feat: ✨ ability to delete api keys
This commit is contained in:
@@ -1743,13 +1743,12 @@ def update_api_key(kid: int):
|
||||
|
||||
@app.route("/api/api-keys/<int:kid>", methods=["DELETE"])
|
||||
@require_login
|
||||
def revoke_api_key(kid: int):
|
||||
def delete_api_key(kid: int):
|
||||
with db_cursor() as (_, cur):
|
||||
cur.execute(
|
||||
"""
|
||||
UPDATE api_keys
|
||||
SET revoked_at = CURRENT_TIMESTAMP
|
||||
WHERE id = %s AND revoked_at IS NULL
|
||||
DELETE FROM api_keys
|
||||
WHERE id = %s
|
||||
""",
|
||||
(kid,),
|
||||
)
|
||||
|
||||
@@ -366,14 +366,14 @@ async function submitApiKey() {
|
||||
}
|
||||
}
|
||||
|
||||
async function revokeApiKey(id: number, label: string) {
|
||||
if (!confirm(`Revoke API key "${label}"? This cannot be undone.`)) return;
|
||||
async function deleteApiKey(id: number, label: string) {
|
||||
if (!confirm(`Delete API key "${label}"? This cannot be undone.`)) return;
|
||||
apiKeysErr.value = "";
|
||||
try {
|
||||
await api.revokeApiKey(id);
|
||||
await api.deleteApiKey(id);
|
||||
await refreshApiKeys();
|
||||
} catch (e) {
|
||||
apiKeysErr.value = e instanceof Error ? e.message : "Failed to revoke API key";
|
||||
apiKeysErr.value = e instanceof Error ? e.message : "Failed to delete API key";
|
||||
}
|
||||
}
|
||||
|
||||
@@ -1142,9 +1142,9 @@ async function deleteIdentityRow(id: number) {
|
||||
v-if="row.active"
|
||||
type="button"
|
||||
class="rounded px-2 py-1 text-red-400 hover:bg-slate-800"
|
||||
@click="revokeApiKey(row.id, row.label)"
|
||||
@click="deleteApiKey(row.id, row.label)"
|
||||
>
|
||||
Revoke
|
||||
Delete
|
||||
</button>
|
||||
</td>
|
||||
</tr>
|
||||
|
||||
+1
-1
@@ -226,7 +226,7 @@ export const api = {
|
||||
return handle(res);
|
||||
},
|
||||
|
||||
async revokeApiKey(id: number): Promise<void> {
|
||||
async deleteApiKey(id: number): Promise<void> {
|
||||
const res = await fetch(`/api/api-keys/${id}`, {
|
||||
method: "DELETE",
|
||||
credentials: "include",
|
||||
|
||||
Reference in New Issue
Block a user