mirror of
https://github.com/navidrome/navidrome.git
synced 2026-10-08 02:17:25 +02:00
Adds the seven auth operations to the spec (createAccessToken, listGrants, revokeGrant and logout in core; login, setupFirstAdmin and changePassword in the password module), the bearerAuth/grantAuth schemes, and vacuum rules requiring explicit security and a known x-scope. The strict handlers sit on core/apiauth and are covered end to end against a real SQLite database. The first operations with parameters make the generated code import github.com/oapi-codegen/runtime. An oapi-codegen overlay renames the shared offset/limit parameter types, since a generated Offset clashes with Ginkgo's dot-imported Offset in this package's tests; the published spec is unchanged.
18 lines
494 B
YAML
18 lines
494 B
YAML
type: object
|
|
description: "Change the caller's own password."
|
|
required: [currentPassword, newPassword]
|
|
properties:
|
|
currentPassword:
|
|
type: string
|
|
minLength: 1
|
|
maxLength: 1024
|
|
description: The current password.
|
|
newPassword:
|
|
type: string
|
|
minLength: 1
|
|
maxLength: 1024
|
|
description: The new password.
|
|
revokeOtherGrants:
|
|
type: boolean
|
|
default: true
|
|
description: "Revoke every other grant of the user. The calling grant always survives. Default true."
|