class ApplicationController < ActionController::Base # Prevent CSRF attacks by raising an exception. # For APIs, you may want to use :null_session instead. protect_from_forgery with: :exception before_action :configure_permitted_parameters, if: :devise_controller? def after_sign_in_path_for(resource) root_path end def after_sign_up_path_for(resource) new_user_session_path end include OrdersHelper include ApplicationHelper protected def configure_permitted_parameters devise_parameter_sanitizer.for(:sign_up) { |u| u.permit( :email, :nickname, :name, :last_name, :password, :password_confirmation ) } end end