fix(passkey): 删除 passkey 先确认并显示名称与注册时间,邮箱未验证时后端拒删最后一把,错误内联显示

This commit is contained in:
Lemon-miaow committed 2026-09-25 10:04:31 +08:00
1 parent 90c39afb0c
commit ea425cffa4
16 files changed
+355 -59

No files matched your search

+8 -1
View File
@@ -4142,7 +4142,9 @@ paths:
description: >
Removes a passkey scoped to the authenticated principal, so a caller can only
unbind their OWN credential. An unknown or cross-user id is a 404; it never
silently no-ops as success.
silently no-ops as success. The account's only passkey cannot be removed while
its email is unverified (409 last_passkey): it is then the account's only
durable way in.
x-felis-face: [external]
x-felis-tier: app
security: [{ accessJWT: [] }]
@@ -4162,6 +4164,11 @@ paths:
content:
application/json:
schema: { $ref: '#/components/schemas/Error' }
'409':
description: last_passkey — this is the only passkey and the email is unverified.
content:
application/json:
schema: { $ref: '#/components/schemas/Error' }
/api/v1/account/migrate:
get: