Something went wrong. Try again.
Monorepo for Tangled forked from tangled.org/core
Something went wrong. Try again.
appview/oauth: use ResumeSession when fetching currently logged in user master
the final addition to my collection of oauth fixes: the session cookie is not a sufficient indication of a logged-in-ness of a user, we additionally validate this cookie against the session on redis using ResumeSession and kick users out if their session is invalid. previously, a user may have appeared to be logged in (via the profile picture on the top right), but creating an auth'd request would have login-prompted them. Signed-off-by: oppiliappan <me@oppi.li>
Author oppiliappan Committer Tangled Date (Oct 29, 2025, 1:01 PM UTC) Commit 7270d3ae 7270d3ae211aee6114e6539d9128c6b2ec47c221 Parent ee08cd02 ee08cd020cb2b1193f5620f997f45fdfca1f6937 Change ID orvkryxk orvkryxksqszkmzorvmzpwywvutyruus