Files
dticket.tootaio.com/server/api/admin/users/[id]/reset-password.post.ts
xiaomai 07e5d42005 refactor: centralize validation, error handling, and formatting logic
Extract shared auth logic and validation rules to shared/auth.ts
Introduce utility functions for HTTP errors and user input parsing
Standardize error messages and date formatting across the app
2026-04-12 20:29:39 +08:00

30 lines
830 B
TypeScript

import { DEFAULT_USER_PASSWORD } from '~~/shared/auth'
import { requireRole } from '../../../../utils/auth'
import { hashPassword } from '../../../../utils/password'
import { updateUserPassword } from '../../../../utils/user-repository'
import { requireExistingUser, requireUserIdParam } from '../../../../utils/users'
export default defineEventHandler(async (event) => {
await requireRole(event, 'super_admin')
const userId = requireUserIdParam(event)
await requireExistingUser(userId)
const passwordHash = await hashPassword(DEFAULT_USER_PASSWORD)
await updateUserPassword({
userId,
passwordHash,
mustChangePassword: true
})
const updatedUser = await requireExistingUser(userId, 'Unable to load updated user')
return {
user: updatedUser,
defaultPassword: DEFAULT_USER_PASSWORD
}
})