Password Reset
Goal
This snapshot advances Emberquay Market by teaching you to issue expiring one-use password reset tokens.
Every numbered folder is a complete app. Run this stage independently, then compare it with the previous folder.
Prerequisites
Use Elixir 1.15+, Mix, Node.js 20+, and Docker for Postgres stages.
Port 4002 must be free. Copy .env.example before database stages.
- Elixir and Mix
- Node.js and npm
- Docker from part 4 onward
Concepts
Store hashed tokens and clear them after a successful reset.
LiveView keeps interactive UI on the server; Tailwind styles the storefront; Ecto owns persistence and authorization checks.
Walkthrough
Wire forgot/reset forms; use a log mailer locally.
Read the example, then open the matching snapshot. The repository includes validation, CSRF, and the surrounding structure.
Accounts.deliver_password_reset(user)
# inspect log for the reset URL
Run and verify
Enter 11-Password-Reset, mix deps.get, copy .env.example, migrate, seed, and start Phoenix on port 4002.
Open http://127.0.0.1:4002. From data lessons onward, Ada and Grace use password123.
docker compose up -d
git clone https://github.com/michaeldunga1/fcc-phoenix-ecommerce.git
cd fcc-phoenix-ecommerce/11-Password-Reset
mix deps.get
npm --prefix assets install
cp .env.example .env
mix ecto.setup
mix phx.server
Troubleshooting
Always show a generic success message whether or not the email exists.
For database failures, confirm Docker and the ember_NN name. Never commit .env, _build, deps, or node_modules.
- Read the first exception first
- Rebuild assets after Tailwind class changes
- Never commit secrets
Try this
Request a reset for Ada, complete it once, then confirm the token cannot be reused.
Test a happy path and one invalid or unauthorized request.
- Make one small change
- Test it in the browser
- Compare with the next snapshot only after it works
Next: Deploy
Comments
One comment per signed-in account. Comments are saved with this page’s URL.