Spaces:
Runtime error
Runtime error
Download server/src/middleware/requireAuth.ts from Nryn215/FreeLLMAPI: direct link, hf CLI and curl.
- Browser
- Download file 889 Bytes
-
https://huggingface.co/spaces/Nryn215/FreeLLMAPI/resolve/main/server/src/middleware/requireAuth.ts
- Command line
-
hf download hf://spaces/Nryn215/FreeLLMAPI/server/src/middleware/requireAuth.ts
-
curl -L -o requireAuth.ts https://huggingface.co/spaces/Nryn215/FreeLLMAPI/resolve/main/server/src/middleware/requireAuth.ts
889 Bytes
| import type { Request, Response, NextFunction } from 'express'; | |
| import { validateSession } from '../services/auth.js'; | |
| // Gate the /api/* admin surface behind a dashboard session (#35, item #2). | |
| // The token is the opaque session token issued by /api/auth/login|setup, sent | |
| // as `Authorization: Bearer <token>`. The /v1 proxy is NOT gated by this — it | |
| // keeps its own unified-API-key auth for app clients. | |
| export function requireAuth(req: Request, res: Response, next: NextFunction): void { | |
| const token = req.headers.authorization?.replace(/^Bearer\s+/i, '') | |
| ?? (req.headers['x-dashboard-token'] as string | undefined); | |
| const session = validateSession(token); | |
| if (!session) { | |
| res.status(401).json({ error: { message: 'Authentication required', type: 'authentication_error' } }); | |
| return; | |
| } | |
| (req as Request & { user?: typeof session }).user = session; | |
| next(); | |
| } | |