Auth Verify
Two-factor verification screen: shield icon, 6 separate digit boxes (auto-advance, backspace, paste support), error/success states, resend with 30s countdown and “use a recovery code” link.
neo-corporate/layout/auth-verifySource
"use client";
import { useEffect, useRef, useState, type ClipboardEvent, type KeyboardEvent } from "react";
import { ShieldCheck } from "lucide-react";
import { cn } from "@/lib/utils";
export interface AuthVerifyProps {
brand?: string;
brandHref?: string;
/** Masked destination, e.g. phone or authenticator. */
destination?: string;
length?: number;
/** Code considered valid in the demo; omit to accept any complete code. */
expectedCode?: string;
onVerify?: (code: string) => void;
className?: string;
}
function LedgerlyMark({ className }: { className?: string }) {
return (
<svg aria-hidden viewBox="0 0 28 28" className={cn("size-7 shrink-0", className)}>
<rect width="28" height="28" rx="7" fill="var(--da-primary)" />
<path d="M8 8v12h12" stroke="var(--da-primary-fg)" strokeWidth="2.6" fill="none" strokeLinecap="round" />
<path d="M13 15h7M13 11h7" stroke="var(--da-primary-fg)" strokeWidth="2.2" strokeLinecap="round" opacity=".7" />
</svg>
);
}
/** Two-factor verification screen: shield icon, 6 separate digit boxes (auto-advance, backspace, paste support), error/success states, resend with 30s countdown and “use a recovery code” link. */
export function AuthVerify({
brand = "Ledgerly",
brandHref = "/",
destination = "your authenticator app",
length = 6,
expectedCode = "482913",
onVerify,
className,
}: AuthVerifyProps) {
const [digits, setDigits] = useState<string[]>(Array(length).fill(""));
const [state, setState] = useState<"idle" | "error" | "ok">("idle");
const [wait, setWait] = useState(30);
const refs = useRef<(HTMLInputElement | null)[]>([]);
useEffect(() => {
if (wait <= 0) return;
const t = setTimeout(() => setWait(wait - 1), 1000);
return () => clearTimeout(t);
}, [wait]);
const check = (next: string[]) => {
const code = next.join("");
if (code.length < length) return setState("idle");
const ok = !expectedCode || code === expectedCode;
setState(ok ? "ok" : "error");
if (ok) onVerify?.(code);
};
const set = (i: number, v: string) => {
const d = v.replace(/\D/g, "").slice(-1);
const next = [...digits];
next[i] = d;
setDigits(next);
if (d && i < length - 1) refs.current[i + 1]?.focus();
check(next);
};
const key = (i: number, e: KeyboardEvent<HTMLInputElement>) => {
if (e.key === "Backspace" && !digits[i] && i > 0) refs.current[i - 1]?.focus();
if (e.key === "ArrowLeft" && i > 0) refs.current[i - 1]?.focus();
if (e.key === "ArrowRight" && i < length - 1) refs.current[i + 1]?.focus();
};
const paste = (e: ClipboardEvent<HTMLInputElement>) => {
const p = e.clipboardData.getData("text").replace(/\D/g, "").slice(0, length);
if (!p) return;
e.preventDefault();
const next = Array.from({ length }, (_, i) => p[i] ?? "");
setDigits(next);
refs.current[Math.min(p.length, length - 1)]?.focus();
check(next);
};
return (
<main className={cn("grid min-h-dvh place-items-center bg-da-surface-2 px-4 py-12 text-da-fg", className)}>
<div className="w-full max-w-md">
<a href={brandHref} className="da-focus mx-auto flex w-fit items-center gap-2 rounded-da-sm font-da-display text-lg font-extrabold">
<LedgerlyMark />
{brand}
</a>
<div className="da-stroke mt-8 rounded-da-lg bg-da-surface p-6 text-center text-da-surface-fg shadow-da-md sm:p-8">
<span aria-hidden className="mx-auto grid size-12 place-items-center rounded-full bg-da-accent text-da-accent-fg">
<ShieldCheck className="size-6" />
</span>
<h1 className="mt-4 font-da-display text-xl font-bold">Two-step verification</h1>
<p className="mt-1.5 text-sm text-da-muted-fg">
Enter the {length}-digit code from {destination}.
</p>
<fieldset className="mt-6">
<legend className="sr-only">Verification code</legend>
<div className="flex justify-center gap-2">
{digits.map((d, i) => (
<input
key={i}
ref={(el) => {
refs.current[i] = el;
}}
value={d}
inputMode="numeric"
autoComplete={i === 0 ? "one-time-code" : "off"}
maxLength={2}
aria-label={`Digit ${i + 1} of ${length}`}
aria-invalid={state === "error" ? true : undefined}
onChange={(e) => set(i, e.target.value)}
onKeyDown={(e) => key(i, e)}
onPaste={paste}
onFocus={(e) => e.target.select()}
className={cn(
"da-stroke da-transition size-11 rounded-da-md bg-da-surface text-center font-da-mono text-lg shadow-da-sm outline-none focus:border-da-primary focus:ring-3 focus:ring-da-ring/25 sm:size-12",
i === length / 2 - 1 && "mr-2",
state === "error" && "border-da-danger",
state === "ok" && "border-da-success",
)}
/>
))}
</div>
</fieldset>
<p role="status" className={cn("mt-4 min-h-5 text-sm font-medium", state === "error" ? "text-da-danger" : "text-da-success")}>
{state === "error" ? "That code didn’t match. Try again." : state === "ok" ? "Verified — signing you in…" : ""}
</p>
<p className="mt-4 text-sm text-da-muted-fg">
Didn’t get a code?{" "}
{wait > 0 ? (
<span>Resend in {wait}s</span>
) : (
<button type="button" onClick={() => setWait(30)} className="da-focus rounded-da-sm font-semibold text-da-primary hover:underline">
Resend code
</button>
)}
</p>
</div>
<p className="mt-6 text-center text-sm">
<a href="#recovery" className="da-focus rounded-da-sm font-medium text-da-muted-fg hover:text-da-fg hover:underline">
Use a recovery code instead
</a>
</p>
</div>
</main>
);
}
export default AuthVerify;
modules/neo-corporate/layout/auth-verify/index.tsx
Props
| Prop | Type | Default | Description |
|---|---|---|---|
| brand | string | — | Brand name. |
| brandHref | string | — | Brand link target. |
| destination | string | — | Masked destination, e.g. phone or authenticator. |
| length | number | — | Length. |
| expectedCode | string | — | Code considered valid in the demo; omit to accept any complete code. |
| onVerify | (code: string) => void | — | Callback. |
| className | string | — | Extra classes on the root. |
Other auth screen variants in Neo Corporate
Auth Screen
Centered sign-in card on a surface-2 page: logo, Google + SSO buttons, “or” divider, email/password (show/hide toggle, forgot link), remember me, blue submit, sign-up link and legal footer.
Auth Split
Split sign-up page: form on the left (name, work email, company, password with live strength checklist), blue gradient panel on the right with benefits, a customer quote and compliance badges (panel hidden below lg).
Auth Sso
Enterprise SSO sign-in: email-first step that detects the domain; SSO domains show the org + identity provider and a “Continue with Okta” button, others fall back to a password field.
Auth screen in other art directions
Auth Card
Centered login card on a dotted paper background: tilted wordmark sticker, ink title band, GitHub button, email + password with forgot link, error slot and a big pressable yellow submit.
Auth Magic Link
Passwordless login split screen: blue product panel with staggered pipeline cards (desktop), huge uppercase headline, single email field and yellow send button, then a 'Check your inbox' state with open-mail and retry actions.
Auth Screen
Split sign-in / sign-up page: form column with GitHub & Google buttons, email + password (show/hide), remember-me, error slot and pending state; yellow grid panel with a big customer quote on desktop.
Auth Signup Steps
Three-step signup wizard: ruled step tabs (done in ink, current in yellow) fused to a card with account fields, team size and use-case tile choices, Back/Continue and a success state.
Auth Floating
Sign-up screen: centered glass card (Google button, divider, email magic-link form with success state) surrounded on desktop by floating, bobbing glass preview cards and a gradient orb.
Auth Onboarding
Three-step onboarding glass card: workspace name with URL preview, role radio chips, calendar connection buttons; gradient progress bar, back/continue and a finish screen.
Auth Passkey
Passkey sign-in glass card: glowing gradient fingerprint orb, account email, ‘Sign in with passkey’ with waiting / success / error states and email-link or password fallbacks.
Auth Screen
Centered 40px-blur glass panel over the mesh and two soft orbs: gradient logo, Google/Microsoft buttons, email + password (show/hide), forgot link, error slot, gradient pill submit. Sign-in and sign-up modes.
Auth Screen
Centered passwordless login in three steps: provider choice (Google, email, SAML SSO) → email form → "check your email" confirmation. Faint indigo glow on top, legal footer.
Auth Split
Split sign-in screen: form on the left (email, password with reveal, remember me, error alert) and an always-dark brand panel with indigo glow, grid, customer quote and three stats on large screens.
Auth Sso
SSO-first sign-in card on a tinted page: key icon, Google / GitHub / Microsoft buttons, an ‘or use SAML SSO’ divider and work-email discovery with inline arrow submit, legal links below.
Auth Verify
Email verification screen: mail icon, six single-digit mono boxes (split 3 + 3) with auto-advance, paste, arrow/backspace navigation, auto-submit, error and success states and a resend countdown.
Auth Centered
Minimal centered sign-in with lots of air: logo, small title, two hairline-boxed fields stacked edge to edge, ink button, “or continue with” text links and a mono legal line at the very bottom.
Auth Magic
Passwordless: a huge “Enter your email” prompt with a single oversized underline input and ↵ button; after submit, a large confirmation with the address and a mono resend link.
Auth Screen
Split sign-in: the left half is an ink panel with a large statement and mono footer; the right half holds a minimal underline form (email, password), an ink button and text links. Panel hides on mobile.
Auth Steps
Three-step sign-up with an index header “01 / 03 — Your account” and segmented hairline progress; underline fields per step, Back text link and ink Continue; final step shows the site address preview.
Auth Magic
Passwordless sign-in: one rounded email field and “Send me a link”, then a gentle sent state with an open-envelope in a sage circle, the address, resend and change-email links.
Auth Onboarding
Post-signup onboarding: two gentle steps (industry as pill radio cards, goals as check cards) with a leaf progress bar, back/continue pills and a warm “all set” finish.
Auth Screen
Centered sign-in on cream with two soft blobs behind a rounded card: serif welcome, filled inputs, password reveal, sage pill submit, Google alternative and a sign-up link.
Auth Split
Split sign-up: form on cream (name, email, company, team-size pills) and an arch-topped landscape illustration panel with sun and hills plus a quote card (hidden below lg).
Auth Magic
“Check your inbox” screen: flat envelope with a gently bobbing letter, email in bold, Gmail/Outlook shortcut pills, resend with countdown and change-email link.
Auth Screen
Centered friendly sign-in: big rounded white card among pastel shapes, shape logo, Google button, rounded divider, soft email/password fields with reveal, error alert and periwinkle pill.
Auth Split
Sign-up split: lavender panel with a flat illustration of tilted task cards and perk list on large screens, roomy name + email form with a success message on the other side.
Auth Welcome
First-run profile setup: big live avatar preview, grid of pastel emoji avatars (native radios), display-name field with preview chip and a “Let’s go” button enabled once named.