authgear / authgear/authgear-server

UX improvement on CORS hints / input at Applications page

Open
#3,329 0 comments 0 reactions 0 assignees View on GitHub
cooldown/minor-feature design-required ux/minor
Dominant language
Go
Stars
2k
Forks
125
Avg merge
2d 17h
Merged PRs (30d)
32

Description

**Describe the bug**
Not exactly a bug, but a potential UX issues.

When users encounter a CORS error when they create a webapp sign in with Authgear, they might not be able to co-relate the URL added to "Authorized Redirect URIs" would be automatically added to CORS list as well.

To enable developers to debug / learn about it faster, we shall consider:

1. Add CORS and related keywords at the page of **Authorized Redirect URIs**
2. Add a section in the (Application?) page such that users can manually add URL for CORS allow list

![SCR-20230830-l4u](https://uploads.linear.app/860e83ae-05f0-4c4b-bd93-8a4b8d251836/762674f3-6e40-4ae6-bea0-60012d18ca2f/709842fc-dedd-43a3-a7a7-46c1c5161826?signature=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJwYXRoIjoiLzg2MGU4M2FlLTA1ZjAtNGM0Yi1iZDkzLThhNGI4ZDI1MTgzNi83NjI2NzRmMy02ZTQwLTRhZTYtYmVhMC02MDAxMmQxOGNhMmYvNzA5ODQyZmMtZGVkZC00M2EzLWE3YTctNDZjMWM1MTYxODI2IiwiaWF0IjoxNzE1MDgyMDQzLCJleHAiOjMzMjg1NjQyMDQzfQ.aiJCdYpkLcB7fqZCTfUSa9FJ5T9dx9iroNJAd5YB_7I)

Contributor guide

Open the contributing guide

Research direction

Start at the Applications page and inspect the Authorized Redirect URIs section, using the linked screenshot to understand the current UX. Confirm the intended CORS terminology and whether a separate allow-list input is required; done means the relationship is discoverable and the requested CORS URL configuration is usable.

Written by the indexing model from the issue text.

Assessment

Domain
authentication, frontend
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
30/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.