shan916 / safe-rides

4 stars 0 forks source link

Rider Auth API accepts non numeric input #127

Closed ozerugae closed 7 years ago

ozerugae commented 7 years ago

Prevent /users/authrider from returning a valid auth token when the onecardid is non-numeric

ozerugae commented 7 years ago

Will fix this as well as ensure that a user has to be active

ozerugae commented 7 years ago

Not necessary to check if user is active as the built-in authentication checks

ozerugae commented 7 years ago

137