mirror of
https://github.com/Memo-2023/mana-monorepo.git
synced 2026-05-18 16:09:44 +02:00
Rewrite the central authentication service from NestJS to Hono + Bun.
Uses Better Auth's native fetch-based handler — no Express conversion.
Key architecture changes:
- Better Auth handler mounted directly on Hono (app.all('/api/auth/*'))
- No NestJS DI, modules, guards, decorators — plain TypeScript
- JWT validation via jose (same as extracted services)
- Email via nodemailer (simplified, German templates)
- ~1,400 LOC vs ~11,500 LOC in NestJS (88% reduction)
Service structure:
- auth/better-auth.config.ts — copied from mana-core-auth (framework-agnostic)
- auth/stores.ts — in-memory stores for email redirect URLs
- email/send.ts — nodemailer email functions
- middleware/ — JWT auth, service auth, error handler (shared pattern)
- db/schema/ — copied from mana-core-auth (Drizzle, framework-agnostic)
Port: 3001 (same as mana-core-auth — drop-in replacement)
Database: mana_auth (same DB, same schemas)
Better Auth plugins: Organization, JWT (EdDSA), OIDC Provider,
Two-Factor (TOTP), Magic Link
Note: This is the initial version. Guilds, API keys, Me (GDPR),
security (lockout/audit), and admin endpoints will be added
incrementally. The old mana-core-auth remains until fully replaced.
Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
34 lines
874 B
TypeScript
34 lines
874 B
TypeScript
/**
|
|
* In-memory stores for cross-request state.
|
|
* Used to pass redirect URLs from registration/reset requests to email handlers.
|
|
*/
|
|
|
|
const TTL = 10 * 60 * 1000; // 10 minutes
|
|
|
|
function createStore() {
|
|
const map = new Map<string, { value: string; expires: number }>();
|
|
|
|
return {
|
|
set(key: string, value: string) {
|
|
map.set(key, { value, expires: Date.now() + TTL });
|
|
},
|
|
get(key: string): string | undefined {
|
|
const entry = map.get(key);
|
|
if (!entry) return undefined;
|
|
if (Date.now() > entry.expires) {
|
|
map.delete(key);
|
|
return undefined;
|
|
}
|
|
return entry.value;
|
|
},
|
|
delete(key: string) {
|
|
map.delete(key);
|
|
},
|
|
};
|
|
}
|
|
|
|
/** Stores source app URL for email verification redirects */
|
|
export const sourceAppStore = createStore();
|
|
|
|
/** Stores redirect URL for password reset callbacks */
|
|
export const passwordResetRedirectStore = createStore();
|