summaryrefslogtreecommitdiff
path: root/app/views/doorkeeper/authorizations/new.html.haml
blob: 6d9c6b5572ac799eae315529b1e1110963624600 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
%main{ :role => "main" }
  .modal-no-backdrop.modal-doorkeepr-auth
    .modal-content
      .modal-header
        %h3.page-title
          Authorize
          = link_to @pre_auth.client.name, @pre_auth.redirect_uri, target: '_blank', rel: 'noopener noreferrer'
          to use your account?

      .modal-body
        - if current_user.admin?
          .text-warning
            %p
              = icon("exclamation-triangle fw")
              You are an admin, which means granting access to
              %strong= @pre_auth.client.name
              will allow them to interact with GitLab as an admin as well. Proceed with caution.
        %p
          An application called
          = link_to @pre_auth.client.name, @pre_auth.redirect_uri, target: '_blank', rel: 'noopener noreferrer'
          is requesting access to your GitLab account.

          - auth_app_owner = @pre_auth.client.application.owner
          - if auth_app_owner
            This application was created by
            = succeed "." do
              = link_to auth_app_owner.name, user_path(auth_app_owner)

          Please note that this application is not provided by GitLab and you should verify its authenticity before
          allowing access.
        - if @pre_auth.scopes
          %p
            This application will be able to:
            %ul
              - @pre_auth.scopes.each do |scope|
                %li
                  %strong= t scope, scope: [:doorkeeper, :scopes]
                  .scope-description= t scope, scope: [:doorkeeper, :scope_desc]
        .form-actions.text-right
          = form_tag oauth_authorization_path, method: :delete, class: 'inline'  do
            = hidden_field_tag :client_id, @pre_auth.client.uid
            = hidden_field_tag :redirect_uri, @pre_auth.redirect_uri
            = hidden_field_tag :state, @pre_auth.state
            = hidden_field_tag :response_type, @pre_auth.response_type
            = hidden_field_tag :scope, @pre_auth.scope
            = hidden_field_tag :nonce, @pre_auth.nonce
            = submit_tag "Deny", class: "btn btn-danger"
          = form_tag oauth_authorization_path, method: :post, class: 'inline' do
            = hidden_field_tag :client_id, @pre_auth.client.uid
            = hidden_field_tag :redirect_uri, @pre_auth.redirect_uri
            = hidden_field_tag :state, @pre_auth.state
            = hidden_field_tag :response_type, @pre_auth.response_type
            = hidden_field_tag :scope, @pre_auth.scope
            = hidden_field_tag :nonce, @pre_auth.nonce
            = submit_tag "Authorize", class: "btn btn-success prepend-left-10"