about summary refs log tree commit diff
path: root/app/controllers/auth/setup_controller.rb
blob: 3ee35d141c48772589064f6965bed234867a7a49 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
# frozen_string_literal: true

class Auth::SetupController < ApplicationController
  layout 'auth'

  before_action :set_pack
  before_action :authenticate_user!
  before_action :require_unconfirmed_or_pending!
  before_action :set_body_classes
  before_action :set_user

  skip_before_action :require_functional!

  def show; end

  def update
    # This allows updating the e-mail without entering a password as is required
    # on the account settings page; however, we only allow this for accounts
    # that were not confirmed yet

    if @user.update(user_params)
      @user.resend_confirmation_instructions unless @user.confirmed?
      redirect_to auth_setup_path, notice: I18n.t('auth.setup.new_confirmation_instructions_sent')
    else
      render :show
    end
  end

  private

  def require_unconfirmed_or_pending!
    redirect_to root_path if current_user.confirmed? && current_user.approved?
  end

  def set_user
    @user = current_user
  end

  def set_body_classes
    @body_classes = 'lighter'
  end

  def user_params
    params.require(:user).permit(:email)
  end

  def set_pack
    use_pack 'auth'
  end
end