doorkeeper
https://github.com/doorkeeper-gem/doorkeeper
Ruby
Doorkeeper is an OAuth 2 provider for Ruby on Rails / Grape.
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
3 Subscribers
Add a CodeTriage badge to doorkeeper
Help out
- Issues
- Accept client ID metadata documents that list none among supported methods
- Fix authorization code exchange with stateless JWT tokens
- Accept client ID metadata documents for public clients
- `force_pkce` silently does nothing when the PKCE columns are missing
- Refreshing with a narrowed `resource` also narrows the refresh token (RFC 8707)
- Support for Pushed Authorization Requests?
- Persist per-client token endpoint authentication methods on `oauth_applications`
- Add refresh token chain tracking to support grant-level revocation (RFC 7009 §2.1)
- Add opt-in to keep the previous access token usable after a refresh
- Track refresh token families to revoke a whole refresh chain at once
- Docs
- ActiveRecord::NestedAttributes#will_be_destroyed?
- ActiveRecord::NestedAttributes#call_reject_if
- ActiveRecord::NestedAttributes#reject_new_record?
- ActionController::Base.http_basic_authenticate_with
- ActiveSupport::SecurityUtils.variable_size_secure_compare
- ActiveSupport::SecurityUtils#variable_size_secure_compare
- ActiveSupport::SecurityUtils.secure_compare
- ActiveSupport::SecurityUtils#secure_compare
- AuditedHacks::InstanceMethods#provider_id_for_audits
- AuditedHacks::InstanceMethods#write_audit