upaas/internal
user 9ac1d25788 refactor: switch API from token auth to cookie-based session auth
- Remove API token system entirely (model, migration, middleware)
- Add migration 007 to drop api_tokens table
- Add POST /api/v1/login endpoint for JSON credential auth
- API routes now use session cookies (same as web UI)
- Remove /api/v1/tokens endpoint
- HandleAPIWhoAmI uses session auth instead of token context
- APISessionAuth middleware returns JSON 401 instead of redirect
- Update all API tests to use cookie-based authentication

Addresses review comment on PR #74.
2026-02-16 00:31:10 -08:00
..
config Add deployment improvements and UI enhancements 2025-12-30 15:05:26 +07:00
database refactor: switch API from token auth to cookie-based session auth 2026-02-16 00:31:10 -08:00
docker fix: resolve all golangci-lint issues 2026-02-15 21:55:24 -08:00
globals Initial commit with server startup infrastructure 2025-12-29 15:46:03 +07:00
handlers refactor: switch API from token auth to cookie-based session auth 2026-02-16 00:31:10 -08:00
healthcheck Initial commit with server startup infrastructure 2025-12-29 15:46:03 +07:00
logger Initial commit with server startup infrastructure 2025-12-29 15:46:03 +07:00
middleware refactor: switch API from token auth to cookie-based session auth 2026-02-16 00:31:10 -08:00
models refactor: switch API from token auth to cookie-based session auth 2026-02-16 00:31:10 -08:00
server refactor: switch API from token auth to cookie-based session auth 2026-02-16 00:31:10 -08:00
service feat: add user-facing deployment cancel endpoint 2026-02-16 00:15:24 -08:00
ssh Initial commit with server startup infrastructure 2025-12-29 15:46:03 +07:00