firebase / firebase/firebase-admin-python
Why isn't there a method to refresh expired idToken ?
- Dominant language
- Python
- Stars
- 1.2k
- Forks
- 359
- Avg merge
- 5d 6m
- Merged PRs (30d)
- 2
Description
I’m developing a custom MFA-based authentication system, so I prefer not to use the Firebase client SDK since Firebase only supports MFA via SMS, not email.
I’m building my own system, but I’m surprised there’s no built-in method to refresh an expired access token with a refresh token. I understand this is typically handled by the Client SDK, but I don’t see why it couldn’t be included in Firebase Admin.
I know there are third-party solutions, like Pyrebase, but these still rely on external libraries, and it’s essentially just a Google API request. It’s a relatively simple feature… Let me know if this is feasible, or if necessary, I could develop this feature and submit a PR.
Contributor guide
Research direction
Start by reviewing the Firebase Admin Python authentication APIs and the Google API request or client-SDK behavior referenced in the issue. Determine the supported scope for refreshing an expired idToken with a refresh token; the work is done when that behavior is clearly specified and implemented as a supported Admin SDK feature.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- python
- Domain
- authentication
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 30/100