Commit Graph

1573 Commits

Author SHA1 Message Date
zdl
93eaa0802b fix: 修复微信内浏览器移动端检测问题
- isMobileDevice() 添加微信浏览器检测(micromessenger)
- 确保微信内浏览器使用 URL Scheme 跳转小程序

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude <noreply@anthropic.com>
2025-12-15 10:53:36 +08:00
zdl
0be64befa0 feat: 微信内浏览器统一使用 URL Scheme 跳转小程序
- 移动端(包括微信内浏览器)统一使用明文 URL Scheme
- 简化跳转逻辑,无需 JS-SDK 签名配置

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude <noreply@anthropic.com>
2025-12-15 10:15:12 +08:00
c846436074 update pay ui 2025-12-15 08:24:16 +08:00
da410b7914 security: app_vx.py 添加 Redis 密码认证
- 修改 3 处 Redis 连接,添加密码参数
- 与 app.py 保持一致的安全配置

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude <noreply@anthropic.com>
2025-12-15 08:19:40 +08:00
c35bc82f22 security: 添加 Redis 密码认证,修复安全漏洞
- 所有 Redis 连接添加密码参数
- 支持通过 REDIS_PASSWORD 环境变量配置密码
- 修复 Redis 未授权访问漏洞(被黑客利用设置为 slave)

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude <noreply@anthropic.com>
2025-12-15 08:15:23 +08:00
12f38066a6 fix: 添加 ProxyFix 中间件修复登录状态丢失问题
- 添加 werkzeug.middleware.proxy_fix.ProxyFix 中间件
- 配置信任反向代理的 X-Forwarded-Proto 头
- 解决 Nginx 反向代理后 Flask 无法识别 HTTPS 的问题
- 之前 SESSION_COOKIE_SECURE=True 会导致 cookie 被清除

问题根因:
1. Nginx 通过 HTTP 转发请求到 Flask
2. Flask 认为是 HTTP 请求,request.is_secure = False
3. SESSION_COOKIE_SECURE=True 导致 cookie 被立即删除

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude <noreply@anthropic.com>
2025-12-14 21:47:58 +08:00
354d2f9e2f update pay ui 2025-12-14 17:15:29 +08:00
cd0b52596f update pay ui 2025-12-14 16:43:45 +08:00
4f85ba4cbc update pay ui 2025-12-14 16:29:01 +08:00
379ff99698 update pay ui 2025-12-14 16:25:27 +08:00
d7f4c79da5 update pay ui 2025-12-14 16:20:49 +08:00
3d89cbef2b update pay ui 2025-12-14 16:06:06 +08:00
71ec9668be update pay ui 2025-12-14 15:41:28 +08:00
524781fd01 update pay ui 2025-12-14 15:39:54 +08:00
35254fb0df update pay ui 2025-12-14 15:02:38 +08:00
39ed5562f1 update pay ui 2025-12-14 14:26:01 +08:00
1862e26baf update pay ui 2025-12-14 14:16:37 +08:00
893a75fab9 update pay ui 2025-12-14 13:28:07 +08:00
6bde8dd8f0 update pay ui 2025-12-14 10:01:48 +08:00
5da7976ef8 update pay ui 2025-12-14 08:46:12 +08:00
06af227a1f update pay ui 2025-12-14 08:33:12 +08:00
2f12f37c39 update pay ui 2025-12-14 08:17:42 +08:00
9afe9a07dc update pay ui 2025-12-13 22:36:59 +08:00
c67593424a update pay ui 2025-12-13 21:00:09 +08:00
2324ed6e1e update pay ui 2025-12-13 20:58:44 +08:00
fe53ee21c2 update pay ui 2025-12-13 19:31:00 +08:00
a9214addf0 update pay ui 2025-12-13 19:28:41 +08:00
47d6dbbd3d update pay ui 2025-12-13 19:27:35 +08:00
06b0c88832 update pay ui 2025-12-13 18:40:04 +08:00
8d106b293d update pay ui 2025-12-13 18:37:33 +08:00
063e2ebd2d update pay ui 2025-12-13 18:28:21 +08:00
a700b69341 update pay ui 2025-12-13 18:20:48 +08:00
40995bcd80 update pay ui 2025-12-13 18:14:47 +08:00
cf846b7167 update pay ui 2025-12-13 18:08:48 +08:00
6f0ea5576d update pay ui 2025-12-13 17:24:23 +08:00
a2b45855cc update pay ui 2025-12-13 17:13:15 +08:00
20d23d879a update pay ui 2025-12-13 17:03:48 +08:00
5037a3f75a update pay ui 2025-12-13 16:58:18 +08:00
0e82e9e3d6 update pay ui 2025-12-13 16:51:01 +08:00
4adfe1c282 update pay ui 2025-12-13 16:39:54 +08:00
fed393baa1 update pay ui 2025-12-13 16:30:50 +08:00
fb818d943b update pay ui 2025-12-13 15:44:31 +08:00
e615922263 update pay ui 2025-12-13 13:44:29 +08:00
c087c441ce update pay ui 2025-12-13 12:42:35 +08:00
0bb8dd683f update pay ui 2025-12-13 11:38:19 +08:00
066fbba7b8 update pay ui 2025-12-13 10:46:00 +08:00
f75bafa0dd update pay ui 2025-12-13 10:31:46 +08:00
2bc3eb34bd update pay ui 2025-12-13 09:55:27 +08:00
zdl
ada21a0206 fix: 修复明文 URL Scheme path 编码问题
- path 参数不再进行 URL encode,微信要求原始路径格式
- 修复跳转微信后提示"当前页面无法访问"的问题

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude <noreply@anthropic.com>
2025-12-12 19:20:45 +08:00
zdl
9ba2b7d424 feat: 小程序跳转改用明文 URL Scheme
- UrlSchemeLauncher: 使用明文 Scheme 格式,无需后端 API 生成
- HomePage: 修复 path 格式,去掉开头斜杠以匹配小程序后台配置

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude <noreply@anthropic.com>
2025-12-12 19:06:21 +08:00