Skip to content

Conversation

@madprime
Copy link
Member

@madprime madprime commented Nov 5, 2019

Description

Avoid "auto authorization" when requested permissions change for an OAuth2 project.

This is done by checking permissions and redirecting to reload the same endpoint with an updated approval_prompt parameter, thus prompting re-authorization by the user.

Related Issue

#1076

Testing

  • passed automated testing locally
  • ran locally to test manually:
    • reproduced incorrect auto auth when permissions update
    • confirmed corrected behavior

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant