dak.c2s/backend/app/models
CCS Admin d5db84d93f feat: add self-service password reset via email
Adds "Passwort vergessen?" to login page with email-based password
reset flow. Backend generates secure token (SHA-256 hashed, 1h expiry),
sends reset link via SMTP, and validates on submission. Includes rate
limiting (3 requests/hour/email), audit logging, and account unlock
on successful reset. New ResetPasswordPage with password confirmation.

New DB table: password_reset_tokens (migration 008).

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-02-28 14:56:07 +00:00
..
__init__.py feat: add DisclosureRequest model and migration 2026-02-26 16:02:52 +00:00
audit.py feat: add DisclosureRequest model and migration 2026-02-26 16:02:52 +00:00
case.py feat: SQLAlchemy models for users, cases, reports, audit 2026-02-24 07:28:33 +00:00
report.py feat: add Onko-Intensiv and Galle-Schild report types 2026-02-27 12:47:59 +00:00
user.py feat: add self-service password reset via email 2026-02-28 14:56:07 +00:00