oauth2 webhook: `granted_scopes` always empty for `authorization_code`

Open
#3,969 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Assessment

Difficulty
4/5
Estimated time
3-5 days
Newbie friendliness
20/100
Issue type
Bug
Clarity
Needs clarification
Activity status
Stale
Tech stack
go

Research direction

Start with related issue #3620 and the OIDC token-hook authorization-code flow described here. Verify the webhook payload for an authorization-code flow and confirm that granted_scopes is included; note that the issue references an ongoing PR, #3970.

Written by the indexing model from the issue text.

Description

bug
Preflight checklist
Ory Network Project

No response

Describe the bug

Related to #3620
But when running OIDC flows with a token hook, the call does not include granted_scopes

Reproducing the bug

Same steps as #3620

Relevant log output

Relevant configuration

Version

2.3.0

On which operating system are you observing this issue?

None

In which environment are you deploying?

None

Additional Context

Working on a PR to address this #3970

Dominant language
Go
Stars
17.6k
Forks
1.6k
PR merge metrics
No merged PRs in 30d

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from ory/hydra

All issues in ory/hydra

Similar issues

More Go issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.