30 Commits (374048f01329ad36cc42991c5ebcbeda35ce8308)

Author SHA1 Message Date
Tom Hacohen 3de1d48b9e Browsable API: use input fields for relations. 4 years ago
Tom Hacohen 43569727f4 Signup: send a signal on account signup. 4 years ago
Tom Hacohen 42a72ce5c7 Serializers user signup: correctly handle EtebaseValidationErrors.
Don't coerce them to strings
4 years ago
Tom Hacohen 7ab9513e05 Serializers: rename message to detail to conform with the rest of the API.
This was a mistake in the previous commit.
4 years ago
Tom Hacohen bf22b1676f Serializers: improve field serialization errors. 4 years ago
Tom Hacohen cf9b6f5904 Prefetch: change the type of value prefetch accept.
It's 'auto' by default, but can be changed to 'medium' and soon
another value.
4 years ago
Tom Hacohen 393b85d3ca Chunks: move to reside under the collection. 4 years ago
Tom Hacohen 11001ed62c Chunk serializer: fix bad error invocation. 4 years ago
Tom Hacohen c0575cb64c Exceptions: have correct code/status_code for every error. 4 years ago
Tom Hacohen 9c129e5731 Collection erializer: make the item a child instead of trying to merge them. 4 years ago
Tom Hacohen c9463cadba Add support for a custom user creation function. 4 years ago
Tom Hacohen 46b4f08afa Signup: use the get_user_queryset function when checking if user exists. 4 years ago
Tom Hacohen af86d877f2 Signup: use the shorthand version of setting an unusable password.
It wasn't actually saving the unusable password before.
4 years ago
Tom Hacohen a39617cf2e Make sure usernames are case insensitive on lookup 4 years ago
Tom Hacohen f9add36f18 Add support for custom user filtering. 4 years ago
Tom Hacohen 9ea01d4d93 CollectionMemberSerializer: change the user field to be read only. 4 years ago
Tom Hacohen 41a03e9d3b Invitation: fix the checks making sure you can't invite yourself. 4 years ago
Tom Hacohen 7ec45434ba User: make username case insensitive (and save original styling).
We want 'User' and 'UsEr' to mean the same user. Apparently that's not the default in
django. This normalizes the user to ensure we enforce this.
4 years ago
Tom Hacohen 9a518b3907 Chunks: add error handling for chunks having content or not existing.
If the chunk already has a content and we try to upload it again, we
assume the previous content was correct and this one is the same
(chunks are immutable). We can't actually ensure they are the same due
to the encryption, though they should be.

If a chunk is being uploaded for the first time and doesn't have a
content, throw a validation error rather than throwing an ugly error.
4 years ago
Tom Hacohen f147f4ae58 Serializers: allow encryptionKey to be null. 4 years ago
Tom Hacohen 3dfceb63b1 Views: move the base64 encoding to the renderers.
Hard-coding the serialization encoding in the serializers is wrong.
This fix now enables us to change to easily change to msgpack as the
transport layer.
4 years ago
Tom Hacohen fbf5552a62 Modify binary64 field to support binary renderers/parsers
Fixes 39c1dfc53c30e65bcbff9e0ba0bb07bfc8bfc577
4 years ago
Tom Hacohen 453275eadf Authentication: move to msgpack for the encrypted parts. 4 years ago
Tom Hacohen c00cf50163 Revision: remove salt field.
It's not really needed. More information in the respective change
in the js client.
4 years ago
Tom Hacohen 625df22989 Make item encryption key optional for collections/items
Collections still have a unique encryption key (their collection key), and items
just have a unique key per item in a collection that's derived from the main key
and if we ever want to share items across collections or do something fancy like
that we can just add an encrypted key in there.
4 years ago
Tom Hacohen cbb1d81850 Rename inline to prefetch and have it on by default. 4 years ago
Tom Hacohen 267d749c45 Collection: change collections to be an extension of items
Each collection now has an item and the item's UID is the collections
UID. This lets us manipulate collections just like items, and as part of
transactions. This is significant because it lets us change them as part
of transactions!
4 years ago
Tom Hacohen ab0d85c84f Change password: change to require a signed request, just like login.
Without this, it would be sufficient to steal an auth token to render the account
unusable because it would be possible to just reset the encrypted content
of the account. With this change we require the user to actually know
the account password in order to do it.
4 years ago
Tom Hacohen 54268ac027 Login: add an action indicator to know the user signed a login request. 4 years ago
Tom Hacohen d1017aac76 Rename django_etesync to django_etebase. 4 years ago