-
-
Notifications
You must be signed in to change notification settings - Fork 826
OIDC: retrieve refreshToken
from storage
#11250
Conversation
…save-refresh-token
…save-refresh-token
src/Lifecycle.ts
Outdated
} | ||
|
||
async function persistCredentials(credentials: IMatrixClientCreds): Promise<void> { | ||
localStorage.setItem(HOMESERVER_URL_KEY, credentials.homeserverUrl); |
Check failure
Code scanning / CodeQL
Clear text storage of sensitive information
src/Lifecycle.ts
Outdated
async function persistCredentials(credentials: IMatrixClientCreds): Promise<void> { | ||
localStorage.setItem(HOMESERVER_URL_KEY, credentials.homeserverUrl); | ||
if (credentials.identityServerUrl) { | ||
localStorage.setItem(ID_SERVER_URL_KEY, credentials.identityServerUrl); |
Check failure
Code scanning / CodeQL
Clear text storage of sensitive information
src/Lifecycle.ts
Outdated
if (credentials.identityServerUrl) { | ||
localStorage.setItem(ID_SERVER_URL_KEY, credentials.identityServerUrl); | ||
} | ||
localStorage.setItem("mx_user_id", credentials.userId); |
Check failure
Code scanning / CodeQL
Clear text storage of sensitive information
src/Lifecycle.ts
Outdated
if (!!credentials.accessToken) { | ||
localStorage.setItem("mx_access_token", credentials.accessToken); | ||
if (!!token) { | ||
localStorage.setItem(storageKey, token); |
Check failure
Code scanning / CodeQL
Clear text storage of sensitive information
src/Lifecycle.ts
Outdated
if (!!credentials.accessToken) { | ||
localStorage.setItem("mx_access_token", credentials.accessToken); | ||
if (!!token) { | ||
localStorage.setItem(storageKey, token); |
Check failure
Code scanning / CodeQL
Clear text storage of sensitive information
src/Lifecycle.ts
Outdated
localStorage.setItem(ID_SERVER_URL_KEY, credentials.identityServerUrl); | ||
} | ||
localStorage.setItem("mx_user_id", credentials.userId); | ||
localStorage.setItem("mx_is_guest", JSON.stringify(credentials.guest)); |
Check failure
Code scanning / CodeQL
Clear text storage of sensitive information
…atrix-org/matrix-react-sdk into kerry/25708/save-refresh-token
refreshToken
from storagerefreshToken
from storage
For element-hq/element-web#25708
With element-hq/element-web#25783
Retrieves the refresh token from storage and passes it to
MatrixClientPeg
. Not yet used byMatrixClient
Checklist
This change is marked as an internal change (Task), so will not be included in the changelog.