mirror of
https://github.com/sonr-io/sonr.git
synced 2026-08-03 01:41:44 +00:00
feature/1115 execute ucan token (#1177)
- **deps: remove tigerbeetle-go dependency** - **refactor: remove unused landing page components and models** - **feat: add pin and publish vault handlers** - **refactor: move payment and credential services to webui browser package** - **refactor: remove unused credentials management components** - **feat: add landing page components and middleware for credentials and payments** - **refactor: remove unused imports in vault config** - **refactor: remove unused bank, DID, and DWN gRPC clients** - **refactor: rename client files and improve code structure** - **feat: add session middleware helpers and landing page components** - **feat: add user profile registration flow** - **feat: Implement WebAuthn registration flow** - **feat: add error view for users without WebAuthn devices** - **chore: update htmx to include extensions** - **refactor: rename pin handler to claim handler and update routes** - **chore: update import paths after moving UI components and styles** - **fix: address potential server errors by handling and logging them properly** - **refactor: move vault config to gateway package and update related dependencies** - **style: simplify form styling and remove unnecessary components** - **feat: improve UI design for registration flow** - **feat: implement passkey-based authentication** - **refactor: migrate registration forms to use reusable form components** - **refactor: remove tailwindcss setup and use CDN instead** - **style: update submit button style to use outline variant** - **refactor: refactor server and IPFS client, remove MPC encryption** - **refactor: Abstract keyshare functionality and improve message encoding** - **refactor: improve keyset JSON marshaling and error handling** - **feat: add support for digital signatures using MPC keys** - **fix: Refactor MarshalJSON to use standard json.Marshal for Message serialization** - **fix: Encode messages before storing in keyshare structs** - **style: update form input styles for improved user experience** - **refactor: improve code structure in registration handlers** - **refactor: consolidate signer middleware and IPFS interaction** - **refactor: rename MPC signing and refresh protocol functions** - **refactor: update hway configuration loading mechanism** - **feat: integrate database support for sessions and users** - **refactor: remove devnet infrastructure and simplify build process** - **docs(guides): add Sonr DID module guide** - **feat: integrate progress bar into registration form** - **refactor: migrate WebAuthn dependencies to protocol package** - **feat: enhance user registration with passkey integration and improved form styling** - **refactor: move gateway view handlers to internal pages package** - **refactor: Move address package to MPC module** - **feat: integrate turnstile for registration** - **style: remove unnecessary size attribute from buttons** - **refactor: rename cookie package to session/cookie** - **refactor: remove unnecessary types.Session dependency** - **refactor: rename pkg/core to pkg/chain** - **refactor: simplify deployment process by removing testnet-specific Taskfile and devbox configuration** - **feat: add error redirect functionality and improve routes** - **feat: implement custom error handling for gateway** - **chore: update version number to 0.0.7 in template** - **feat: add IPFS client implementation** - **feat: Implement full IPFS client interface with comprehensive methods** - **refactor: improve IPFS client path handling** - **refactor: Move UCAN middleware to controller package** - **feat: add UCAN middleware to motr** - **refactor: update libp2p dependency** - **docs: add UCAN specification document** - **refactor: move UCAN controller logic to common package** - **refactor: rename exports.go to common.go** - **feat: add UCAN token support** - **refactor: migrate UCAN token parsing to dedicated package** - **refactor: improve CometBFT and app config initialization** - **refactor: improve deployment scripts and documentation** - **feat: integrate IPFS and producer middleware** - **refactor: rename agent directory to aider** - **fix: correct libp2p import path** - **refactor: remove redundant dependency** - **cleanup: remove unnecessary test files** - **refactor: move attention types to crypto/ucan package** - **feat: expand capabilities and resource types for UCANs** - **refactor: rename sonr.go to codec.go and update related imports** - **feat: add IPFS-based token store** - **feat: Implement IPFS-based token store with caching and UCAN integration** - **feat: Add dynamic attenuation constructor for UCAN presets** - **fix: Handle missing or invalid attenuation data with EmptyAttenuation** - **fix: Update UCAN attenuation tests with correct capability types** - **feat: integrate UCAN-based authorization into the producer middleware** - **refactor: remove unused dependency on go-ucan** - **refactor: Move address handling logic to DID module** - **feat: Add support for compressed and uncompressed Secp256k1 public keys in didkey** - **test: Add test for generating DID key from MPC keyshares** - **feat: Add methods for extracting compressed and uncompressed public keys in share types** - **feat: Add BaseKeyshare struct with public key conversion methods** - **refactor: Use compressed and uncompressed public keys in keyshare, fix public key usage in tests and verification** - **feat: add support for key generation policy type** - **fix: correct typo in VaultPermissions constant** - **refactor: move JWT related code to ucan package** - **refactor: move UCAN JWT and source code to spec package**
This commit is contained in:
@@ -0,0 +1,175 @@
|
||||
package form
|
||||
|
||||
import "github.com/go-webauthn/webauthn/protocol"
|
||||
|
||||
var credentialsHandle = templ.NewOnceHandle()
|
||||
|
||||
// Base credentials script template
|
||||
templ CredentialsScripts() {
|
||||
@credentialsHandle.Once() {
|
||||
<script type="text/javascript">
|
||||
// Check if WebAuthn is supported
|
||||
async function isWebAuthnSupported() {
|
||||
return window.PublicKeyCredential !== undefined;
|
||||
}
|
||||
|
||||
// Create credentials
|
||||
async function createCredential(options) {
|
||||
try {
|
||||
const publicKey = {
|
||||
challenge: base64URLDecode(options.challenge),
|
||||
rp: {
|
||||
name: options.rpName,
|
||||
id: options.rpId,
|
||||
},
|
||||
user: {
|
||||
id: base64URLDecode(options.userId),
|
||||
name: options.userName,
|
||||
displayName: options.userDisplayName,
|
||||
},
|
||||
pubKeyCredParams: [{alg: -7, type: "public-key"}],
|
||||
timeout: options.timeout || 60000,
|
||||
attestation: options.attestationType || "none",
|
||||
};
|
||||
|
||||
const credential = await navigator.credentials.create({
|
||||
publicKey: publicKey
|
||||
});
|
||||
|
||||
return {
|
||||
id: credential.id,
|
||||
rawId: arrayBufferToBase64URL(credential.rawId),
|
||||
type: credential.type,
|
||||
response: {
|
||||
attestationObject: arrayBufferToBase64URL(credential.response.attestationObject),
|
||||
clientDataJSON: arrayBufferToBase64URL(credential.response.clientDataJSON),
|
||||
}
|
||||
};
|
||||
} catch (err) {
|
||||
console.error('Error creating credential:', err);
|
||||
throw err;
|
||||
}
|
||||
}
|
||||
|
||||
// Get credentials
|
||||
async function getCredential(options) {
|
||||
try {
|
||||
const publicKey = {
|
||||
challenge: base64URLDecode(options.challenge),
|
||||
rpId: options.rpId,
|
||||
timeout: options.timeout || 60000,
|
||||
userVerification: options.userVerification || "preferred",
|
||||
};
|
||||
|
||||
if (options.allowCredentials) {
|
||||
publicKey.allowCredentials = options.allowCredentials.map(cred => ({
|
||||
type: cred.type,
|
||||
id: base64URLDecode(cred.id),
|
||||
}));
|
||||
}
|
||||
|
||||
const assertion = await navigator.credentials.get({
|
||||
publicKey: publicKey
|
||||
});
|
||||
|
||||
return {
|
||||
id: assertion.id,
|
||||
rawId: arrayBufferToBase64URL(assertion.rawId),
|
||||
type: assertion.type,
|
||||
response: {
|
||||
authenticatorData: arrayBufferToBase64URL(assertion.response.authenticatorData),
|
||||
clientDataJSON: arrayBufferToBase64URL(assertion.response.clientDataJSON),
|
||||
signature: arrayBufferToBase64URL(assertion.response.signature),
|
||||
userHandle: assertion.response.userHandle ? arrayBufferToBase64URL(assertion.response.userHandle) : null
|
||||
}
|
||||
};
|
||||
} catch (err) {
|
||||
console.error('Error getting credential:', err);
|
||||
throw err;
|
||||
}
|
||||
}
|
||||
|
||||
// Utility functions for base64URL encoding/decoding
|
||||
function base64URLDecode(base64url) {
|
||||
const padding = '='.repeat((4 - base64url.length % 4) % 4);
|
||||
const base64 = (base64url + padding)
|
||||
.replace(/\-/g, '+')
|
||||
.replace(/_/g, '/');
|
||||
const rawData = window.atob(base64);
|
||||
const array = new Uint8Array(rawData.length);
|
||||
for (let i = 0; i < rawData.length; i++) {
|
||||
array[i] = rawData.charCodeAt(i);
|
||||
}
|
||||
return array.buffer;
|
||||
}
|
||||
|
||||
function arrayBufferToBase64URL(buffer) {
|
||||
let binary = '';
|
||||
const bytes = new Uint8Array(buffer);
|
||||
for (let i = 0; i < bytes.byteLength; i++) {
|
||||
binary += String.fromCharCode(bytes[i]);
|
||||
}
|
||||
const base64 = window.btoa(binary);
|
||||
return base64
|
||||
.replace(/\+/g, '-')
|
||||
.replace(/\//g, '_')
|
||||
.replace(/=/g, '');
|
||||
}
|
||||
</script>
|
||||
}
|
||||
}
|
||||
|
||||
script CreatePasskey(id string) {
|
||||
function createPasskey(id) {
|
||||
const passkey = document.getElementById(id);
|
||||
passkey.value = window.crypto.getRandomValues(new Uint8Array(32)).join('');
|
||||
}
|
||||
}
|
||||
|
||||
// Template for creating credentials
|
||||
templ CreateCredential(options *protocol.PublicKeyCredentialCreationOptions) {
|
||||
@CredentialsScripts()
|
||||
<script>
|
||||
(async () => {
|
||||
try {
|
||||
if (!await isWebAuthnSupported()) {
|
||||
throw new Error("WebAuthn is not supported in this browser");
|
||||
}
|
||||
const options = { templ.JSONString(options) };
|
||||
const credential = await createCredential(options);
|
||||
// Dispatch event with credential data
|
||||
window.dispatchEvent(new CustomEvent('credentialCreated', {
|
||||
detail: credential
|
||||
}));
|
||||
} catch (err) {
|
||||
window.dispatchEvent(new CustomEvent('credentialError', {
|
||||
detail: err.message
|
||||
}));
|
||||
}
|
||||
})();
|
||||
</script>
|
||||
}
|
||||
|
||||
// Template for getting credentials
|
||||
templ GetCredential(options *protocol.PublicKeyCredentialRequestOptions) {
|
||||
@CredentialsScripts()
|
||||
<script>
|
||||
(async () => {
|
||||
try {
|
||||
if (!await isWebAuthnSupported()) {
|
||||
throw new Error("WebAuthn is not supported in this browser");
|
||||
}
|
||||
const options = { templ.JSONString(options) };
|
||||
const credential = await getCredential(options);
|
||||
// Dispatch event with credential data
|
||||
window.dispatchEvent(new CustomEvent('credentialRetrieved', {
|
||||
detail: credential
|
||||
}));
|
||||
} catch (err) {
|
||||
window.dispatchEvent(new CustomEvent('credentialError', {
|
||||
detail: err.message
|
||||
}));
|
||||
}
|
||||
})();
|
||||
</script>
|
||||
}
|
||||
Reference in New Issue
Block a user