From bc06766fc9760ee6a61457dd3b433f907bc4ea4d Mon Sep 17 00:00:00 2001 From: Trezy Date: Tue, 26 May 2026 21:34:57 -0500 Subject: [PATCH] fix: remove superfluous early exit on invalid session token (pds concern, not happyview concern) Signed-off-by: Trezy --- src/auth/middleware.rs | 8 -------- 1 file changed, 8 deletions(-) diff --git a/src/auth/middleware.rs b/src/auth/middleware.rs index 4715311..250d98c 100644 --- a/src/auth/middleware.rs +++ b/src/auth/middleware.rs @@ -197,14 +197,6 @@ pub async fn resolve_dpop_claims( ) .await?; - // Check token expiry - if let Some(ref expires_at) = session.token_expires_at - && let Ok(exp) = chrono::DateTime::parse_from_rfc3339(expires_at) - && exp < chrono::Utc::now() - { - return Err(AppError::Auth("token_expired".into())); - } - // Build the request URL for htu validation let scheme = if state.config.public_url.starts_with("https") { "https" -- 2.51.2