Skip to content

Improve otp token verification#2

Open
grimsteel wants to merge 2 commits intoLimesKey:mainfrom
grimsteel:signed-mac-otp-token
Open

Improve otp token verification#2
grimsteel wants to merge 2 commits intoLimesKey:mainfrom
grimsteel:signed-mac-otp-token

Conversation

@grimsteel
Copy link

@grimsteel grimsteel commented Apr 16, 2025

Uses a cryptographically secure method to sign and verify the OTP token.

This is untested as I don't have an Airtable API key

Requires a new environment variable (VERIFICATION_SIGNING_SECRET) which should be a valid HMAC secret

I also enabled default values for serde deserialization for some Airtable fields to prevent runtime errors if they are not present

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant