authgear / authgear/authgear-server
Add help text for cookie / token lifetime setting
- Dominant language
- Go
- Stars
- 2k
- Forks
- 125
- Avg merge
- 2d 17h
- Merged PRs (30d)
- 32
Description
The following settings might be confusing for non-authentication professional developers, which goes against the principle of we want Authgear to be easy to use.
Consider adding some explanation text as follow? (Under Applications setting page)
1. Applications
1. "allowing HTTP requests from the list of domains specified here." maybe explain in a more layman terms? Like allowing authentication requests from these domains name? etc?
2. Persistent Cookie
3. Session lifetime (seconds)
4. Invalidate session after idling
5. Idle Timeout (seconds)
2. Applications > Edit > Token Settings
1. Access Token Lifetime (maybe this one have no good explanation and just keep as is)
2. Refresh Token Lifetime (should explain this is basically "Lifetime of session after login"?)
3. Invalidate...
Thoughts: actually maybe we should put the help text as the major option, and add the technical terms after it? Something like this?

Contributor guide
Research direction
Start at the Applications settings page and Applications > Edit > Token Settings, reviewing the labels for the listed cookie, session, and token lifetime options. Done means each confusing setting has concise, non-specialist help text while preserving the technical terminology where useful; the proposed wording and scope still need maintainer agreement.
Written by the indexing model from the issue text.
Assessment
- Domain
- authentication, documentation, frontend
- Issue type
- Documentation
- Difficulty
- 3/5
- Estimated time
- 1-2 days
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 35/100