Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ReauthorizeRequest should report the entire previous AuthRecord, not just the scope #381

Open
sdlaver opened this issue Feb 17, 2023 · 0 comments

Comments

@sdlaver
Copy link
Contributor

sdlaver commented Feb 17, 2023

This would give wallets additional context on the identity of the calling dApp - not just what they report now, but also what they last reported for the given auth token. Wallets would be free to consume that extra context at their discretion when making security decisions about reauthorize-ing a dApp.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant