validate([ 'username' => 'required|email', 'password' => 'required', 'device_name' => 'required', ]); $user = User::where('email', $request->username)->first(); if (! $user || ! Hash::check($request->password, $user->password)) { throw ValidationException::withMessages([ 'email' => ['The provided credentials are incorrect.'], ]); } return response()->json([ 'type' => 'Bearer', 'token' => $user->createToken($request->device_name)->plainTextToken, ]); } public function logout(Request $request) { $request->user()->currentAccessToken()->delete(); return response()->json([ 'success' => true, ]); } }