jojo/services/auth
Gusted 155acecb4b fix: consider scopes for OAuth2 token via basic login
There are two ways to use a OAuth2 token:

Via the Authorization header as a Bearer token.
Via the Authorization header as a Basic login.

For the former the scope was correctly passed through, for the latter it
was not and would mean no scope was checked if you used the token via
this way.
2026-03-06 11:20:40 -07:00
..
source feat: allow sync quota groups with oauth2 auth source (#8554) 2025-12-01 14:12:00 +01:00
additional_scopes_test.go tests additional grant scopes 2024-08-09 14:58:15 +02:00
auth.go feat: replace cross origin protection (#9830) 2025-10-29 22:43:22 +01:00
auth_test.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
basic.go fix: consider scopes for OAuth2 token via basic login 2026-03-06 11:20:40 -07:00
group.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
httpsign.go chore(cleanup): replaces unnecessary calls to formatting functions by non-formatting equivalents (#7994) 2025-05-29 17:34:29 +02:00
interface.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
main_test.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
oauth2.go feat: avoid updating all columns (#9572) 2025-10-09 13:22:29 +02:00
oauth2_test.go fix: ASCII equal fold for authorization header (#8391) 2025-07-09 23:01:03 +02:00
reverseproxy.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
reverseproxy_test.go test: introduce TruncateBeansCascade test helper to support data cleanup of foreign-key referenced tables (#9684) 2025-10-15 20:26:41 +02:00
session.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
signin.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
source.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00
sync.go chore: branding import path (#7337) 2025-03-27 19:40:14 +00:00