-
-
Notifications
You must be signed in to change notification settings - Fork 91
Guest authentication with jwt #457
base: 1.5
Are you sure you want to change the base?
Conversation
74be136 to
12a85c7
Compare
a501d7f to
e1f8aa1
Compare
…em as array collection
e408cf3 to
2b626f1
Compare
mamazu
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Looks very good.
|
@dlobato What do you think? |
25f7111 to
6c39942
Compare
6c39942 to
32fbc4b
Compare
|
This pull request is more elaborate and offers a guest customer to login as well (with a jwt token and so on). It requires the customer to provide some information about the order (and not just the order uuid) to confirm that it is indeed the guest who orders it. |
|
The use case that I'm more concerned about is "changing payment after payment failure on guest checkout". So, as far as this is covered with this change I'm fine with it. I'd suggest to make authentication with guest users optional, showing only a limited view of orders as implemented in #443. This way we can keep the checkout process simple and still show the complete order to a guest user if she provides enough information to trust her. Also, @lchrusciel stated: "According to orders endpoint, I would say, that we should stick as close as possible with the default implementation", and in my eyes this PR already moves a little bit away from it. |
|
Co-dev for this PR here: So this PR does not fiddle around with payment or anything - this is just there to enable a guest to check on his order after a period of time with protected access through a guest-firewall. |
|
This could be closed in favor of #443 which has been merged. |
|
@lchrusciel just pinging you again to see this 🙂 🚀 |
|
@lchrusciel Still no update on this? |
79c5515 to
b68d016
Compare
b68d016 to
e8184fe
Compare
cee897f to
cd90962
Compare
A guest authentication like proposed in #452
We implemented this in our project and these are basically the parts that we thought make sense to give back to the plugin.