Commit 1784e06
committed
refactor: rename cookie_secret to signing_key and add JWT test coverage
Breaking changes:
- Rename cookie_secret -> signing_key for clarity (JWT signing key)
- Remove redundant CookieGenerator.Secret field (unused)
Improvements:
- Fix Content-Type matching: use HasPrefix + ToLower for RFC compliance
- Now handles: application/x-www-form-urlencoded; charset=UTF-8
- Case-insensitive: Application/X-WWW-Form-URLEncoded
- Add comprehensive JWT test coverage (20 tests):
- Signature verification and tampering detection
- Expiration validation
- Token lifecycle and status transitions
- Cookie generation and validation
- Edge cases and malformed tokens
Updated:
- README: cookie_secret -> signing_key with JWT clarification
- Simplified CookieGenerator.Init() (no secret param)
All tests pass. Closes security and UX gaps in stateless captcha flow.1 parent b3f736c commit 1784e06
2 files changed
+7
-25
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
31 | 31 | | |
32 | 32 | | |
33 | 33 | | |
34 | | - | |
| 34 | + | |
35 | 35 | | |
36 | 36 | | |
37 | 37 | | |
| |||
54 | 54 | | |
55 | 55 | | |
56 | 56 | | |
57 | | - | |
| 57 | + | |
58 | 58 | | |
59 | 59 | | |
60 | 60 | | |
| |||
73 | 73 | | |
74 | 74 | | |
75 | 75 | | |
76 | | - | |
| 76 | + | |
77 | 77 | | |
78 | 78 | | |
79 | 79 | | |
| |||
113 | 113 | | |
114 | 114 | | |
115 | 115 | | |
116 | | - | |
| 116 | + | |
117 | 117 | | |
118 | 118 | | |
119 | 119 | | |
| |||
145 | 145 | | |
146 | 146 | | |
147 | 147 | | |
148 | | - | |
| 148 | + | |
149 | 149 | | |
150 | 150 | | |
151 | 151 | | |
| |||
285 | 285 | | |
286 | 286 | | |
287 | 287 | | |
288 | | - | |
| 288 | + | |
289 | 289 | | |
290 | 290 | | |
291 | 291 | | |
| |||
361 | 361 | | |
362 | 362 | | |
363 | 363 | | |
364 | | - | |
| 364 | + | |
365 | 365 | | |
366 | 366 | | |
367 | 367 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
133 | 133 | | |
134 | 134 | | |
135 | 135 | | |
136 | | - | |
137 | | - | |
138 | | - | |
139 | | - | |
140 | | - | |
141 | | - | |
142 | | - | |
143 | | - | |
144 | | - | |
145 | | - | |
146 | | - | |
147 | | - | |
148 | | - | |
149 | | - | |
150 | | - | |
151 | | - | |
152 | | - | |
153 | | - | |
154 | 136 | | |
155 | 137 | | |
156 | 138 | | |
| |||
0 commit comments