Collect phone + security questions during signup

FeatureSecurityService
Ya
23 Aprili 2026, 20:47 UTC
Mwandishi
Kamo
Ahadi ya
a4e0789

Move phone-number and security-question collection into the self-service registration flow (where they were originally intended) rather than requiring a post-signup settings page. - New RegistrationPhoneService: generates/verifies 6-digit SMS codes via BulkTextSmsClient, 10-minute TTL, 5-per-hour rate limit per number. - RegistrationService now accepts a RegistrationParams record with optional verifiedPhone and a 3-entry security-question list; security questions are bcrypt-hashed with the existing answer-normalization rule. - /api/security/register accepts **************** and claims the verified phone against the code before persisting the User. - New public endpoints POST /register/phone/initiate (Capcha-gated), POST /register/phone/verify, and GET ****************

Mabadiliko yote

Je, unaona nini kuhusu usafiri?

Kila moja ya hizi updates ardhi katika nafasi yako ya kazi moja kwa moja. Kuanza bure na kuangalia kukua wiki baada ya wiki.

Kuwa Huru MileleMtazamo wa bei