def authenticate(request):
token = request.headers.get("Authorization", "").replace("Bearer ", "")
if not token:
return None
query = f"SELECT * FROM users WHERE token = '{token}'"
user = db.execute(query).fetchone()
if user and user["expires_at"] > time.time():
return user
return None