doorkeeper
https://github.com/doorkeeper-gem/doorkeeper
Ruby
Doorkeeper is an OAuth 2 provider for Ruby on Rails / Grape.
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
3 Subscribers
Add a CodeTriage badge to doorkeeper
Help out
- Issues
- Refuse the authorization code flow when `force_pkce` lacks the PKCE columns
- Report the granted resources as `aud` when introspecting a refresh token
- Match the refresh token's resources when reusing an access token
- Keep refresh tokens bound to every resource of the original grant (RFC 8707 §2.2)
- Expired token cleanup crashes when access_token_expires_in is nil
- Fix expired token cleanup when access_token_expires_in is nil
- Accept client ID metadata documents that list none among supported methods
- Fix authorization code exchange with stateless JWT tokens
- Accept client ID metadata documents for public clients
- `force_pkce` silently does nothing when the PKCE columns are missing
- Docs
- DeveloperPortal::AccessCodesController#show
- ChangeDefaultForSettingsAuthenticationStrategy#change
- AddSkipEmailEngagementFooterSwitchToSettings.down
- AddSkipEmailEngagementFooterSwitchToSettings.up
- RemoveClientPrefixFromColumnsInIpGeographies.down
- RemoveClientPrefixFromColumnsInIpGeographies.up
- DeveloperPortal::ApplicationController#set_security_headers
- DeveloperPortal::ApplicationController#disable_for_suspended_provider_account
- DeveloperPortal::ActivationsController#find_user_by_activation_code
- DeveloperPortal::ActivationsController#set_flash_message