-05-21 05:49:18 +00:00
Matti Nannt
3f7dafb65c
fix: failing authOptions test because of missing mock ( #5727 )
2025-05-09 02:28:55 +02:00
Matti Nannt
f7ac38953b
fix: infinite redirect issue ( #5693 )
...
Co-authored-by: pandeymangg <anshuman.pandey9999@gmail.com >
2025-05-07 09:40:45 +02:00
Johannes
7538e570c5
chore: enforce cookie options for more security ( #5618 )
2025-05-05 12:09:35 +00:00
Dhruwang Jariwala
8bdb818995
fix: server side checks for file upload ( #5566 )
...
Co-authored-by: pandeymangg <anshuman.pandey9999@gmail.com >
2025-04-30 16:24:54 +00:00
victorvhs017
df06540f1b
chore: move package lib to web/lib ( #5425 )
2025-04-21 15:57:54 +02:00
Anshuman Pandey
01e5700340
fix: adds eslint rules for using test and refactors the current tests ( #5397 )
2025-04-17 03:32:03 +00:00
Piyush Gupta
c653841037
chore: block signin with SSO when user is not found ( #5233 )
...
Co-authored-by: pandeymangg <anshuman.pandey9999@gmail.com >
2025-04-06 04:22:53 +00:00
Dhruwang Jariwala
cbf2343143
feat: lastLoginAt to user model ( #5216 )
2025-04-05 13:22:38 +02:00
Dhruwang Jariwala
9d9b3ac543
chore: added isActive to user model ( #5211 )
...
Co-authored-by: Piyush Gupta <piyushguptaa2z123@gmail.com >
2025-04-05 12:22:45 +02:00
Piyush Gupta
2500c739ae
fix: next-auth inactive session timeout changed 30days -> 1hr ( #5066 )
2025-03-27 09:54:35 +00:00
victorvhs017
46f06f4c0e
feat: Added Webhooks in Management API V2 ( #4949 )
...
Co-authored-by: pandeymangg <anshuman.pandey9999@gmail.com >
2025-03-25 14:28:44 +00:00
Piyush Gupta
5527f184b7
feat: adds configurable logging ( #4914 )
...
Co-authored-by: Matthias Nannt <mail@matthiasnannt.com >
Co-authored-by: pandeymangg <anshuman.pandey9999@gmail.com >
2025-03-21 06:09:13 -07:00
Matti Nannt
458f135ee1
chore(cloud): move from customer-io to brevo ( #4681 )
...
Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com>
Co-authored-by: Dhruwang Jariwala <67850763+Dhruwang@users.noreply.github.com >
2025-01-29 09:18:16 +00:00
Dhruwang Jariwala
eac97db665
test: unit test for auth module ( #4612 )
...
Co-authored-by: Matti Nannt <mail@matthiasnannt.com >
2025-01-27 13:13:40 +00:00
Matti Nannt
5970ff917f
chore: add testing infra to apps/web ( #4563 )
...
Co-authored-by: Dhruwang <dhruwangjariwala18@gmail.com >
Co-authored-by: Dhruwang Jariwala <67850763+Dhruwang@users.noreply.github.com >
2025-01-09 13:00:16 +00:00
Dhruwang Jariwala
f80d1b32b7
chore: Auth module revamp ( #4335 )
...
Co-authored-by: pandeymangg <anshuman.pandey9999@gmail.com >
Co-authored-by: Matthias Nannt <mail@matthiasnannt.com >
2024-11-26 08:28:13 +00:00