const jwt = require("jsonwebtoken"); const JWT_SECRET = process.env.JWT_SECRET || "your-secret-key"; const verifyToken = (req, res, next) => { const token = req.header("Authorization")?.replace("Bearer ", ""); if (!token) { return res.status(401).json({ error: "No token provided" }); } try { const decoded = jwt.verify(token, JWT_SECRET); req.user = decoded; next(); } catch (error) { return res.status(401).json({ error: "Invalid token" }); } }; module.exports = verifyToken;