Support for Access and Refresh Token in JWT Format.
Nobody has claimed this yet.
Assessment
- Difficulty
- 5/5
- Estimated time
- Over a week
- Newbie friendliness
- 35/100
- Issue type
- Feature
- Clarity
- Needs clarification
- Activity status
- Stale
- Tech stack
- python
- Domain
- api, authentication, security
Research direction
No files, tests, or entry points are named. Start by tracing how access and refresh tokens are generated and serialized, then determine how JWT claims and JTI values should be represented; done means both tokens match the requested JWT response format and the JTI value is returned.
Written by the indexing model from the issue text.
Description
Hi,
Can we generate access and refresh token in JWT format instead of normal string? Also, how can we return JTI values?
Thanks.
Current Format:
{
"access_token": "6hdWtMlPL1cXrFgZpeaXkkVI0cys5JPEOCZe17FDID",
"expires_in": 3600,
"refresh_token": "TL4GIU9RbZZ2TXzkF4s2gsEGIiV4VezrL3HaMlmTfsmMpTwX",
"scope": "checkcard",
"token_type": "Bearer"
}
Required Format
{
"access_token": "eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ6.eyJleHAiOjE4NzE2MTcwNzYsInVzZXJfbmFtZSI6Ik5FUFMiLCJhdXRob3JpdGllcyI6WyJVU0VSIl0sImp0aSI6ImU0ZDYwODk5LTllNjctNDJhYy1hMzZmLWM3ZjFjODE4NWI4OCIsImNsaWVudF9pZCI6Ik5FUFMiLCJzY29wZSI6WyJhcGkiXX0.sTuPN5qdLNplTG5BBf1YwYjS9X0b1APMz8nzNNTMGjs",
"token_type": "bearer",
"refresh_token": "eyJhbGciOiJIUzI1NiIsInR5cCI9IkpXVCJ6.eyJ1c2VyX25hbWUiOiJORVBTIiwic4NvcGUiOlsiYXBpIl0sImF0aSI3ImU0ZDYwODk5LTllNjctNDJhYy1hMzZmLWM3ZjFjODE4NWI4OCIsImV4cCI6MTY3MTYxNzI1NiwiYXV0aG9yaXRpZXMiOlsiVVNFUiJdLCJqdGkiOiI4MGMyNDNkMy1lMWI1LTRlYjctOTU5ZC0zNGJkOWM3NWRkMzMiLCJjbGllbnRfawQiOiJORVBTIn1.gARNnr_LK1hLFJXH_ULBcOvV2CV0xn08ajPee2shL6Q",
"expires_in": 3600,
"scope": "api",
"jti": "e4d60899-9e67-42ac-a36f-c7f1c8185b88"
}
Example guidance would be much appreciated. Tx.
- Dominant language
- Python
- Stars
- 705
- Forks
- 279
- PR merge metrics
- No merged PRs in 30d
Getting set up
This project ships no dev container, Dockerfile or contributing guide, so setting up is up to you: start from its README, and see our first-contribution guide for the general steps.
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from authlib/example-oauth2-server
-
Difficulty 5/5 Over a week Newbie friendliness 25/100
-
Difficulty 1/5 Under an hour Newbie friendliness 45/100
authlib/example-oauth2-server#95 · 1 reaction ·
-
Difficulty 3/5 1-2 days Newbie friendliness 25/100
authlib/example-oauth2-server#92 · 4 comments ·
-
Difficulty 3/5 1-2 days Newbie friendliness 38/100
authlib/example-oauth2-server#90 · 8 comments ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 42/100
authlib/example-oauth2-server#86 · 2 comments ·
All issues in authlib/example-oauth2-server
Similar issues
-
needs-human needs-triage
Difficulty 2/5 1-3 hours Newbie friendliness 76/100
gke-labs/kube-agents#2400 · 1 comment ·
Maintainers usually reply within 1 day
-
Device Details tables: FS/SF columns contradict each other (nfet_01v8 Vt row, pfet_01v8 Idsat row)Open
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
google/skywater-pdk#450 ·
-
Drained trajectory arrays are overwritten when the sequence buffer is reusedPossibly taken @sylvesterkaczmarek claimed this today. Open
Difficulty 2/5 1-3 hours Newbie friendliness 78/100
google-deepmind/bsuite#56 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 82/100
LearningCircuit/local-deep-research#7206 ·
Maintainers usually reply within 1 day
-
Difficulty 2/5 1-3 hours Newbie friendliness 68/100
chingu-voyages/V62-tier3-team-33#285 ·
Maintainers usually reply within 1 day