feat: email verification, merchant/store password reset, seed gap fix
Some checks failed
CI / ruff (push) Successful in 10s
CI / validate (push) Has been cancelled
CI / dependency-scanning (push) Has been cancelled
CI / docs (push) Has been cancelled
CI / deploy (push) Has been cancelled
CI / pytest (push) Has been cancelled

- Add EmailVerificationToken and UserPasswordResetToken models with migration
- Add email verification flow: verify-email page route, resend-verification API
- Block login for unverified users (EmailNotVerifiedException in auth_service)
- Add forgot-password/reset-password endpoints for merchant and store auth
- Add "Forgot Password?" links to merchant and store login pages
- Send welcome email with verification link on merchant creation
- Seed email_verification and merchant_password_reset email templates
- Fix db-reset Makefile to run all init-prod seed scripts
- Add UserAuthService to satisfy architecture validation rules
- Add 52 new tests (unit + integration) with full coverage

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
This commit is contained in:
2026-02-18 23:22:46 +01:00
parent a8b29750a5
commit d9fc52d47a
30 changed files with 2574 additions and 29 deletions

View File

@@ -80,6 +80,7 @@ def platform_admin_with_platform(db, auth_manager, test_platform, test_super_adm
hashed_password=hashed_password,
role="admin",
is_active=True,
is_email_verified=True,
is_super_admin=False,
)
db.add(admin)

View File

@@ -31,6 +31,7 @@ def test_user(db, auth_manager):
hashed_password=hashed_password,
role="user",
is_active=True,
is_email_verified=True,
)
db.add(user)
db.commit()
@@ -49,6 +50,7 @@ def test_admin(db, auth_manager):
hashed_password=hashed_password,
role="admin",
is_active=True,
is_email_verified=True,
is_super_admin=True, # Full platform access
)
db.add(admin)
@@ -68,6 +70,7 @@ def test_super_admin(db, auth_manager):
hashed_password=hashed_password,
role="admin",
is_active=True,
is_email_verified=True,
is_super_admin=True,
)
db.add(admin)
@@ -87,6 +90,7 @@ def test_platform_admin(db, auth_manager):
hashed_password=hashed_password,
role="admin",
is_active=True,
is_email_verified=True,
is_super_admin=False, # Platform admin, not super admin
)
db.add(admin)
@@ -130,6 +134,7 @@ def another_admin(db, auth_manager):
hashed_password=hashed_password,
role="admin",
is_active=True,
is_email_verified=True,
is_super_admin=True, # Full platform access
)
db.add(admin)
@@ -149,6 +154,7 @@ def other_user(db, auth_manager):
hashed_password=hashed_password,
role="user",
is_active=True,
is_email_verified=True,
)
db.add(user)
db.commit()
@@ -190,6 +196,7 @@ def test_store_user(db, auth_manager):
hashed_password=hashed_password,
role="store",
is_active=True,
is_email_verified=True,
)
db.add(user)
db.commit()