-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathauth.ts
58 lines (40 loc) · 1.77 KB
/
auth.ts
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
import NextAuth from 'next-auth';
import { authConfig } from './auth.config';
import Credentials from 'next-auth/providers/credentials';
import { z } from 'zod';
import { sql } from '@vercel/postgres';
import type { User } from '@/app/lib/definitions';
import bcrypt from 'bcrypt';
// Credentials provider allows users to log in with a username and password.
// providers is an array where you list different login options such as Google or Github.
// use zod to validate the email and password before checking if the user exists in the database
// use bcrypt to compare the password from the database with the password provided by the user.
// return the user if the passwords match, otherwise return null.
async function getUser(email: string): Promise<User | undefined> {
try {
const user = await sql<User>`SELECT * FROM users WHERE email = ${email}`;
return user.rows[0];
} catch (error) {
console.error('Failed to fetch user', error);
throw new Error('Failed to fetch user');
}
}
export const { auth, signIn, signOut } = NextAuth({...authConfig, providers: [
Credentials({
async authorize(credentials) {
const parsedCredentials = z
.object({ email: z.string().email(), password: z.string().min(6) })
.safeParse(credentials);
if (parsedCredentials.success) {
const { email, password } = parsedCredentials.data;
const user = await getUser(email);
if (!user) return null;
const passwordsMatch = await bcrypt.compare(password, user.password);
if (passwordsMatch) return user;
}
console.log('invalid credentials');
return null;
},
})
],
});