devstygian / devstygian/Simple-Auth-Template

Customer Authentication & Session Management

Aperta
#4 0 commenti 0 reazioni 0 assegnatari Vedi su GitHub
Lingua principale
PHP
Stelle
4
Fork
1
Merge medio
1h 27m
PR unite (30g)
1

Descrizione

## Description

Implement a secure authentication and session management system for customers using the public-facing Resto POS website.

Each customer must have an independent account and session so that multiple customers can use the system simultaneously without accessing each other's personal information.

## Requirements

* Implement Google Authentication for customer accounts.
* Create or associate each Google account with a unique customer ID.
* Use server-side sessions to identify the currently authenticated customer.
* Ensure customers can only access their own:

* Profile
* Cart
* Orders
* Personal information
* Prevent customers from accessing another customer's data by modifying URLs, requests, or customer IDs.
* Support multiple customers using the system at the same time.
* Provide secure login and logout functionality.

## Example

```text
Customer A → Google Account → Customer ID 101 → Session A
Customer B → Google Account → Customer ID 102 → Session B
```

Both customers may access the same pages, but each session must display only the data belonging to its respective customer.

## Acceptance Criteria

* [ ] Google Authentication works for customers.
* [ ] Each customer has a unique account/ID.
* [ ] Customer sessions are handled securely.
* [ ] Customers can only access their own data.
* [ ] Multiple customers can use the system simultaneously.
* [ ] Logout properly terminates the session.
* [ ] Unauthorized access to another customer's data is prevented.

Guida per i contributori

Nessuna guida per i contributori indicizzata per questo repository

Direzione di ricerca

No files, tests, or entry points are named in the issue. Start by surveying the PHP/MySQL authentication, session, and customer-data entry points. Done means the acceptance criteria are verified, including isolated customer data, secure login and logout, simultaneous sessions, and blocked unauthorized access.

Scritto dal modello di indicizzazione a partire dal testo della issue.

Valutazione

Stack tecnologico
mysql, php
Ambito
authentication, authorization, backend, database
Tipo di issue
Funzionalità
Difficoltà
5/5
Tempo stimato
Più di una settimana
Stato di attività
Tranquilla
Chiarezza
Abbastanza chiara
Idoneità per principianti
25/100

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.