PurdueElectricRacing / FullSend

Automated email service for the Purdue Electric Racing team.
https://full-send.herokuapp.com
0 stars 1 forks source link

Add /api #29

Closed RyanSchw closed 5 years ago

RyanSchw commented 5 years ago

Resolves #20

RyanSchw commented 5 years ago

This code is a mess, but whatever. I messed up and set it to merge from RyanSchw:master because of security vulnerabilities, which had a bunch of additional commits as well. We just need to merge #32 first.

RyanSchw commented 5 years ago

The code looks good, I cant see any obvious overlooks in terms of security but we should still do some testing/hacking with it. I was able to get this working on my machine with an exception of actually authing with outlook. This was from me probably using the wrong keys and IDs from the Microsoft portal.

Can you file a bug for this, please truncate the key you're using to 5 chars but I want to see what auth you have. Are you authing at /api/authorize/?