amazon-transcreation/backend/app/auth/service.py
DJP 98fa16bfc3 feat: complete Phase 1-2 scaffold — backend, frontend, pipeline skeleton
Full-stack Amazon AI Transcreation Platform with:
- FastAPI backend (async, PostgreSQL, Redis, Celery) with 11 DB tables
- JWT auth (SSO-ready abstract provider pattern)
- 6-agent pipeline orchestrator with deterministic modules
- Next.js 14 frontend with Amazon branding (Ember fonts, orange/dark theme)
- Job wizard, monitoring HUD, output review, admin screens
- 154 TM/reference files imported, 12 locales configured
- Docker Compose for all services

Agents 2-5 (TM retrieval, ranker, transcreator, compliance) are stubs
pending Phase 3 LLM integration.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-04-10 12:31:43 -04:00

70 lines
2.2 KiB
Python

from typing import Any
from sqlalchemy import select
from sqlalchemy.ext.asyncio import AsyncSession
from app.auth.providers.jwt_provider import JWTAuthProvider
from app.models.user import User
class AuthService:
"""Authentication service wrapping the JWT provider."""
def __init__(self) -> None:
self.provider = JWTAuthProvider()
async def login(
self, email: str, password: str, db: AsyncSession
) -> dict[str, str] | None:
"""Authenticate a user and return tokens, or None if invalid."""
result = await db.execute(select(User).where(User.email == email))
user = result.scalar_one_or_none()
if user is None:
return None
if not self.provider.verify_password(password, user.password_hash):
return None
if user.status.value != "active":
return None
token_data = {
"sub": str(user.id),
"email": user.email,
"role": user.role.value,
"name": user.name,
}
return {
"access_token": self.provider.create_access_token(token_data),
"refresh_token": self.provider.create_refresh_token(token_data),
"token_type": "bearer",
}
def refresh_tokens(self, refresh_token: str) -> dict[str, str] | None:
"""Validate a refresh token and issue new token pair."""
claims = self.provider.validate_token(refresh_token)
if claims is None:
return None
if claims.get("type") != "refresh":
return None
token_data = {
"sub": claims["sub"],
"email": claims.get("email", ""),
"role": claims.get("role", ""),
"name": claims.get("name", ""),
}
return {
"access_token": self.provider.create_access_token(token_data),
"refresh_token": self.provider.create_refresh_token(token_data),
"token_type": "bearer",
}
def validate_token(self, token: str) -> dict[str, Any] | None:
"""Validate a token and return claims."""
return self.provider.validate_token(token)
def hash_password(self, password: str) -> str:
"""Hash a password."""
return self.provider.hash_password(password)