9 Commits

Author SHA1 Message Date
ekzyis
1103f04f4b
Check if token expired before refresh (#2101) 2025-04-14 13:46:15 -05:00
ekzyis
ef8c738582
Reset multi_auth to initial state on error (#2007)
* Reset multi auth to initial state

* Also check if next-auth.session-token exists

---------

Co-authored-by: Keyan <34140557+huumn@users.noreply.github.com>
2025-03-25 18:59:26 -05:00
ekzyis
df17bc3b25
Use MULTI_AUTH_REGEXP to test for multi auth keys (#2020) 2025-03-25 12:25:55 -05:00
ekzyis
04a4092090
Reset if pointer is not a number or JWT cannot be decoded (#2021) 2025-03-25 12:25:37 -05:00
ekzyis
e7eece744f
Use __Secure- cookie prefix (#1998) 2025-03-22 16:59:57 -05:00
ekzyis
5ff1334722
Remove unnecessary exports (#2006) 2025-03-21 19:56:01 -05:00
ekzyis
5e2185c18f
Use cookieOptions for pointer cookie (#2005) 2025-03-21 19:53:49 -05:00
ekzyis
a83783f008
Fix missing max-age cookie option (#2000) 2025-03-20 16:38:13 -05:00
ekzyis
74d99e9b74
Reset multi_auth cookies on error (#1957)
* multi_auth cookies check + reset

* multi_auth cookies refresh

* Expire cookies after 30 days

This is the actual default for next-auth.session-token.

* Collapse issues by default

* Only refresh session cookie manually as anon

* fix mangled merge

---------

Co-authored-by: Keyan <34140557+huumn@users.noreply.github.com>
Co-authored-by: k00b <k00b@stacker.news>
2025-03-19 18:54:43 -05:00