Implement ALTCHA captcha service with challenge generation and solution verification
- Added AltchaService class for managing ALTCHA captcha challenges and solutions. - Created CaptchaController to handle API requests for generating challenges. - Introduced CaptchaGuard for validating captcha solutions on public endpoints. - Developed unit tests for AltchaService to ensure challenge creation and solution verification functionality. - Implemented integration tests for the Captcha API endpoint and captcha bypass behavior when disabled. - Added documentation for the Captcha API in the corresponding markdown file.
This commit is contained in:
@@ -9,3 +9,6 @@ DATABASE_URL="mysql://db:db@db:3306/db?serverVersion=8.0&charset=utf8mb4"
|
||||
|
||||
# JWT — generated keypair is shared with dev; passphrase from .env is fine.
|
||||
# Redis cache/messenger use the same ddev redis; tests don't depend on it.
|
||||
|
||||
# ALTCHA off in tests so public endpoints stay drivable without solving PoW.
|
||||
ALTCHA_ENABLED=false
|
||||
|
||||
Reference in New Issue
Block a user