mirror of
https://github.com/danny-avila/LibreChat.git
synced 2025-09-22 08:12:00 +02:00

* docs: make_your_own.md formatting fix for mkdocs * feat: add express-mongo-sanitize feat: add login/registration rate limiting * chore: remove unnecessary console log * wip: remove token handling from localStorage to encrypted DB solution * refactor: minor change to UserService * fix mongo query and add keys route to server * fix backend controllers and simplify schema/crud * refactor: rename token to key to separate from access/refresh tokens, setTokenDialog -> setKeyDialog * refactor(schemas): TEndpointOption token -> key * refactor(api): use new encrypted key retrieval system * fix(SetKeyDialog): fix key prop error * fix(abortMiddleware): pass random UUID if messageId is not generated yet for proper error display on frontend * fix(getUserKey): wrong prop passed in arg, adds error handling * fix: prevent message without conversationId from saving to DB, prevents branching on the frontend to a new top-level branch * refactor: change wording of multiple display messages * refactor(checkExpiry -> checkUserKeyExpiry): move to UserService file * fix: type imports from common * refactor(SubmitButton): convert to TS * refactor(key.ts): change localStorage map key name * refactor: add new custom tailwind classes to better match openAI colors * chore: remove unnecessary warning and catch ScreenShot error * refactor: move userKey frontend logic to hooks and remove use of localStorage and instead query the DB * refactor: invalidate correct query key, memoize userKey hook, conditionally render SetKeyDialog to avoid unnecessary calls, refactor SubmitButton props and useEffect for showing 'provide key first' * fix(SetKeyDialog): use enum-like object for expiry values feat(Dropdown): add optionsClassName to dynamically change dropdown options container classes * fix: handle edge case where user had provided a key but the server changes to env variable for keys * refactor(OpenAI/titleConvo): move titling to client to retain authorized credentials in message lifecycle for titling * fix(azure): handle user_provided keys correctly for azure * feat: send user Id to OpenAI to differentiate users in completion requests * refactor(OpenAI/titleConvo): adding tokens helps minimize LLM from using the language in title response * feat: add delete endpoint for keys * chore: remove throttling of title * feat: add 'Data controls' to Settings, add 'Revoke' keys feature in Key Dialog and Data controls * refactor: reorganize PluginsClient files in langchain format * feat: use langchain for titling convos * chore: cleanup titling convo, with fallback to original method, escape braces, use only snippet for language detection * refactor: move helper functions to appropriate langchain folders for reusability * fix: userProvidesKey handling for gptPlugins * fix: frontend handling of plugins key * chore: cleanup logging and ts-ignore SSE * fix: forwardRef misuse in DangerButton * fix(GoogleConfig/FileUpload): localize errors and simplify validation with zod * fix: cleanup google logging and fix user provided key handling * chore: remove titling from google * chore: removing logging from browser endpoint * wip: fix menu flicker * feat: useLocalStorage hook * feat: add Tooltip for UI * refactor(EndpointMenu): utilize Tooltip and useLocalStorage, remove old 'New Chat' slide-over * fix(e2e): use testId for endpoint menu trigger * chore: final touches to EndpointMenu before future refactor to declutter component * refactor(localization): change select endpoint to open menu and add translations * chore: add final prop to error message response * ci: minor edits to facilitate testing * ci: new e2e test which tests for new key setting/revoking features
77 lines
2 KiB
JavaScript
77 lines
2 KiB
JavaScript
const { User, Key } = require('../../models');
|
|
const { encrypt, decrypt } = require('../utils');
|
|
|
|
const updateUserPluginsService = async (user, pluginKey, action) => {
|
|
try {
|
|
if (action === 'install') {
|
|
return await User.updateOne(
|
|
{ _id: user._id },
|
|
{ $set: { plugins: [...user.plugins, pluginKey] } },
|
|
);
|
|
} else if (action === 'uninstall') {
|
|
return await User.updateOne(
|
|
{ _id: user._id },
|
|
{ $set: { plugins: user.plugins.filter((plugin) => plugin !== pluginKey) } },
|
|
);
|
|
}
|
|
} catch (err) {
|
|
console.log(err);
|
|
return err;
|
|
}
|
|
};
|
|
|
|
const getUserKey = async ({ userId, name }) => {
|
|
const keyValue = await Key.findOne({ userId, name }).lean();
|
|
if (!keyValue) {
|
|
throw new Error('User-provided key not found');
|
|
}
|
|
return decrypt(keyValue.value);
|
|
};
|
|
|
|
const getUserKeyExpiry = async ({ userId, name }) => {
|
|
const keyValue = await Key.findOne({ userId, name }).lean();
|
|
if (!keyValue) {
|
|
return { expiresAt: null };
|
|
}
|
|
return { expiresAt: keyValue.expiresAt };
|
|
};
|
|
|
|
const updateUserKey = async ({ userId, name, value, expiresAt }) => {
|
|
const encryptedValue = encrypt(value);
|
|
return await Key.findOneAndUpdate(
|
|
{ userId, name },
|
|
{
|
|
userId,
|
|
name,
|
|
value: encryptedValue,
|
|
expiresAt: new Date(expiresAt),
|
|
},
|
|
{ upsert: true, new: true },
|
|
).lean();
|
|
};
|
|
|
|
const deleteUserKey = async ({ userId, name, all = false }) => {
|
|
if (all) {
|
|
return await Key.deleteMany({ userId });
|
|
}
|
|
|
|
await Key.findOneAndDelete({ userId, name }).lean();
|
|
};
|
|
|
|
const checkUserKeyExpiry = (expiresAt, message) => {
|
|
const expiresAtDate = new Date(expiresAt);
|
|
if (expiresAtDate < new Date()) {
|
|
const expiryStr = `User-provided key expired at ${expiresAtDate.toLocaleString()}`;
|
|
const errorMessage = message ? `${message}\n${expiryStr}` : expiryStr;
|
|
throw new Error(errorMessage);
|
|
}
|
|
};
|
|
|
|
module.exports = {
|
|
updateUserPluginsService,
|
|
getUserKey,
|
|
getUserKeyExpiry,
|
|
updateUserKey,
|
|
deleteUserKey,
|
|
checkUserKeyExpiry,
|
|
};
|