fix(passkey): 删除 passkey 先确认并显示名称与注册时间,邮箱未验证时后端拒删最后一把,错误内联显示
This commit is contained in:
16 files changed
+355
-59
No files matched your search
+8
-1
@@ -4142,7 +4142,9 @@ paths:
|
||||
description: >
|
||||
Removes a passkey scoped to the authenticated principal, so a caller can only
|
||||
unbind their OWN credential. An unknown or cross-user id is a 404; it never
|
||||
silently no-ops as success.
|
||||
silently no-ops as success. The account's only passkey cannot be removed while
|
||||
its email is unverified (409 last_passkey): it is then the account's only
|
||||
durable way in.
|
||||
x-felis-face: [external]
|
||||
x-felis-tier: app
|
||||
security: [{ accessJWT: [] }]
|
||||
@@ -4162,6 +4164,11 @@ paths:
|
||||
content:
|
||||
application/json:
|
||||
schema: { $ref: '#/components/schemas/Error' }
|
||||
'409':
|
||||
description: last_passkey — this is the only passkey and the email is unverified.
|
||||
content:
|
||||
application/json:
|
||||
schema: { $ref: '#/components/schemas/Error' }
|
||||
|
||||
/api/v1/account/migrate:
|
||||
get:
|
||||
|
||||
Reference in new issue
Block a user