- Delete unused Livewire Search test and fuel type select Blade component - Move subscription webhook listener from EventServiceProvider to AppServiceProvider - Add FUEL_TYPES global config to app layout for client-side use - Add Billable trait to User model and include email_verified_at in fillable - Implement monthly/annual cadence toggle with pricing display and smart CTA routing on homepage - Update VerifyApiKeyMiddlewareTest to use e10 instead of petrol - Refactor PollFuelPrices to auto-refresh stale stations based on last_seen_at - Add incremental polling with cached timestamp and effective-start-timestamp param to FuelPriceService - Normalize amenities/fuel_types from API objects to flat arrays, skip stations missing required fields - Log response body on API failures in ApiLogger - Default homepage sort to 'reliable' instead of 'price'
73 lines
2.1 KiB
PHP
73 lines
2.1 KiB
PHP
<?php
|
|
|
|
namespace App\Http\Controllers\Api;
|
|
|
|
use App\Http\Controllers\Controller;
|
|
use App\Models\Plan;
|
|
use App\Models\User;
|
|
use Illuminate\Http\JsonResponse;
|
|
use Illuminate\Http\Request;
|
|
use Illuminate\Support\Facades\Auth;
|
|
use Illuminate\Validation\Rules\Password;
|
|
use Laravel\Sanctum\TransientToken;
|
|
|
|
class AuthController extends Controller
|
|
{
|
|
public function register(Request $request): JsonResponse
|
|
{
|
|
$data = $request->validate([
|
|
'name' => ['required', 'string', 'max:255'],
|
|
'email' => ['required', 'email', 'max:255', 'unique:users,email'],
|
|
'password' => ['required', 'confirmed', Password::defaults()],
|
|
]);
|
|
|
|
$user = User::create($data);
|
|
$token = $user->createToken('api')->plainTextToken;
|
|
|
|
return response()->json(['token' => $token, 'user' => $user], 201);
|
|
}
|
|
|
|
public function login(Request $request): JsonResponse
|
|
{
|
|
$credentials = $request->validate([
|
|
'email' => ['required', 'email'],
|
|
'password' => ['required', 'string'],
|
|
]);
|
|
|
|
if (! Auth::attempt($credentials)) {
|
|
return response()->json(['message' => 'Invalid credentials.'], 401);
|
|
}
|
|
|
|
/** @var User $user */
|
|
$user = Auth::user();
|
|
$token = $user->createToken('api')->plainTextToken;
|
|
|
|
return response()->json(['token' => $token, 'user' => $user]);
|
|
}
|
|
|
|
public function logout(Request $request): JsonResponse
|
|
{
|
|
$token = $request->user()->currentAccessToken();
|
|
|
|
// TransientToken means session-based auth (no Bearer token) — invalidate session instead
|
|
if ($token instanceof TransientToken) {
|
|
$request->session()->invalidate();
|
|
$request->session()->regenerateToken();
|
|
} else {
|
|
$token->delete();
|
|
}
|
|
|
|
return response()->json(['message' => 'Logged out.']);
|
|
}
|
|
|
|
public function me(Request $request): JsonResponse
|
|
{
|
|
$user = $request->user();
|
|
|
|
return response()->json(array_merge(
|
|
$user->toArray(),
|
|
['tier' => Plan::resolveForUser($user)->name],
|
|
));
|
|
}
|
|
}
|