Address 4 code-review findings in registration and login paths

FixSecurityService
Shipped
18 Aprili 2026, 16:45 UTC
Author
Kamo
Commit
be2e3ec

- Hide raw exception message in /register 500 path; log instead - Fail-closed (503) on email-verified DB check failure in login - verifyEmailToken throws if user row is missing instead of silently no-oping - Move sendVerificationEmail outside @Transactional in register so the outbound HTTP call only fires after the token row is committed

All changes

Je, unaona nini kuhusu usafiri?

Kila moja ya hizi updates ardhi katika nafasi yako ya kazi moja kwa moja. Kuanza bure na kuangalia kukua wiki baada ya wiki.

Kuwa Huru MileleMtazamo wa bei