appwrite / appwrite/appwrite

🐛 Bug Report: OAuth2 implementation does not enforce email retrieval

Aperta
#3,680 3 commenti 0 reazioni 0 assegnatari Vedi su GitHub
bug product / auth
Lingua principale
TypeScript
Stelle
57.4k
Fork
5.7k
Merge medio
16h 13m
PR unite (30g)
297

Descrizione

### 👟 Reproduction steps

Currently, when the user is presented with the Facebook oauth screen, the user can select 'Edit access" and then switch off the email.
![image](https://user-images.githubusercontent.com/1393766/184527584-f05ffa30-18ac-4021-9ba9-794c365e96b0.png)
![image](https://user-images.githubusercontent.com/1393766/184527591-7e2ad755-4f80-4ac8-908e-b06c2641a423.png)
This means that, after the user disables the email and clicks Continue, a new user will be created in Appwrite but without an email address.

Similar thing is happening with the Yandex OAuth2 adapter - users are created but without email address.

Discord post - https://discord.com/channels/564160730845151244/564175717521424424/1007611652750970900

### 👍 Expected behavior

Appwrite should extend the OAuth2 adapters to always enforce the retrieval of email address

### 👎 Actual Behavior

Users are created without an email address

### 🎲 Appwrite version

Version 0.15.x

### 💻 Operating system

Windows

### 🧱 Your Environment

_No response_

### 👀 Have you spent some time to check if this issue has been raised before?

- [X] I checked and didn't find similar issue

### 🏢 Have you read the Code of Conduct?

- [X] I have read the [Code of Conduct](https://github.com/appwrite/appwrite/blob/HEAD/CODE_OF_CONDUCT.md)

Guida per i contributori

Apri la guida per i contributori

Direzione di ricerca

Inizia individuando le implementazioni degli adapter OAuth2 di Facebook e Yandex e il percorso di creazione degli utenti. Traccia come viene richiesto e gestito l’accesso all’e-mail; il lavoro è completato quando entrambi i provider non possono creare utenti senza un’e-mail e c’è una copertura di regressione per i casi di e-mail disabilitata o mancante.

Scritto dal modello di indicizzazione a partire dal testo della issue.

Valutazione

Stack tecnologico
typescript
Ambito
authentication
Tipo di issue
Bug
Difficoltà
4/5
Tempo stimato
3-5 giorni
Stato di attività
Ferma
Chiarezza
Abbastanza chiara
Idoneità per principianti
35/100

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.