[IDENTITY] PIN-Based Auth and Deterministic Identity Mapping#77
Merged
anonfedora merged 2 commits intoFracverse:masterfrom Feb 26, 2026
Merged
Conversation
- Implement IdentityService.createUser with bcrypt PIN hashing (10 salt rounds) - Implement IdentityService.resolveUserId to fetch Stellar addresses by user ID - Setup AuthService with JWT (Access & Refresh tokens) - Create AuthMiddleware to protect routes and populate req.user - Add POST /auth/register and POST /user/register endpoints PINs are never stored in plain text. JWT tokens contain userId and role.
Collaborator
|
Check CI, and resolve merge conflicts, pleasee @floxxih |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Implements PIN-based authentication and deterministic identity mapping for the Zaps backend.
Changes
req.userwith authenticated user dataPOST /auth/register- Register a new userPOST /user/register- User-facing registration endpointPOST /auth/login- Login with user_id and PINPOST /auth/refresh- Refresh tokensAcceptance Criteria Met
userIdandroleCloses #60