mirror of
https://github.com/4ev-link/4ev.link.git
synced 2026-01-14 00:28:05 +00:00
Fix: Add ban check
This commit is contained in:
@@ -3,9 +3,14 @@ export async function onRequestPost({ request, env }) {
|
|||||||
const { username, pass_hash } = await request.json();
|
const { username, pass_hash } = await request.json();
|
||||||
if (!username || !pass_hash) return new Response("Missing fields", { status: 400 });
|
if (!username || !pass_hash) return new Response("Missing fields", { status: 400 });
|
||||||
|
|
||||||
const user = await env.D1_EV.prepare("SELECT pass_hash, custom_slugs FROM users WHERE username = ?").bind(username).first();
|
const user = await env.D1_EV.prepare("SELECT pass_hash, custom_slugs, banned_until FROM users WHERE username = ?").bind(username).first();
|
||||||
if (user?.pass_hash !== pass_hash) return new Response("Invalid credentials", { status: 401 });
|
if (user?.pass_hash !== pass_hash) return new Response("Invalid credentials", { status: 401 });
|
||||||
|
|
||||||
|
if (user.banned_until && user.banned_until > Date.now()) {
|
||||||
|
const days = Math.ceil((user.banned_until - Date.now()) / 86400000);
|
||||||
|
return new Response(`Account banned for ${days} more days.`, { status: 403 });
|
||||||
|
}
|
||||||
|
|
||||||
let slugs = [];
|
let slugs = [];
|
||||||
try {
|
try {
|
||||||
const parsed = JSON.parse(user.custom_slugs);
|
const parsed = JSON.parse(user.custom_slugs);
|
||||||
@@ -17,5 +22,3 @@ export async function onRequestPost({ request, env }) {
|
|||||||
return new Response(e.message, { status: 500 });
|
return new Response(e.message, { status: 500 });
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user