doorkeeper
https://github.com/doorkeeper-gem/doorkeeper
Ruby
Doorkeeper is an OAuth 2 provider for Ruby on Rails / Grape.
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
3 Subscribers
Add a CodeTriage badge to doorkeeper
Help out
- Issues
- Refuse the authorization code flow when `force_pkce` lacks the PKCE columns
- Report the granted resources as `aud` when introspecting a refresh token
- Match the refresh token's resources when reusing an access token
- Keep refresh tokens bound to every resource of the original grant (RFC 8707 §2.2)
- Accept client ID metadata documents that list none among supported methods
- Accept client ID metadata documents for public clients
- `force_pkce` silently does nothing when the PKCE columns are missing
- Refreshing with a narrowed `resource` also narrows the refresh token (RFC 8707)
- Support for Pushed Authorization Requests?
- Persist per-client token endpoint authentication methods on `oauth_applications`
- Docs
- Vacuum::PreviewCardsVacuum#retention_period?
- Vacuum::PreviewCardsVacuum#preview_cards_past_retention_period
- Vacuum::PreviewCardsVacuum#vacuum_cached_images!
- Vacuum::PreviewCardsVacuum#perform
- Vacuum::PreviewCardsVacuum#initialize
- Vacuum::AccessTokensVacuum#vacuum_revoked_access_grants!
- Vacuum::AccessTokensVacuum#vacuum_revoked_access_tokens!
- Vacuum::AccessTokensVacuum#perform
- SuspiciousSignInDetector#masked_ip
- SuspiciousSignInDetector#freshly_signed_up?