Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
54 changes: 54 additions & 0 deletions backend/controllers/authController.js
Original file line number Diff line number Diff line change
@@ -1,6 +1,9 @@
const User = require('../models/User');
const jwt = require('jsonwebtoken');
const bcrypt = require('bcryptjs');
const crypto=require('crypto');
const {sendEmail}=require('../utils');


// Function to generate JWT
const generateToken = (id) => {
Expand Down Expand Up @@ -113,9 +116,60 @@ const completeSetup = async (req, res) => {
}
};

const forgotPassword=async (req,res)=>{
const {email}=req.body;
try {
const user=await User.findOne({email})
if(!user){
return res.status(404).json({message:'User not found'});
}
const resetToken=crypto.randomBytes(32).toString('hex');
const hashedToken=crypto.createHash('sha256').update(resetToken).digest('hex');
user.resetPasswordToken=hashedToken;
user.resetPasswordExpires=Date.now()+15*60*1000;
await user.save();
const resetUrl=`${process.env.FRONTEND_URL}/reset-password?token=${resetToken}`;
await sendEmail({
to:user.email,
subject:'Password Reset Request',
text:`You requested a password reset. Please click the link to reset your password: ${resetUrl}`
})
res.status(200).json({message:'Password reset email sent'});
} catch (error) {
res.status(500).json({message:'Server Error',error:error.message});
}
}

const resetPassword=async (req,res)=>{
const {token,newPassword}=req.body;

try{
const hashedToken=crypto.createHash('sha256').update(token).digest('hex');
const user = await User.findOne({
resetPasswordToken:hashedToken,
resetPasswordExpires:{$gt:Date.now()}
});

if(!user){
return res.status(400).json({message:'Invalid or expired token'});
}

user.password=newPassword;
user.resetPasswordToken=null;
user.resetPasswordExpires=null;
await user.save();
res.status(200).json({message:'Password reset successful'});
}
catch(error){
res.status(500).json({message:'Server Error',error:error.message});
}
}

module.exports = {
signup,
login,
getMe,
completeSetup,
forgotPassword,
resetPassword
};
11 changes: 10 additions & 1 deletion backend/models/User.js
Original file line number Diff line number Diff line change
Expand Up @@ -20,7 +20,16 @@ const userSchema = new mongoose.Schema({
type: Boolean,
default: false,
},
}, {
resetPasswordToken:{
type:String,
default:null
},
resetPasswordExpires:{
type:Date,
default:null
}
}
, {
timestamps: true,
});

Expand Down
Loading