doorkeeper
https://github.com/doorkeeper-gem/doorkeeper
Ruby
Doorkeeper is an OAuth 2 provider for Ruby on Rails / Grape.
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
3 Subscribers
Add a CodeTriage badge to doorkeeper
Help out
- Issues
- Refuse the authorization code flow when `force_pkce` lacks the PKCE columns
- Report the granted resources as `aud` when introspecting a refresh token
- Match the refresh token's resources when reusing an access token
- Keep refresh tokens bound to every resource of the original grant (RFC 8707 §2.2)
- Expired token cleanup crashes when access_token_expires_in is nil
- Fix expired token cleanup when access_token_expires_in is nil
- Accept client ID metadata documents that list none among supported methods
- Fix authorization code exchange with stateless JWT tokens
- Accept client ID metadata documents for public clients
- `force_pkce` silently does nothing when the PKCE columns are missing
- Docs
- Authentication::Strategy::Oauth2::FindOrCreateAccount#build_session
- Authentication::Strategy::Oauth2::FindOrCreateAccount#session
- Authentication::Strategy::Oauth2::FindOrCreateAccount#signup_service_params
- Authentication::Strategy::Oauth2::FindOrCreateAccount#create_account
- Authentication::Strategy::Oauth2::FindOrCreateAccount#find_user
- Authentication::Strategy::Oauth2::FindOrCreateAccount#call
- Authentication::ByCookieTokenController.included
- Authentication::ByCookieToken::ModelInstanceMethods#forget_me
- Authentication::ByCookieToken::ModelInstanceMethods#refresh_token
- Authentication::ByCookieToken::ModelInstanceMethods#remember_me_until