<turbo-stream action="append" target="posts_list"><template>    <div class="postbit" id="371880" data-post-id="371880">
  <section>
    <div class="post-wrap">


					<div class="post-header">
		        <div class="user-avatar">
		          <img alt="gushonorato" src="https://forum.elixirforum.com/user_avatar/forum.elixirforum.com/gushonorato/120/36861_2.png" width="120" height="120" />
		        </div>
					
						<div class="user-details">
		          <div class="user-name">
		            <h3>
                  gushonorato
                    <span class="op-star" title="Thread Starter">
                      <img alt="OP" class="op-star-icon" src="/assets/thread-icons/thread-icon-thread-starter-df91e872.png" />
                    </span>
                  </h3>
		          </div>
						
						</div>
					
					</div>

	        <div class="thread-main">
	            <div class="post-body" data-turbo="false">
								<p>Thanks, <a class="mention" href="/u/mindreframer" rel="nofollow">@mindreframer</a>! This looks really useful! I’ll give it a try in the coming weeks once I’m a bit freer with my project deadlines.</p> 
	            </div>

	            <div class="base-line">
	                <div class="thread-counters">
	                    <span class="thread-count count-likes js-likers-trigger" title="Likes" data-post-id="371880" data-batch-url="/posts/batch_likers">
                        0
                      </span>
                      <!-- <span class="thread-count js-solved-indicator" title="Marked as solution"></span> -->
	                </div>
	                <div class="go-to-post">
	                  <a title="Go to post" alt="Go to post" href="https://forum.elixirforum.com/t/magic-auth-an-phoenix-authentication-library-designed-for-effortless-setup/68930/13">Post #12</a>
	                </div>
	            </div>
              <div id="likers-container-371880" 
                   class="likers-container"
                   data-first-post="false"
                   data-batch-url="/posts/batch_likers">
                   <div class="likers-placeholder" 
                     data-likers-post-id="371880"
                     data-batch-url="/posts/batch_likers">
                  <div class="post-likers"></div>
                </div>
              </div>
	        </div>
			

    </div>

    <div class="triangle-top-right type-standard-post cat-standard-post" title="Post #12"></div>
  </section>
</div>
    <div class="postbit" id="394683" data-post-id="394683">
  <section>
    <div class="post-wrap">


					<div class="post-header">
		        <div class="user-avatar">
		          <img alt="gushonorato" src="https://forum.elixirforum.com/user_avatar/forum.elixirforum.com/gushonorato/120/36861_2.png" width="120" height="120" />
		        </div>
					
						<div class="user-details">
		          <div class="user-name">
		            <h3>
                  gushonorato
                    <span class="op-star" title="Thread Starter">
                      <img alt="OP" class="op-star-icon" src="/assets/thread-icons/thread-icon-thread-starter-df91e872.png" />
                    </span>
                  </h3>
		          </div>
						
						</div>
					
					</div>

	        <div class="thread-main">
	            <div class="post-body" data-turbo="false">
								<h3><a name="p-394683-release-021-security-fix-1" class="anchor" href="#p-394683-release-021-security-fix-1" aria-label="Heading link" rel="nofollow"></a>Release 0.2.1 – Security Fix <img src="https://forum.elixirforum.com/images/emoji/apple/locked.png?v=15" title=":locked:" class="emoji" alt=":locked:" loading="lazy" width="20" height="20"></h3>
<p>Hey everyone! I’ve just released <strong>Magic Auth v0.2.1</strong>. It includes a security fix, so I strongly recommend updating as soon as possible.</p>
<h3><a name="p-394683-security-2" class="anchor" href="#p-394683-security-2" aria-label="Heading link" rel="nofollow"></a><img src="https://forum.elixirforum.com/images/emoji/apple/locked.png?v=15" title=":locked:" class="emoji" alt=":locked:" loading="lazy" width="20" height="20"> Security</h3>
<p>Fixed a way around the rate limits on login attempts and one-time password requests. Changing the case of the email (e.g. <code>User@example.com</code> instead of <code>user@example.com</code>) gave the same address a fresh limit. That made brute forcing the code feasible and let an attacker flood the user’s inbox.</p>
<h3><a name="p-394683-enhancements-3" class="anchor" href="#p-394683-enhancements-3" aria-label="Heading link" rel="nofollow"></a><img src="https://forum.elixirforum.com/images/emoji/apple/sparkles.png?v=15" title=":sparkles:" class="emoji" alt=":sparkles:" loading="lazy" width="20" height="20"> Enhancements</h3>
<p>Rate limiting now uses Hammer. Each email gets its own time window instead of all limits resetting at the same moment. The countdown on the verification page now refers to the email being verified.</p>
<h3><a name="p-394683-fixes-4" class="anchor" href="#p-394683-fixes-4" aria-label="Heading link" rel="nofollow"></a><img src="https://forum.elixirforum.com/images/emoji/apple/bug.png?v=15" title=":bug:" class="emoji" alt=":bug:" loading="lazy" width="20" height="20"> Fixes</h3>
<p><code>mix magic_auth.install</code> now adds <code>MagicAuthHooks</code> to the hooks already declared in <code>app.js</code>, such as the <code>hooks: {...colocatedHooks}</code> generated by Phoenix 1.8. Before, it asked you to add it manually.</p>
<h3><a name="p-394683-upgrading-5" class="anchor" href="#p-394683-upgrading-5" aria-label="Heading link" rel="nofollow"></a><img src="https://forum.elixirforum.com/images/emoji/apple/up_arrow.png?v=15" title=":up_arrow:" class="emoji" alt=":up_arrow:" loading="lazy" width="20" height="20"> Upgrading</h3>
<p>There are no breaking changes this time, and you don’t need any migrations or config changes. Just bump the version in <code>mix.exs</code>:</p>
<pre data-code-wrap="elixir"><code class="lang-elixir">
{:magic_auth, "~&gt; 0.2.1"}

</code></pre>
<p>and run:</p>
<pre data-code-wrap="bash"><code class="lang-bash">
mix deps.update magic_auth

</code></pre>
<p>Check the Changelog for all the details.</p>
<p>Thanks for your support, and let me know if you have any feedback! <img src="https://forum.elixirforum.com/images/emoji/apple/rocket.png?v=15" title=":rocket:" class="emoji" alt=":rocket:" loading="lazy" width="20" height="20"></p> 
	            </div>

	            <div class="base-line">
	                <div class="thread-counters">
	                    <span class="thread-count count-likes js-likers-trigger" title="Likes" data-post-id="394683" data-batch-url="/posts/batch_likers">
                        0
                      </span>
                      <!-- <span class="thread-count js-solved-indicator" title="Marked as solution"></span> -->
	                </div>
	                <div class="go-to-post">
	                  <a title="Go to post" alt="Go to post" href="https://forum.elixirforum.com/t/magic-auth-an-phoenix-authentication-library-designed-for-effortless-setup/68930/14">Post #13</a>
	                </div>
	            </div>
              <div id="likers-container-394683" 
                   class="likers-container"
                   data-first-post="false"
                   data-batch-url="/posts/batch_likers">
                   <div class="likers-placeholder" 
                     data-likers-post-id="394683"
                     data-batch-url="/posts/batch_likers">
                  <div class="post-likers"></div>
                </div>
              </div>
	        </div>
			

    </div>

    <div class="triangle-top-right type-last-post cat-last-post" title="Last post!"></div>
  </section>
</div>
</template></turbo-stream><turbo-stream action="replace" target="load-more-container"><template><div id="load-more-container" class="load-more-container">
    <span class="all-loaded">— All posts loaded —</span>
</div></template></turbo-stream>