Thanakorn SandClaude Sonnet 4.6 fda211b1a8 Block concurrent login: reject new session if account already active
If session_token is set and session_last_seen is within the last hour,
the incoming login is rejected with a clear message. Stale sessions
(idle > 1 h) and explicit logouts (token = NULL via back.php) still allow
re-login normally.

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
2026-05-28 16:21:55 +07:00
2026-05-27 17:14:53 +07:00
2026-05-27 13:12:18 +07:00
2026-05-26 08:19:40 +07:00
2026-05-12 14:11:00 +07:00
2026-05-27 17:14:53 +07:00
S
Description
No description provided
211 MiB
Languages
PHP 95.7%
JavaScript 2.2%
CSS 1.7%
Python 0.3%