dak.c2s/backend/app/api
CCS Admin d5db84d93f feat: add self-service password reset via email
Adds "Passwort vergessen?" to login page with email-based password
reset flow. Backend generates secure token (SHA-256 hashed, 1h expiry),
sends reset link via SMTP, and validates on submission. Includes rate
limiting (3 requests/hour/email), audit logging, and account unlock
on successful reset. New ResetPasswordPage with password confirmation.

New DB table: password_reset_tokens (migration 008).

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-02-28 14:56:07 +00:00
..
__init__.py feat: project scaffolding with FastAPI, config, database connection 2026-02-24 07:24:00 +00:00
admin.py feat: add reactivate and delete buttons for admin disclosure view 2026-02-27 08:25:46 +00:00
auth.py feat: add self-service password reset via email 2026-02-28 14:56:07 +00:00
cases.py feat: add Excel export for filtered case list 2026-02-28 14:43:00 +00:00
coding.py feat: add year filter to Coding queue 2026-02-27 17:37:04 +00:00
import_router.py feat: add audit logging for login, logout, imports, and report generation 2026-02-24 10:36:25 +00:00
notifications.py feat: admin API, audit logging, notifications, create_admin script 2026-02-24 07:48:41 +00:00
reports.py fix: use same KW range for year-over-year KPI comparison 2026-02-28 13:23:03 +00:00