Skip to content
Snippets Groups Projects
Select Git revision
  • as-if-foss/andrey-pass-ruby-version-qa-trigger
  • as-if-foss/ci-cd-a11y-label-fixes
  • as-if-foss/515291-reenqueue-delete-orphaned-groups
  • as-if-foss/use-other-constant
  • as-if-foss/system-notes-design-token-updates
  • as-if-foss/renovate/gitlab-uisvg
  • as-if-foss/498877-rm-fk
  • as-if-foss/sh-raise-token-encrypted-constraint
  • as-if-foss/fixup-import-project-team-service-spec
  • as-if-foss/nweinshenker/523299_explain_vuln_claude
  • as-if-foss/docs-update-links-in-code
  • as-if-foss/hly-fix-backend-autocomplete-filtering-rte
  • as-if-foss/add-codestral-for-chat-tools
  • as-if-foss/499873-radbatnag-refuse-to-delete-protected-tag
  • as-if-foss/freinink/519997-create-merge-request-approval-setting-model
  • as-if-foss/522911/aslota-move-status-widget-to-ee
  • as-if-foss/fix-self-hosted-models-check
  • as-if-foss/498396/aslota-fetch-allowed-statuses-from-widget-definitions
  • as-if-foss/id-require-irb-for-initializer
  • as-if-foss/da-rename-front-workspace-variables-type-field
  • v17.7.6 protected
  • v17.8.4 protected
  • v17.9.1 protected
  • v17.8.3 protected
  • v17.7.5 protected
  • v17.9.0 protected
  • v17.9.0-rc42 protected
  • v17.6.5 protected
  • v17.7.4 protected
  • v17.8.2 protected
  • v17.6.4 protected
  • v17.7.3 protected
  • v17.8.1 protected
  • v17.8.0 protected
  • v17.7.2 protected
  • v17.8.0-rc42 protected
  • v17.5.5 protected
  • v17.6.3 protected
  • v17.7.1 protected
  • v17.7.0 protected
40 results

profiles_controller.rb

Code owners
Assign users and groups as approvers for specific file changes. Learn more.
profiles_controller.rb 2.36 KiB
class ProfilesController < Profiles::ApplicationController
  include ActionView::Helpers::SanitizeHelper

  before_action :user
  before_action :authorize_change_username!, only: :update_username
  skip_before_action :require_email, only: [:show, :update]

  def show
  end

  def update
    user_params.except!(:email) if @user.ldap_user?

    respond_to do |format|
      if @user.update_attributes(user_params)
        message = "Profile was successfully updated"
        format.html { redirect_back_or_default(default: { action: 'show' }, options: { notice: message }) }
        format.json { render json: { message: message } }
      else
        message = @user.errors.full_messages.uniq.join('. ')
        format.html { redirect_back_or_default(default: { action: 'show' }, options: { alert: "Failed to update profile. #{message}" }) }
        format.json { render json: { message: message }, status: :unprocessable_entity }
      end
    end
  end

  def reset_private_token
    if current_user.reset_authentication_token!
      flash[:notice] = "Private token was successfully reset"
    end

    redirect_to profile_account_path
  end

  def reset_incoming_email_token
    if current_user.reset_incoming_email_token!
      flash[:notice] = "Incoming email token was successfully reset"
    end

    redirect_to profile_account_path
  end

  def audit_log
    @events = AuditEvent.where(entity_type: "User", entity_id: current_user.id).
      order("created_at DESC").
      page(params[:page])
  end

  def update_username
    if @user.update_attributes(username: user_params[:username])
      options = { notice: "Username successfully changed" }
    else
      message = @user.errors.full_messages.uniq.join('. ')
      options = { alert: "Username change failed - #{message}" }
    end

    redirect_back_or_default(default: { action: 'show' }, options: options)
  end

  private

  def user
    @user = current_user
  end

  def authorize_change_username!
    return render_404 unless @user.can_change_username?
  end

  def user_params
    params.require(:user).permit(
      :avatar,
      :bio,
      :email,
      :hide_no_password,
      :hide_no_ssh_key,
      :hide_project_limit,
      :linkedin,
      :location,
      :name,
      :password,
      :password_confirmation,
      :public_email,
      :skype,
      :twitter,
      :username,
      :website_url,
      :organization
    )
  end
end