mirror of
				https://codeberg.org/forgejo/forgejo.git
				synced 2025-11-04 00:11:04 +00:00 
			
		
		
		
	- Massive replacement of changing `code.gitea.io/gitea` to `forgejo.org`. - Resolves forgejo/discussions#258 Reviewed-on: https://codeberg.org/forgejo/forgejo/pulls/7337 Reviewed-by: Earl Warren <earl-warren@noreply.codeberg.org> Reviewed-by: Michael Kriese <michael.kriese@gmx.de> Reviewed-by: Beowulf <beowulf@beocode.eu> Reviewed-by: Panagiotis "Ivory" Vasilopoulos <git@n0toose.net> Co-authored-by: Gusted <postmaster@gusted.xyz> Co-committed-by: Gusted <postmaster@gusted.xyz>
		
			
				
	
	
		
			52 lines
		
	
	
	
		
			1,023 B
		
	
	
	
		
			Go
		
	
	
	
	
	
			
		
		
	
	
			52 lines
		
	
	
	
		
			1,023 B
		
	
	
	
		
			Go
		
	
	
	
	
	
// Copyright 2020 The Gitea Authors. All rights reserved.
 | 
						|
// SPDX-License-Identifier: MIT
 | 
						|
 | 
						|
package password
 | 
						|
 | 
						|
import (
 | 
						|
	"context"
 | 
						|
	"errors"
 | 
						|
	"fmt"
 | 
						|
 | 
						|
	"forgejo.org/modules/auth/password/pwn"
 | 
						|
	"forgejo.org/modules/setting"
 | 
						|
)
 | 
						|
 | 
						|
var ErrIsPwned = errors.New("password has been pwned")
 | 
						|
 | 
						|
type ErrIsPwnedRequest struct {
 | 
						|
	err error
 | 
						|
}
 | 
						|
 | 
						|
func IsErrIsPwnedRequest(err error) bool {
 | 
						|
	_, ok := err.(ErrIsPwnedRequest)
 | 
						|
	return ok
 | 
						|
}
 | 
						|
 | 
						|
func (err ErrIsPwnedRequest) Error() string {
 | 
						|
	return fmt.Sprintf("using Have-I-Been-Pwned service failed: %v", err.err)
 | 
						|
}
 | 
						|
 | 
						|
func (err ErrIsPwnedRequest) Unwrap() error {
 | 
						|
	return err.err
 | 
						|
}
 | 
						|
 | 
						|
// IsPwned checks whether a password has been pwned
 | 
						|
// If a password has not been pwned, no error is returned.
 | 
						|
func IsPwned(ctx context.Context, password string) error {
 | 
						|
	if !setting.PasswordCheckPwn {
 | 
						|
		return nil
 | 
						|
	}
 | 
						|
 | 
						|
	client := pwn.New(pwn.WithContext(ctx))
 | 
						|
	count, err := client.CheckPassword(password, true)
 | 
						|
	if err != nil {
 | 
						|
		return ErrIsPwnedRequest{err}
 | 
						|
	}
 | 
						|
 | 
						|
	if count > 0 {
 | 
						|
		return ErrIsPwned
 | 
						|
	}
 | 
						|
 | 
						|
	return nil
 | 
						|
}
 |