| 3e3af55 | | | 1 | "use client"; |
| 3e3af55 | | | 2 | |
| 92d1c58 | | | 3 | import { Suspense, useState, useEffect } from "react"; |
| 3a45fc8 | | | 4 | import { useRouter, useSearchParams } from "next/navigation"; |
| 4a006da | | | 5 | import { startRegistration, startAuthentication } from "@simplewebauthn/browser"; |
| 818dc90 | | | 6 | import { GroveLogo } from "@/app/components/grove-logo"; |
| 4a006da | | | 7 | import { auth } from "@/lib/api"; |
| 4a006da | | | 8 | import { useAuth } from "@/lib/auth"; |
| 3e3af55 | | | 9 | |
| 3e3af55 | | | 10 | export default function LoginPage() { |
| 92d1c58 | | | 11 | return ( |
| 92d1c58 | | | 12 | <Suspense> |
| 92d1c58 | | | 13 | <LoginPageInner /> |
| 92d1c58 | | | 14 | </Suspense> |
| 92d1c58 | | | 15 | ); |
| 92d1c58 | | | 16 | } |
| 92d1c58 | | | 17 | |
| 92d1c58 | | | 18 | function LoginPageInner() { |
| 3e3af55 | | | 19 | const [mode, setMode] = useState<"login" | "register">("login"); |
| 3e3af55 | | | 20 | const [username, setUsername] = useState(""); |
| 4a006da | | | 21 | const [displayName, setDisplayName] = useState(""); |
| 3e3af55 | | | 22 | const [error, setError] = useState(""); |
| 4a006da | | | 23 | const [loading, setLoading] = useState(false); |
| bf5fc33 | | | 24 | const [pat, setPat] = useState(""); |
| bf5fc33 | | | 25 | const [patLoading, setPatLoading] = useState(false); |
| 4a006da | | | 26 | const { login } = useAuth(); |
| 4a006da | | | 27 | const router = useRouter(); |
| 3a45fc8 | | | 28 | const searchParams = useSearchParams(); |
| 3a45fc8 | | | 29 | |
| 3a45fc8 | | | 30 | function redirectAfterLogin() { |
| 3a45fc8 | | | 31 | const redirect = searchParams.get("redirect"); |
| 6dd74de | | | 32 | if (redirect && redirect.startsWith("/")) { |
| 6dd74de | | | 33 | router.push(redirect); |
| 6dd74de | | | 34 | } else if (redirect && redirect.startsWith("https://") && new URL(redirect).hostname.endsWith(".grove.host")) { |
| 3a45fc8 | | | 35 | window.location.href = redirect; |
| 3a45fc8 | | | 36 | } else { |
| 3a45fc8 | | | 37 | router.push("/dashboard"); |
| 3a45fc8 | | | 38 | } |
| 3a45fc8 | | | 39 | } |
| 3e3af55 | | | 40 | |
| 1da9874 | | | 41 | useEffect(() => { |
| 1da9874 | | | 42 | document.title = mode === "login" ? "Sign in" : "Create account"; |
| 1da9874 | | | 43 | }, [mode]); |
| 1da9874 | | | 44 | |
| 4a006da | | | 45 | async function handleRegister(e: React.FormEvent) { |
| 3e3af55 | | | 46 | e.preventDefault(); |
| 3e3af55 | | | 47 | setError(""); |
| 4a006da | | | 48 | setLoading(true); |
| 3e3af55 | | | 49 | |
| 3e3af55 | | | 50 | try { |
| 4a006da | | | 51 | const { options } = await auth.registerBegin({ |
| 4a006da | | | 52 | username, |
| 4a006da | | | 53 | display_name: displayName || undefined, |
| 3e3af55 | | | 54 | }); |
| 3e3af55 | | | 55 | |
| 4a006da | | | 56 | const attestation = await startRegistration({ optionsJSON: options }); |
| 4a006da | | | 57 | |
| 4a006da | | | 58 | const result = await auth.registerComplete({ |
| 4a006da | | | 59 | response: attestation, |
| 4a006da | | | 60 | challenge: options.challenge, |
| 4a006da | | | 61 | }); |
| 3e3af55 | | | 62 | |
| 4a006da | | | 63 | login(result.token, result.user); |
| 3a45fc8 | | | 64 | redirectAfterLogin(); |
| 4a006da | | | 65 | } catch (err: unknown) { |
| 4a006da | | | 66 | if (err instanceof Error) { |
| 4a006da | | | 67 | setError( |
| 4a006da | | | 68 | err.name === "NotAllowedError" |
| 4a006da | | | 69 | ? "Passkey creation was cancelled." |
| 4a006da | | | 70 | : err.message |
| 4a006da | | | 71 | ); |
| 4a006da | | | 72 | } else { |
| 4a006da | | | 73 | setError("Something went wrong"); |
| 3e3af55 | | | 74 | } |
| 4a006da | | | 75 | } finally { |
| 4a006da | | | 76 | setLoading(false); |
| 4a006da | | | 77 | } |
| 4a006da | | | 78 | } |
| 4a006da | | | 79 | |
| 4a006da | | | 80 | async function handleLogin(e: React.FormEvent) { |
| 4a006da | | | 81 | e.preventDefault(); |
| 4a006da | | | 82 | setError(""); |
| 4a006da | | | 83 | setLoading(true); |
| 4a006da | | | 84 | |
| 4a006da | | | 85 | try { |
| 4a006da | | | 86 | const { options } = await auth.loginBegin(); |
| 4a006da | | | 87 | |
| 4a006da | | | 88 | const assertion = await startAuthentication({ optionsJSON: options }); |
| 3e3af55 | | | 89 | |
| 4a006da | | | 90 | const result = await auth.loginComplete({ |
| 4a006da | | | 91 | response: assertion, |
| 4a006da | | | 92 | challenge: options.challenge, |
| 4a006da | | | 93 | }); |
| 4a006da | | | 94 | |
| 4a006da | | | 95 | login(result.token, result.user); |
| 3a45fc8 | | | 96 | redirectAfterLogin(); |
| 4a006da | | | 97 | } catch (err: unknown) { |
| 4a006da | | | 98 | if (err instanceof Error) { |
| 0d33405 | | | 99 | if (err.name === "NotAllowedError") { |
| 0d33405 | | | 100 | setError("No passkey found for this site. Do you need to create an account?"); |
| 0d33405 | | | 101 | } else if (err.message === "Unknown credential") { |
| 0d33405 | | | 102 | setError("Passkey not recognized. Do you need to create an account?"); |
| 0d33405 | | | 103 | } else { |
| 0d33405 | | | 104 | setError(err.message); |
| 0d33405 | | | 105 | } |
| 4a006da | | | 106 | } else { |
| 4a006da | | | 107 | setError("Something went wrong"); |
| 4a006da | | | 108 | } |
| 4a006da | | | 109 | } finally { |
| 4a006da | | | 110 | setLoading(false); |
| 3e3af55 | | | 111 | } |
| 3e3af55 | | | 112 | } |
| 3e3af55 | | | 113 | |
| bf5fc33 | | | 114 | async function handlePatLogin(e: React.FormEvent) { |
| bf5fc33 | | | 115 | e.preventDefault(); |
| bf5fc33 | | | 116 | setError(""); |
| bf5fc33 | | | 117 | const trimmed = pat.trim(); |
| bf5fc33 | | | 118 | if (!trimmed) return; |
| 0fdef14 | | | 119 | if (!/^[A-Za-z0-9_-]+\.[A-Za-z0-9_-]+\.[A-Za-z0-9_-]+$/.test(trimmed)) { |
| 0fdef14 | | | 120 | setError("Paste only the raw token value (three dot-separated segments)."); |
| 0fdef14 | | | 121 | return; |
| 0fdef14 | | | 122 | } |
| bf5fc33 | | | 123 | setPatLoading(true); |
| bf5fc33 | | | 124 | |
| bf5fc33 | | | 125 | try { |
| f0bb192 | | | 126 | const res = await fetch("/api/auth/me", { |
| bf5fc33 | | | 127 | headers: { Authorization: `Bearer ${trimmed}` }, |
| bf5fc33 | | | 128 | }); |
| bf5fc33 | | | 129 | |
| bf5fc33 | | | 130 | if (!res.ok) { |
| bf5fc33 | | | 131 | const body = await res.json().catch(() => ({})); |
| bf5fc33 | | | 132 | throw new Error(body.error ?? "Invalid or expired token"); |
| bf5fc33 | | | 133 | } |
| bf5fc33 | | | 134 | |
| bf5fc33 | | | 135 | const { user } = await res.json(); |
| bf5fc33 | | | 136 | login(trimmed, user); |
| 3a45fc8 | | | 137 | redirectAfterLogin(); |
| bf5fc33 | | | 138 | } catch (err: unknown) { |
| bf5fc33 | | | 139 | setError(err instanceof Error ? err.message : "Failed to verify token"); |
| bf5fc33 | | | 140 | } finally { |
| bf5fc33 | | | 141 | setPatLoading(false); |
| bf5fc33 | | | 142 | } |
| bf5fc33 | | | 143 | } |
| bf5fc33 | | | 144 | |
| 3e3af55 | | | 145 | return ( |
| cf89d3c | | | 146 | <div className="min-h-[calc(100vh-41px)] flex items-center justify-center px-4"> |
| cf89d3c | | | 147 | <div |
| cf89d3c | | | 148 | className="w-full max-w-sm p-8" |
| cf89d3c | | | 149 | style={{ |
| cf89d3c | | | 150 | backgroundColor: "var(--bg-card)", |
| cf89d3c | | | 151 | border: "1px solid var(--border-subtle)", |
| cf89d3c | | | 152 | }} |
| cf89d3c | | | 153 | > |
| cf89d3c | | | 154 | {/* Logo */} |
| cf89d3c | | | 155 | <div className="flex justify-center mb-6"> |
| 818dc90 | | | 156 | <GroveLogo size={40} /> |
| cf89d3c | | | 157 | </div> |
| cf89d3c | | | 158 | |
| cf89d3c | | | 159 | <h1 className="text-lg text-center mb-1"> |
| cf89d3c | | | 160 | {mode === "login" ? "Sign in to Grove" : "Create your account"} |
| cf89d3c | | | 161 | </h1> |
| cf89d3c | | | 162 | <p |
| cf89d3c | | | 163 | className="text-sm text-center mb-6" |
| cf89d3c | | | 164 | style={{ color: "var(--text-muted)" }} |
| cf89d3c | | | 165 | > |
| cf89d3c | | | 166 | {mode === "login" |
| cf89d3c | | | 167 | ? "Authenticate with your passkey." |
| cf89d3c | | | 168 | : "Choose a username and register a passkey."} |
| cf89d3c | | | 169 | </p> |
| cf89d3c | | | 170 | |
| cf89d3c | | | 171 | {mode === "register" ? ( |
| cf89d3c | | | 172 | <form onSubmit={handleRegister} className="space-y-4"> |
| cf89d3c | | | 173 | <div> |
| cf89d3c | | | 174 | <label |
| cf89d3c | | | 175 | className="block text-xs mb-1.5" |
| cf89d3c | | | 176 | style={{ color: "var(--text-muted)" }} |
| cf89d3c | | | 177 | > |
| cf89d3c | | | 178 | Username |
| cf89d3c | | | 179 | </label> |
| cf89d3c | | | 180 | <input |
| cf89d3c | | | 181 | type="text" |
| cf89d3c | | | 182 | value={username} |
| cf89d3c | | | 183 | onChange={(e) => setUsername(e.target.value)} |
| cf89d3c | | | 184 | className="w-full px-3 py-2 text-sm focus:outline-none" |
| cf89d3c | | | 185 | style={{ |
| cf89d3c | | | 186 | backgroundColor: "var(--bg-input)", |
| cf89d3c | | | 187 | border: "1px solid var(--border)", |
| cf89d3c | | | 188 | color: "var(--text-primary)", |
| cf89d3c | | | 189 | }} |
| cf89d3c | | | 190 | placeholder="your-username" |
| cf89d3c | | | 191 | pattern="[a-zA-Z0-9_-]+" |
| cf89d3c | | | 192 | required |
| cf89d3c | | | 193 | minLength={2} |
| cf89d3c | | | 194 | maxLength={39} |
| cf89d3c | | | 195 | autoComplete="username" |
| cf89d3c | | | 196 | /> |
| cf89d3c | | | 197 | <p |
| cf89d3c | | | 198 | className="text-xs mt-1.5" |
| cf89d3c | | | 199 | style={{ color: "var(--text-faint)" }} |
| cf89d3c | | | 200 | > |
| cf89d3c | | | 201 | 2-39 characters. Letters, numbers, hyphens, underscores. |
| cf89d3c | | | 202 | </p> |
| cf89d3c | | | 203 | </div> |
| cf89d3c | | | 204 | |
| cf89d3c | | | 205 | <div> |
| cf89d3c | | | 206 | <label |
| cf89d3c | | | 207 | className="block text-xs mb-1.5" |
| cf89d3c | | | 208 | style={{ color: "var(--text-muted)" }} |
| cf89d3c | | | 209 | > |
| cf89d3c | | | 210 | Display name{" "} |
| cf89d3c | | | 211 | <span style={{ color: "var(--text-faint)" }}>(optional)</span> |
| cf89d3c | | | 212 | </label> |
| cf89d3c | | | 213 | <input |
| cf89d3c | | | 214 | type="text" |
| cf89d3c | | | 215 | value={displayName} |
| cf89d3c | | | 216 | onChange={(e) => setDisplayName(e.target.value)} |
| cf89d3c | | | 217 | className="w-full px-3 py-2 text-sm focus:outline-none" |
| cf89d3c | | | 218 | style={{ |
| cf89d3c | | | 219 | backgroundColor: "var(--bg-input)", |
| cf89d3c | | | 220 | border: "1px solid var(--border)", |
| cf89d3c | | | 221 | color: "var(--text-primary)", |
| cf89d3c | | | 222 | }} |
| cf89d3c | | | 223 | placeholder="Your Name" |
| cf89d3c | | | 224 | /> |
| cf89d3c | | | 225 | </div> |
| cf89d3c | | | 226 | |
| cf89d3c | | | 227 | {error && ( |
| cf89d3c | | | 228 | <div |
| cf89d3c | | | 229 | className="text-sm px-3 py-2" |
| cf89d3c | | | 230 | style={{ |
| cf89d3c | | | 231 | backgroundColor: "var(--error-bg)", |
| cf89d3c | | | 232 | border: "1px solid var(--error-border)", |
| cf89d3c | | | 233 | color: "var(--error-text)", |
| cf89d3c | | | 234 | }} |
| cf89d3c | | | 235 | > |
| cf89d3c | | | 236 | {error} |
| cf89d3c | | | 237 | </div> |
| cf89d3c | | | 238 | )} |
| 135dfe5 | | | 239 | |
| 135dfe5 | | | 240 | <button |
| cf89d3c | | | 241 | type="submit" |
| cf89d3c | | | 242 | disabled={loading} |
| cf89d3c | | | 243 | className="w-full text-sm py-2" |
| cf89d3c | | | 244 | style={{ |
| cf89d3c | | | 245 | backgroundColor: "var(--accent)", |
| cf89d3c | | | 246 | color: "var(--accent-text)", |
| cf89d3c | | | 247 | opacity: loading ? 0.6 : 1, |
| cf89d3c | | | 248 | cursor: loading ? "wait" : "pointer", |
| cf89d3c | | | 249 | }} |
| 135dfe5 | | | 250 | > |
| cf89d3c | | | 251 | {loading ? "Creating account..." : "Create account"} |
| 135dfe5 | | | 252 | </button> |
| cf89d3c | | | 253 | </form> |
| 135dfe5 | | | 254 | ) : ( |
| cf89d3c | | | 255 | <form onSubmit={handleLogin}> |
| cf89d3c | | | 256 | {error && ( |
| cf89d3c | | | 257 | <div |
| cf89d3c | | | 258 | className="text-sm px-3 py-2 mb-4" |
| cf89d3c | | | 259 | style={{ |
| cf89d3c | | | 260 | backgroundColor: "var(--error-bg)", |
| cf89d3c | | | 261 | border: "1px solid var(--error-border)", |
| cf89d3c | | | 262 | color: "var(--error-text)", |
| cf89d3c | | | 263 | }} |
| cf89d3c | | | 264 | > |
| cf89d3c | | | 265 | {error} |
| cf89d3c | | | 266 | </div> |
| cf89d3c | | | 267 | )} |
| cf89d3c | | | 268 | |
| 135dfe5 | | | 269 | <button |
| cf89d3c | | | 270 | type="submit" |
| cf89d3c | | | 271 | disabled={loading} |
| cf89d3c | | | 272 | className="w-full text-sm py-2" |
| cf89d3c | | | 273 | style={{ |
| cf89d3c | | | 274 | backgroundColor: "var(--accent)", |
| cf89d3c | | | 275 | color: "var(--accent-text)", |
| cf89d3c | | | 276 | opacity: loading ? 0.6 : 1, |
| cf89d3c | | | 277 | cursor: loading ? "wait" : "pointer", |
| cf89d3c | | | 278 | }} |
| 135dfe5 | | | 279 | > |
| cf89d3c | | | 280 | {loading ? "Signing in..." : "Sign in with Passkey"} |
| 135dfe5 | | | 281 | </button> |
| cf89d3c | | | 282 | </form> |
| 135dfe5 | | | 283 | )} |
| cf89d3c | | | 284 | |
| bf5fc33 | | | 285 | {process.env.NODE_ENV !== "production" && ( |
| bf5fc33 | | | 286 | <> |
| bf5fc33 | | | 287 | <div className="flex items-center gap-3 my-6" style={{ color: "var(--text-faint)" }}> |
| bf5fc33 | | | 288 | <div className="flex-1 h-px" style={{ backgroundColor: "var(--border-subtle)" }} /> |
| bf5fc33 | | | 289 | <span className="text-xs">or</span> |
| bf5fc33 | | | 290 | <div className="flex-1 h-px" style={{ backgroundColor: "var(--border-subtle)" }} /> |
| bf5fc33 | | | 291 | </div> |
| bf5fc33 | | | 292 | |
| bf5fc33 | | | 293 | <form onSubmit={handlePatLogin} className="space-y-3"> |
| bf5fc33 | | | 294 | <label className="block text-xs" style={{ color: "var(--text-muted)" }}> |
| bf5fc33 | | | 295 | Personal Access Token |
| bf5fc33 | | | 296 | </label> |
| bf5fc33 | | | 297 | <input |
| bf5fc33 | | | 298 | type="password" |
| bf5fc33 | | | 299 | value={pat} |
| bf5fc33 | | | 300 | onChange={(e) => setPat(e.target.value)} |
| bf5fc33 | | | 301 | className="w-full px-3 py-2 text-sm font-mono focus:outline-none" |
| bf5fc33 | | | 302 | style={{ |
| bf5fc33 | | | 303 | backgroundColor: "var(--bg-input)", |
| bf5fc33 | | | 304 | border: "1px solid var(--border)", |
| bf5fc33 | | | 305 | color: "var(--text-primary)", |
| bf5fc33 | | | 306 | }} |
| bf5fc33 | | | 307 | placeholder="Paste token from grove.host" |
| bf5fc33 | | | 308 | autoComplete="off" |
| bf5fc33 | | | 309 | /> |
| bf5fc33 | | | 310 | <p className="text-xs" style={{ color: "var(--text-faint)" }}> |
| bf5fc33 | | | 311 | Create a token at{" "} |
| bf5fc33 | | | 312 | <a |
| bf5fc33 | | | 313 | href="https://grove.host/dashboard" |
| bf5fc33 | | | 314 | target="_blank" |
| bf5fc33 | | | 315 | rel="noopener noreferrer" |
| bf5fc33 | | | 316 | style={{ color: "var(--accent)" }} |
| bf5fc33 | | | 317 | > |
| bf5fc33 | | | 318 | grove.host/dashboard |
| bf5fc33 | | | 319 | </a> |
| bf5fc33 | | | 320 | </p> |
| bf5fc33 | | | 321 | <button |
| bf5fc33 | | | 322 | type="submit" |
| bf5fc33 | | | 323 | disabled={patLoading || !pat.trim()} |
| bf5fc33 | | | 324 | className="w-full text-sm py-2" |
| bf5fc33 | | | 325 | style={{ |
| bf5fc33 | | | 326 | backgroundColor: "var(--bg-inset)", |
| bf5fc33 | | | 327 | border: "1px solid var(--border)", |
| bf5fc33 | | | 328 | color: "var(--text-secondary)", |
| bf5fc33 | | | 329 | opacity: patLoading || !pat.trim() ? 0.5 : 1, |
| bf5fc33 | | | 330 | cursor: patLoading ? "wait" : !pat.trim() ? "default" : "pointer", |
| bf5fc33 | | | 331 | }} |
| bf5fc33 | | | 332 | > |
| bf5fc33 | | | 333 | {patLoading ? "Verifying..." : "Sign in with Token"} |
| bf5fc33 | | | 334 | </button> |
| bf5fc33 | | | 335 | </form> |
| bf5fc33 | | | 336 | </> |
| bf5fc33 | | | 337 | )} |
| bf5fc33 | | | 338 | |
| cf89d3c | | | 339 | <div |
| cf89d3c | | | 340 | className="mt-6 pt-4 text-sm text-center" |
| cf89d3c | | | 341 | style={{ borderTop: "1px solid var(--border-subtle)", color: "var(--text-muted)" }} |
| cf89d3c | | | 342 | > |
| cf89d3c | | | 343 | {mode === "login" ? ( |
| cf89d3c | | | 344 | <> |
| cf89d3c | | | 345 | No account?{" "} |
| cf89d3c | | | 346 | <button |
| cf89d3c | | | 347 | onClick={() => { setMode("register"); setError(""); }} |
| cf89d3c | | | 348 | style={{ color: "var(--accent)", background: "none", border: "none", cursor: "pointer", font: "inherit", fontSize: "inherit" }} |
| cf89d3c | | | 349 | className="hover:underline" |
| cf89d3c | | | 350 | > |
| cf89d3c | | | 351 | Create one |
| cf89d3c | | | 352 | </button> |
| cf89d3c | | | 353 | </> |
| cf89d3c | | | 354 | ) : ( |
| cf89d3c | | | 355 | <> |
| cf89d3c | | | 356 | Have an account?{" "} |
| cf89d3c | | | 357 | <button |
| cf89d3c | | | 358 | onClick={() => { setMode("login"); setError(""); }} |
| cf89d3c | | | 359 | style={{ color: "var(--accent)", background: "none", border: "none", cursor: "pointer", font: "inherit", fontSize: "inherit" }} |
| cf89d3c | | | 360 | className="hover:underline" |
| cf89d3c | | | 361 | > |
| cf89d3c | | | 362 | Sign in |
| cf89d3c | | | 363 | </button> |
| cf89d3c | | | 364 | </> |
| cf89d3c | | | 365 | )} |
| cf89d3c | | | 366 | </div> |
| 3e3af55 | | | 367 | </div> |
| 3e3af55 | | | 368 | </div> |
| 3e3af55 | | | 369 | ); |
| 3e3af55 | | | 370 | } |