aboutsummaryrefslogtreecommitdiffstats
path: root/app/models/user.rb
diff options
context:
space:
mode:
authorfrancis <francis>2008-12-02 12:41:33 +0000
committerfrancis <francis>2008-12-02 12:41:33 +0000
commit24ecf2398d9c85ba71ec38ac3d80642429950a89 (patch)
treef90bc9b04d767f4b90d39e4d08f04b6f5ffa7a0c /app/models/user.rb
parent0f3010fec8f66e964103b430ebbb543960baa912 (diff)
Strip attributes.
Diffstat (limited to 'app/models/user.rb')
-rw-r--r--app/models/user.rb6
1 files changed, 5 insertions, 1 deletions
diff --git a/app/models/user.rb b/app/models/user.rb
index d4fbceb21..4b8404dd3 100644
--- a/app/models/user.rb
+++ b/app/models/user.rb
@@ -22,11 +22,13 @@
# Copyright (c) 2007 UK Citizens Online Democracy. All rights reserved.
# Email: francis@mysociety.org; WWW: http://www.mysociety.org/
#
-# $Id: user.rb,v 1.75 2008-11-21 01:50:06 francis Exp $
+# $Id: user.rb,v 1.76 2008-12-02 12:41:33 francis Exp $
require 'digest/sha1'
class User < ActiveRecord::Base
+ strip_attributes!
+
validates_presence_of :email, :message => "^Please enter your email address"
validates_presence_of :name, :message => "^Please enter your name"
@@ -93,6 +95,8 @@ class User < ActiveRecord::Base
# The specific_user_login parameter says that login as a particular user is
# expected, so no parallel registration form is being displayed.
def self.authenticate_from_form(params, specific_user_login = false)
+ params[:email].strip!
+
if specific_user_login
auth_fail_message = "Either the email or password was not recognised, please try again."
else