Skip to content

v1.3.0

Choose a tag to compare

@PPCM PPCM released this 05 Mar 22:16
· 95 commits to main since this release

What's New

Password Reset & SMTP Email Infrastructure

Users can now recover their password via an email link from the login page. Administrators can configure SMTP settings through the admin UI or environment variables.

Password Reset Flow:

  • "Forgot password?" link on the login page
  • Email with secure reset link (SHA-256 hashed token, 1-hour expiry, single-use)
  • Reset password page with strength indicator
  • Anti-enumeration: same response whether email exists or not

SMTP Configuration:

  • Admin UI section with host, port, SSL/TLS, credentials, sender, and app URL
  • Test connection button to verify SMTP settings
  • Priority: database settings override environment variables
  • New environment variables: SMTP_HOST, SMTP_PORT, SMTP_SECURE, SMTP_USER, SMTP_PASS, SMTP_FROM, APP_URL

Other:

  • Bilingual email templates (French / English)
  • Daily automatic cleanup of expired reset tokens
  • i18n support across all 9 locales
  • Updated admin guide and README documentation